Debian

Debian 13 (trixie)

17748 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:53:04
  • Zuletzt bearbeitet 17.08.2026 06:18:12

In the Linux kernel, the following vulnerability has been resolved: netdev-genl: report NAPI thread PID in the caller's pid namespace netdev_nl_napi_fill_one() reports the NAPI kthread PID in NETDEV_A_NAPI_PID using task_pid_nr(), which returns the...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:53:03
  • Zuletzt bearbeitet 17.08.2026 06:18:12

In the Linux kernel, the following vulnerability has been resolved: can: isotp: use unconditional synchronize_rcu() in isotp_release() isotp_notify() unregisters the (RCU) CAN filters via can_rx_unregister() and clears so->bound without waiting for...

  • EPSS 0.35%
  • Veröffentlicht 15.08.2026 05:53:02
  • Zuletzt bearbeitet 19.08.2026 17:20:59

In the Linux kernel, the following vulnerability has been resolved: can: isotp: serialize TX state transitions under so->rx_lock The TX state machine (so->tx.state) is driven from three contexts: sendmsg() claiming and progressing a transfer, the R...

  • EPSS 0.16%
  • Veröffentlicht 15.08.2026 05:53:02
  • Zuletzt bearbeitet 19.08.2026 17:21:00

In the Linux kernel, the following vulnerability has been resolved: can: isotp: fix use-after-free race with concurrent NETDEV_UNREGISTER isotp_release() looked up the bound network device via dev_get_by_index() using the stored ifindex. During dev...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:53:01
  • Zuletzt bearbeitet 19.08.2026 17:20:59

In the Linux kernel, the following vulnerability has been resolved: can: bcm: defer rx_op deallocation to workqueue to fix thrtimer UAF Commit f1b4e32aca08 ("can: bcm: use call_rcu() instead of costly synchronize_rcu()") replaced synchronize_rcu() ...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:53:00
  • Zuletzt bearbeitet 17.08.2026 06:18:11

In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure bcm_sendmsg() reads bo->ifindex and checks bo->bound before taking lock_sock(), while bcm_notify(), bcm_connec...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:52:59
  • Zuletzt bearbeitet 17.08.2026 06:18:11

In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing rcu list annotations and operations sashiko-bot remarked the missing use of list_add_rcu() in bcm_[rx|tx]_setup() to have a proper initialized bcm_op structur...

  • EPSS 0.35%
  • Veröffentlicht 15.08.2026 05:52:59
  • Zuletzt bearbeitet 19.08.2026 17:20:59

In the Linux kernel, the following vulnerability has been resolved: can: bcm: add locking when updating filter and timer values KCSAN detected a simultaneous access to timer values that can be overwritten in bcm_rx_setup() when updating timer and f...

  • EPSS 0.16%
  • Veröffentlicht 15.08.2026 05:52:58
  • Zuletzt bearbeitet 19.08.2026 17:20:58

In the Linux kernel, the following vulnerability has been resolved: can: bcm: extend bcm_tx_lock usage for data and timer updates Stage new CAN frame content for an existing tx op into a kmalloc()'d buffer and validate it there, mirroring the appro...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:52:57
  • Zuletzt bearbeitet 19.08.2026 17:20:58

In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix CAN frame rx/tx statistics KCSAN detected a data race within the bcm_rx_handler() when two CAN frames have been simultaneously received and processed in a single rx o...