Debian

Debian 14 (forky)

19386 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 17.09.2026 16:09:57
  • Zuletzt bearbeitet 17.09.2026 17:17:50

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Validate string descriptors The string descriptor length includes a two-byte header while the UTF-16 payload starts after it. utf16s_to_utf8s() expects a count of ...

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:09:56
  • Zuletzt bearbeitet 17.09.2026 17:17:49

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Validate connected lane counts The connected lane count is used by TX equalization code to index arrays sized by UFS_MAX_LANES. Reject zero and out-of-range RX or ...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:09:55
  • Zuletzt bearbeitet 17.09.2026 17:17:49

In the Linux kernel, the following vulnerability has been resolved: crypto: keembay - Initialize completion before requesting IRQ kmb_ocs_aes_probe() requests the device IRQ before initializing irq_completion. Once the handler is registered it can ...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:09:55
  • Zuletzt bearbeitet 17.09.2026 17:17:49

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: debugfs: Reserve space for a string terminator ufs_saved_err_write() copies user input into a zero-initialized stack buffer and passes it to kstrtoint(). A write that fi...

  • EPSS 0.13%
  • Veröffentlicht 17.09.2026 16:09:54
  • Zuletzt bearbeitet 18.09.2026 18:17:59

In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix integer overflow of user QP buffer size set_user_buf_size() computes the QP buffer size by left-shifting the user-supplied rq.wqe_cnt and rq.wqe_shift values as sign...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:09:53
  • Zuletzt bearbeitet 17.09.2026 17:17:48

In the Linux kernel, the following vulnerability has been resolved: spi: oc-tiny: switch to managed controller allocation The controller is allocated with the non-managed spi_alloc_host() while the interrupt is registered with devm_request_irq(). ...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:09:53
  • Zuletzt bearbeitet 17.09.2026 17:17:48

In the Linux kernel, the following vulnerability has been resolved: isofs: release zisofs block pointer buffer head zisofs_fill_pages() reads the compressed block pointer table. The error paths release the current buffer_head, the loop also releas...

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:09:52
  • Zuletzt bearbeitet 17.09.2026 17:17:48

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Abort directly from the hardlockup handler scx_hardlockup() defers the abort to an irq_work because exit claiming used to take scx_sched_lock and couldn't run from NMI. ...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:09:51
  • Zuletzt bearbeitet 21.09.2026 14:17:29

In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Publish an LVCMDQ only after it is fully initialized tegra241_vintf_init_lvcmdq() stores the freshly allocated vcmdq pointer to the vintf->lvcmdqs[] array, be...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:09:51
  • Zuletzt bearbeitet 17.09.2026 17:17:48

In the Linux kernel, the following vulnerability has been resolved: remoteproc: Prevent crash handling to race with rproc_del() There's no synchronization between rproc_crash_handler_work() and rproc_del(), as such it's possible for a driver to be ...