Debian

Debian 13 (trixie)

17738 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.12%
  • Veröffentlicht 17.09.2026 16:10:02
  • Zuletzt bearbeitet 18.09.2026 18:18:12

In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: complete object teardown when the destroy command fails erdma_destroy_qp(), erdma_destroy_cq(), erdma_dereg_mr(), and erdma_destroy_ah() returned early when erdma_post_...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:10:00
  • Zuletzt bearbeitet 17.09.2026 17:17:50

In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fix use-after-free in find_pos_and_ways() error path The error path releases its reference to a switch decoder before logging an error that includes the decoder name. I...

  • EPSS 0.15%
  • Veröffentlicht 17.09.2026 16:10:00
  • Zuletzt bearbeitet 18.09.2026 18:18:12

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix WARNING in bpf_tracing_link_release The trampoline could be corrupted by the blindly 'tr->flags = BPF_TRAMP_F_TAIL_CALL_CTX' in verifier. 1. A fexit attached to a tail_ca...

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:09:59
  • Zuletzt bearbeitet 17.09.2026 17:17:50

In the Linux kernel, the following vulnerability has been resolved: pinctrl: mediatek: use devm_gpiochip_add_data() for GPIO chip The gpio_chip is allocated with device-managed memory but registered with the non-managed gpiochip_add_data(). This wa...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:09:58
  • Zuletzt bearbeitet 17.09.2026 17:17:50

In the Linux kernel, the following vulnerability has been resolved: pinctrl: mediatek: free EINT resources on unbind mtk_eint_do_init() creates an IRQ domain, populates it with a mapping for every EINT line and installs a chained handler on the par...

  • EPSS 0.16%
  • Veröffentlicht 17.09.2026 16:09:57
  • Zuletzt bearbeitet 17.09.2026 17:17:50

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Validate string descriptors The string descriptor length includes a two-byte header while the UTF-16 payload starts after it. utf16s_to_utf8s() expects a count of ...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:09:55
  • Zuletzt bearbeitet 17.09.2026 17:17:49

In the Linux kernel, the following vulnerability has been resolved: crypto: keembay - Initialize completion before requesting IRQ kmb_ocs_aes_probe() requests the device IRQ before initializing irq_completion. Once the handler is registered it can ...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:09:55
  • Zuletzt bearbeitet 17.09.2026 17:17:49

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: debugfs: Reserve space for a string terminator ufs_saved_err_write() copies user input into a zero-initialized stack buffer and passes it to kstrtoint(). A write that fi...

  • EPSS 0.13%
  • Veröffentlicht 17.09.2026 16:09:54
  • Zuletzt bearbeitet 18.09.2026 18:17:59

In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix integer overflow of user QP buffer size set_user_buf_size() computes the QP buffer size by left-shifting the user-supplied rq.wqe_cnt and rq.wqe_shift values as sign...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:09:53
  • Zuletzt bearbeitet 17.09.2026 17:17:48

In the Linux kernel, the following vulnerability has been resolved: spi: oc-tiny: switch to managed controller allocation The controller is allocated with the non-managed spi_alloc_host() while the interrupt is registered with devm_request_irq(). ...