Debian

Debian 14 (forky)

19396 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.58%
  • Veröffentlicht 17.09.2026 16:06:53
  • Zuletzt bearbeitet 18.09.2026 18:17:44

In the Linux kernel, the following vulnerability has been resolved: ksmbd: defer publishing granted locks to prevent UAF/double-free race In smb2_lock(), mid-batch granted locks are published to connection-wide (conn->lock_list) and file-wide (fp->...

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:06:53
  • Zuletzt bearbeitet 17.09.2026 17:17:09

In the Linux kernel, the following vulnerability has been resolved: smb/server: call ksmbd_proc_cleanup() on module init failure When a later initializer fails, the unwind chain releases resources created after procfs and then jumps directly to cla...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:06:52
  • Zuletzt bearbeitet 18.09.2026 18:17:44

In the Linux kernel, the following vulnerability has been resolved: erofs: fix interlaced ztailpacking pclusters On-disk sizes of interlaced pclusters should be block-aligned, and ztailpacking interlaced pclusters should be invalid at all. Current...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:06:51
  • Zuletzt bearbeitet 17.09.2026 17:17:09

In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow bpf_{g,s}etsockopt() in cgroup UNIX getname hooks _bpf_setsockopt() and _bpf_getsockopt() call sock_owned_by_me() for full sockets, so these helpers expect the socket...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:06:51
  • Zuletzt bearbeitet 17.09.2026 17:17:09

In the Linux kernel, the following vulnerability has been resolved: lwt_bpf: Restore reserved headroom after xmit program ip_finish_output2() expands an skb to LL_RESERVED_SPACE(dev) before LWT xmit. An LWT_XMIT BPF program can then modify the skb ...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:06:49
  • Zuletzt bearbeitet 17.09.2026 17:17:08

In the Linux kernel, the following vulnerability has been resolved: bpf: Reject negative optlen in cgroup getsockopt hook A cgroup getsockopt BPF program can shrink ctx->optlen after the kernel getsockopt handler has run. The kernel-buffer variant,...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:06:49
  • Zuletzt bearbeitet 17.09.2026 17:17:08

In the Linux kernel, the following vulnerability has been resolved: m68k: nfcon: Do not call console_is_registered() in nfcon_device() Since 7c2af0f634f1 ("tty: tty_io: use console_list_lock for list synchronization") show_cons_active() calls the ....

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:06:48
  • Zuletzt bearbeitet 18.09.2026 18:17:44

In the Linux kernel, the following vulnerability has been resolved: ksmbd: safely discard unregistered deferred locks When vfs_lock_file() defers a lock, smb2_lock() puts its ksmbd_lock on rollback_list before allocating and registering the asynchr...

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:06:47
  • Zuletzt bearbeitet 17.09.2026 17:17:08

In the Linux kernel, the following vulnerability has been resolved: ksmbd: scope session state changes to bound connections ksmbd_all_conn_set_status() treats every connection whose transient binding flag is set as belonging to the target SessionId...

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:06:47
  • Zuletzt bearbeitet 17.09.2026 17:17:08

In the Linux kernel, the following vulnerability has been resolved: ksmbd: detach blocked lock requests before freeing A file_lock retained by ksmbd for byte-range lock bookkeeping can still be part of the VFS blocked-request graph. In particular, ...