Debian

Debian 14 (forky)

19396 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 11.09.2026 19:44:43
  • Zuletzt bearbeitet 14.09.2026 13:19:12

In the Linux kernel, the following vulnerability has been resolved: dm-era: fix shadowed superblock leak on take-snap failure metadata_take_snap() bumps the live superblock refcount and then dm_tm_shadow_block() allocates a new block for the metada...

  • EPSS 0.16%
  • Veröffentlicht 11.09.2026 19:44:42
  • Zuletzt bearbeitet 13.09.2026 07:17:23

In the Linux kernel, the following vulnerability has been resolved: dm array: validate array block headers on read array_block_check() validates blocknr and csum and nothing else, while node_check(), next to it, has bounded the structural fields si...

  • EPSS 0.17%
  • Veröffentlicht 11.09.2026 19:44:41
  • Zuletzt bearbeitet 21.09.2026 14:17:23

In the Linux kernel, the following vulnerability has been resolved: cpufreq: apple-soc: Fix OPP table cleanup apple_soc_cpufreq_init() adds OPP tables from firmware, but some failure paths do not remove them. The driver also uses dev_pm_opp_remove_...

  • EPSS 0.13%
  • Veröffentlicht 11.09.2026 19:44:41
  • Zuletzt bearbeitet 14.09.2026 13:19:11

In the Linux kernel, the following vulnerability has been resolved: dm array: reject an array block whose value size is not the caller's array_block_check() can only compare the header against itself, so a block with value_size 4 and max_entries 10...

  • EPSS 0.12%
  • Veröffentlicht 11.09.2026 19:44:40
  • Zuletzt bearbeitet 13.09.2026 07:17:23

In the Linux kernel, the following vulnerability has been resolved: cxl/features: bound fwctl command payload to the input buffer fwctl_cmd_rpc() copies cmd->in_len bytes into inbuf = kvzalloc(cmd->in_len) and passes inbuf and in_len to ->fw_rpc()....

  • EPSS 0.12%
  • Veröffentlicht 11.09.2026 19:44:39
  • Zuletzt bearbeitet 13.09.2026 07:17:22

In the Linux kernel, the following vulnerability has been resolved: cxl/mce: Make the MCE notifier per-region Flavien Solt reported lifetime issues with the CXL MCE notifier, which can lead to NULL dereferences and use-after-free in the MCE handler...

  • EPSS 0.19%
  • Veröffentlicht 11.09.2026 19:44:38
  • Zuletzt bearbeitet 11.09.2026 20:19:40

In the Linux kernel, the following vulnerability has been resolved: kho: fix size calculation in kho_preserved_memory_reserve() kho_preserved_memory_reserve() calculates the size of a preservation by doing 1 << (order + PAGE_SHIFT). Since the '1' i...

  • EPSS 0.31%
  • Veröffentlicht 11.09.2026 19:44:38
  • Zuletzt bearbeitet 14.09.2026 13:19:11

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: serialize security confirmation handling rfcomm_security_cfm() looks up a session on session_list and then walks its DLC list without holding rfcomm_mutex. Since...

  • EPSS 0.2%
  • Veröffentlicht 11.09.2026 19:44:37
  • Zuletzt bearbeitet 11.09.2026 20:19:40

In the Linux kernel, the following vulnerability has been resolved: jbd2: bound shrinker scans by examined checkpoint buffers The jbd2 shrinker currently accounts only checkpoint buffers that it successfully releases against nr_to_scan. Busy buffe...

  • EPSS 0.2%
  • Veröffentlicht 11.09.2026 19:44:36
  • Zuletzt bearbeitet 11.09.2026 20:19:40

In the Linux kernel, the following vulnerability has been resolved: jbd2: check need_resched() when skipping busy checkpoint buffers journal_shrink_one_cp_list() skips busy checkpoint buffers when called with JBD2_SHRINK_BUSY_SKIP. The continue st...