Debian

Debian 13 (trixie)

17738 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.19%
  • Veröffentlicht 25.09.2026 10:23:54
  • Zuletzt bearbeitet 25.09.2026 11:17:33

In the Linux kernel, the following vulnerability has been resolved: bpf: Don't infer non-NULL from a pointer with an unbounded offset reg_not_null() decides that a register holds a non-NULL value by looking at its type alone. For pointer types that...

  • EPSS 0.14%
  • Veröffentlicht 25.09.2026 10:23:53
  • Zuletzt bearbeitet 25.09.2026 15:18:04

In the Linux kernel, the following vulnerability has been resolved: bpf: Don't predict JMP32 pointer vs zero comparisons Consider the following program: r1 = map_value; /* low 32 bits are zero at runtime */ r6 = 0xdead00000000...

  • EPSS 0.17%
  • Veröffentlicht 25.09.2026 10:23:52
  • Zuletzt bearbeitet 25.09.2026 11:17:32

In the Linux kernel, the following vulnerability has been resolved: bpf: Require MEM_PERCPU for percpu kptr stores map_kptr_match_type() treats perm_flags as the set of register type flags that a kptr field permits. Adding MEM_PERCPU to that set fo...

  • EPSS 0.19%
  • Veröffentlicht 25.09.2026 10:23:51
  • Zuletzt bearbeitet 25.09.2026 11:17:32

In the Linux kernel, the following vulnerability has been resolved: bpf: Keep refcount_acquire nullable for borrowed RCU kptrs bpf_refcount_acquire() is fallible for a borrowed reference because the object may have reached a zero refcount. The veri...

  • EPSS 0.17%
  • Veröffentlicht 25.09.2026 10:23:51
  • Zuletzt bearbeitet 25.09.2026 11:17:32

In the Linux kernel, the following vulnerability has been resolved: bpf: Reject untrusted allocated-object pointers When the final RCU read-side critical section ends, a local kptr is demoted to PTR_UNTRUSTED but retains MEM_ALLOC. The pointer may ...

  • EPSS 0.16%
  • Veröffentlicht 25.09.2026 10:23:49
  • Zuletzt bearbeitet 25.09.2026 11:17:32

In the Linux kernel, the following vulnerability has been resolved: bpf: Mark NULL kptr stores precise check_map_kptr_access() permits a scalar store into an untrusted kptr field only when the register is known to contain zero. Unlike other verifie...

  • EPSS 0.16%
  • Veröffentlicht 25.09.2026 10:23:48
  • Zuletzt bearbeitet 25.09.2026 11:17:32

In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve inner map identity in callback frames Callback frame constructors initialize map-typed argument registers with __mark_reg_known_zero() and then restore map_ptr. This ...

  • EPSS 0.16%
  • Veröffentlicht 25.09.2026 10:23:48
  • Zuletzt bearbeitet 25.09.2026 11:17:31

In the Linux kernel, the following vulnerability has been resolved: tracing: Fix subbuf resize races with trace_pipe_raw readers Concurrent subbuffer resizes may crash trace_pipe_raw readers or leak uninitialized memory to userspace due to stale si...

  • EPSS 0.17%
  • Veröffentlicht 25.09.2026 10:23:47
  • Zuletzt bearbeitet 03.10.2026 11:18:26

In the Linux kernel, the following vulnerability has been resolved: nexthop: Initialize extack in remove_nh_grp_entry() remove_nh_grp_entry() prints the extack message when a listener fails to replace the reduced nexthop group. However, extack is n...

  • EPSS 0.12%
  • Veröffentlicht 25.09.2026 10:23:46
  • Zuletzt bearbeitet 03.10.2026 11:18:25

In the Linux kernel, the following vulnerability has been resolved: net: dsa: bcm_sf2: bound the CFP rule dump by the caller's buffer size bcm_sf2_cfp_rule_get_all() walks the whole cfp.unique bitmap into rule_locs[] without consulting nfc->rule_cn...