Debian

Debian 14 (forky)

19396 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.24%
  • Veröffentlicht 09.01.2024 18:15:47
  • Zuletzt bearbeitet 14.05.2025 04:16:07

A vulnerability was found in vhost_new_msg in drivers/vhost/vhost.c in the Linux kernel, which does not properly initialize memory in messages passed between virtual guests and the host operating system in the vhost/vhost.c:vhost_new_msg() function. ...

  • EPSS 0.28%
  • Veröffentlicht 08.01.2024 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:21:56

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

  • EPSS 0.27%
  • Veröffentlicht 08.01.2024 19:15:08
  • Zuletzt bearbeitet 21.11.2024 07:38:19

The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socket_file() in file net/socket.c. This issue was introduced in da214a475f8bd1d3e9e7a19ddfeb4d1617551bab and fixed in 649c15c7691e9b13cbe9bf6c65c365350e05...

  • EPSS 1.43%
  • Veröffentlicht 08.01.2024 18:15:45
  • Zuletzt bearbeitet 21.11.2024 07:01:19

io_uring UAF, Unix SCM garbage collection

  • EPSS 1.28%
  • Veröffentlicht 08.01.2024 18:15:44
  • Zuletzt bearbeitet 21.11.2024 07:01:17

It was discovered that when exec'ing from a non-leader thread, armed POSIX CPU timers would be left on a list but freed, leading to a use-after-free.

Warnung Exploit
  • EPSS 10.46%
  • Veröffentlicht 08.01.2024 18:15:44
  • Zuletzt bearbeitet 20.08.2026 14:17:08

It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was deleted.

Exploit
  • EPSS 5.87%
  • Veröffentlicht 08.01.2024 18:15:44
  • Zuletzt bearbeitet 21.11.2024 07:01:18

It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if its handle had the value 0.

  • EPSS 0.89%
  • Veröffentlicht 05.01.2024 17:15:08
  • Zuletzt bearbeitet 04.11.2025 20:16:30

Closing of an event channel in the Linux kernel can result in a deadlock. This happens when the close is being performed in parallel to an unrelated Xen console action and the handling of a Xen console interrupt in an unprivileged guest. The closing...

  • EPSS 0.41%
  • Veröffentlicht 04.01.2024 17:15:08
  • Zuletzt bearbeitet 24.03.2026 12:16:09

A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly updates the refcnt on `struct net_device`, and a use-after-free can be triggered by racing between the free on the struct and the ac...

  • EPSS 0.3%
  • Veröffentlicht 02.01.2024 19:15:11
  • Zuletzt bearbeitet 21.11.2024 08:45:28

A memory leak problem was found in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c in the Linux Kernel. This issue may allow a local attacker with CAP_NET_ADMIN privileges to cause a denial of service (DoS) attack due to a refcount...