Debian

Debian 14 (forky)

19386 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:07:13
  • Zuletzt bearbeitet 17.09.2026 17:17:14

In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: fix PREEMPT_RT self-deadlock in IRQ handler qcom_cpucp_mbox_irq_fn() calls mbox_chan_received_data() while holding chan->lock. Under PREEMPT_RT, spin_lock_irqs...

  • EPSS 0.18%
  • Veröffentlicht 17.09.2026 16:07:12
  • Zuletzt bearbeitet 18.09.2026 18:17:45

In the Linux kernel, the following vulnerability has been resolved: mailbox: riscv-sbi-mpxy: validate RPMI notification lengths The SBI return value controls how many bytes are copied from shared memory into the RPMI notification buffer. It is not ...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:07:12
  • Zuletzt bearbeitet 17.09.2026 17:17:13

In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: handle NULL data in send_data callback mailbox_clear_channel() calls mbox_send_message() with NULL data to notify the remote side that the RX channel has been ...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:07:11
  • Zuletzt bearbeitet 17.09.2026 17:17:13

In the Linux kernel, the following vulnerability has been resolved: null_blk: use DEFINE_MUTEX for the file-scope mutex In null_init(), mutex_init(&lock) currently happens after configfs_register_subsystem(), which exposes the nullb subsystem to us...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:07:10
  • Zuletzt bearbeitet 17.09.2026 17:17:13

In the Linux kernel, the following vulnerability has been resolved: null_blk: free global tag_set on init error path If shared_tags is enabled, null_setup_tagset() allocates the global tag_set via null_init_global_tag_set(). If device creation late...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:07:10
  • Zuletzt bearbeitet 17.09.2026 17:17:13

In the Linux kernel, the following vulnerability has been resolved: null_blk: register configfs subsystem after creating default devices In null_init(), configfs_register_subsystem() currently runs before register_blkdev(), so when null_blk is buil...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:07:09
  • Zuletzt bearbeitet 17.09.2026 17:17:13

In the Linux kernel, the following vulnerability has been resolved: null_blk: reject per-device queue resize for shared tag set When shared_tags is enabled, null_setup_tagset() makes the device use the global tag_set, whose driver_data stays NULL. ...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:07:09
  • Zuletzt bearbeitet 17.09.2026 17:17:13

In the Linux kernel, the following vulnerability has been resolved: null_blk: free zones array on device power-off null_init_zoned_dev() allocates dev->zones when a zoned device is powered on, but null_del_dev() never frees it on power-off; dev->zo...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:07:08
  • Zuletzt bearbeitet 17.09.2026 17:17:12

In the Linux kernel, the following vulnerability has been resolved: null_blk: serialize configfs attribute stores with the lock The NULLB_DEVICE_ATTR _store takes no lock: apply_fn attributes (submit_queues, poll_queues) get dev->NAME written again...

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:07:07
  • Zuletzt bearbeitet 17.09.2026 17:17:12

In the Linux kernel, the following vulnerability has been resolved: blk-iolatency: clear delay state when freeing policy data io.latency can throttle a group which has no latency target of its own. When a sibling misses its target, check_scale_chan...