Debian

Debian 14 (forky)

19396 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.71%
  • Veröffentlicht 21.02.2024 15:15:09
  • Zuletzt bearbeitet 04.08.2026 11:16:44

In the Linux kernel, the following vulnerability has been resolved: net: tls: fix use-after-free with partial reads and async decrypt tls_decrypt_sg doesn't take a reference on the pages from clear_skb, so the put_page() in tls_decrypt_done release...

  • EPSS 0.55%
  • Veröffentlicht 21.02.2024 15:15:09
  • Zuletzt bearbeitet 04.08.2026 11:16:44

In the Linux kernel, the following vulnerability has been resolved: tls: fix race between async notify and socket close The submitting thread (one which called recvmsg/sendmsg) may exit as soon as the async crypto handler calls complete() so any co...

  • EPSS 0.75%
  • Veröffentlicht 21.02.2024 15:15:09
  • Zuletzt bearbeitet 04.08.2026 11:16:44

In the Linux kernel, the following vulnerability has been resolved: net: tls: handle backlogging of crypto requests Since we're setting the CRYPTO_TFM_REQ_MAY_BACKLOG flag on our requests to the crypto API, crypto_aead_{encrypt,decrypt} can return ...

  • EPSS 0.59%
  • Veröffentlicht 21.02.2024 15:15:09
  • Zuletzt bearbeitet 04.08.2026 11:16:45

In the Linux kernel, the following vulnerability has been resolved: tls: fix race between tx work scheduling and socket close Similarly to previous commit, the submitting thread (recvmsg/sendmsg) may exit as soon as the async crypto handler calls c...

  • EPSS 21.91%
  • Veröffentlicht 21.02.2024 08:15:45
  • Zuletzt bearbeitet 15.08.2026 13:17:40

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_auth_blob() If authblob->SessionKey.Length is bigger than session key size(CIFS_KEY_SIZE), slub overflow can happen in key exchange...

  • EPSS 0.68%
  • Veröffentlicht 21.02.2024 08:15:45
  • Zuletzt bearbeitet 15.08.2026 13:17:41

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out of bounds in init_smb2_rsp_hdr() If client send smb2 negotiate request and then send smb1 negotiate request, init_smb2_rsp_hdr is called for smb1 negotiate request s...

  • EPSS 29.64%
  • Veröffentlicht 21.02.2024 08:15:45
  • Zuletzt bearbeitet 04.08.2026 10:18:27

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate session id and tree id in compound request `smb2_get_msg()` in smb2_get_ksmbd_tcon() and smb2_check_user_session() will always return the first request smb2 header ...

  • EPSS 0.3%
  • Veröffentlicht 20.02.2024 21:15:08
  • Zuletzt bearbeitet 15.08.2026 13:17:39

In the Linux kernel, the following vulnerability has been resolved: f2fs: explicitly null-terminate the xattr list When setting an xattr, explicitly null-terminate the xattr list. This eliminates the fragile assumption that the unused xattr space ...

  • EPSS 0.3%
  • Veröffentlicht 20.02.2024 21:15:08
  • Zuletzt bearbeitet 04.08.2026 10:18:27

In the Linux kernel, the following vulnerability has been resolved: binder: fix use-after-free in shinker's callback The mmap read lock is used during the shrinker's callback, which means that using alloc->vma pointer isn't safe as it can race with...

  • EPSS 0.3%
  • Veröffentlicht 20.02.2024 21:15:08
  • Zuletzt bearbeitet 04.08.2026 10:18:27

In the Linux kernel, the following vulnerability has been resolved: uio: Fix use-after-free in uio_open core-1 core-2 ------------------------------------------------------- uio_unregister_device uio_open idev = idr_find() device_unregister...