Debian

Debian 14 (forky)

19396 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.63%
  • Veröffentlicht 11.09.2026 19:43:39
  • Zuletzt bearbeitet 14.09.2026 13:19:05

In the Linux kernel, the following vulnerability has been resolved: lockd: pin next file across nlm_inspect_file lock-drop nlm_traverse_files() pins the current file with f_count++ across a mutex_unlock for nlm_inspect_file(), but nothing pins the ...

  • EPSS 0.49%
  • Veröffentlicht 11.09.2026 19:43:38
  • Zuletzt bearbeitet 14.09.2026 13:19:05

In the Linux kernel, the following vulnerability has been resolved: nvme: zero the discard fallback page nvme_setup_discard() always maps sizeof(struct nvme_dsm_range) * NVME_DSM_MAX_RANGES = 4096 bytes as the DSM payload however many ranges the co...

  • EPSS 0.2%
  • Veröffentlicht 11.09.2026 19:43:38
  • Zuletzt bearbeitet 11.09.2026 20:19:30

In the Linux kernel, the following vulnerability has been resolved: lockd: fix NULL dereference on lockowner allocation failure nlmclnt_locks_init_private() installs NLM file lock operations even when nlmclnt_find_lockowner() fails to allocate a lo...

  • EPSS 0.63%
  • Veröffentlicht 11.09.2026 19:43:37
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: do not accept C2HData based on blk_rq_payload_bytes() alone Commit 25e5cb780e62 ("nvme-tcp: fix possible crash in write_zeroes processing") established that blk_rq_payloa...

  • EPSS 0.38%
  • Veröffentlicht 11.09.2026 19:43:36
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix host memory disclosure on R2T for a read command nvme_tcp_handle_r2t() does not check the direction of the request the R2T refers to. A malicious controller can send ...

  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:43:35
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: sctp: stop processing a packet once its association is deleted sctp_endpoint_bh_rcv() looks the association up only when chunk->asoc is NULL, and caches the result in chunk->asoc a...

  • EPSS 0.37%
  • Veröffentlicht 11.09.2026 19:43:35
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: reject a read that transferred too few bytes nvme_tcp_recv_data() completes a request once the current C2HData PDU has been consumed. Nothing compares the total bytes rec...

  • EPSS 0.46%
  • Veröffentlicht 11.09.2026 19:43:34
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: sctp: drop a chunk if its transport was removed sctp_rcv() resolves the transport once per packet and leaves it in chunk->transport. The lookup reference, or the one sctp_add_backl...

  • EPSS 0.6%
  • Veröffentlicht 11.09.2026 19:43:33
  • Zuletzt bearbeitet 14.09.2026 13:19:03

In the Linux kernel, the following vulnerability has been resolved: sctp: fix stream->outcnt underflow on duplicate RECONF responses A cached RECONF chunk may contain more than one request parameter. A duplicate response can therefore find and pro...

  • EPSS 0.45%
  • Veröffentlicht 11.09.2026 19:43:33
  • Zuletzt bearbeitet 14.09.2026 13:19:04

In the Linux kernel, the following vulnerability has been resolved: sctp: fix NULL deref on untransmitted RECONF completion sctp_process_strreset_outreq(), sctp_process_strreset_addstrm_out() and sctp_process_strreset_resp() complete a pending stre...