Debian

Debian 14 (forky)

19396 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 16:48:11
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: tipc: avoid busy looping in tipc_exit_net() Blamed commit introduced a busy-wait loop in tipc_exit_net() to wait for pending UDP bearer cleanup works to complete: while (at...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 16:48:08
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: bpf: Add missing access_ok call to copy_user_syms As reported by sashiko we use __get_user without prior access_ok call on the user space pointer. Adding the missing call for the w...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:18
  • Zuletzt bearbeitet 04.09.2026 16:18:15

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix responder UAF on IB_QP_MAX_DEST_RD_ATOMIC modify_qp rxe_qp_from_attr() handles IB_QP_MAX_DEST_RD_ATOMIC outside the IB_QP_STATE path, so it holds no state_lock and ru...

Medienbericht
  • EPSS 0.18%
  • Veröffentlicht 04.09.2026 15:55:17
  • Zuletzt bearbeitet 04.09.2026 16:18:15

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix OOB in free_rd_atomic_resources() free_rd_atomic_resources() iterates using qp->attr.max_dest_rd_atomic. Updating max_dest_rd_atomic before freeing the old array can ...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:16
  • Zuletzt bearbeitet 04.09.2026 16:18:15

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix usage of page_frag_cache nvme uses page_frag_cache to preallocate PDU for each preallocated request of block device. Block devices are created in parallel threads, co...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:15
  • Zuletzt bearbeitet 03.10.2026 11:17:40

In the Linux kernel, the following vulnerability has been resolved: usb: xhci: bail out of setup if the controller is inaccessible xhci_gen_setup() locates the operational registers using the capability length read from the very first register: x...

  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 15:55:14
  • Zuletzt bearbeitet 21.09.2026 14:17:21

In the Linux kernel, the following vulnerability has been resolved: fuse: fix race between interrupt and resend After commit f8fce75fedf7 ("fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req") the WARN_ON(!list_empty(&req->intr_entry...

  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 15:55:13
  • Zuletzt bearbeitet 11.09.2026 10:16:52

In the Linux kernel, the following vulnerability has been resolved: fuse: fix missing barrier when checking io-uring readiness fuse_block_alloc() reads fch->initialized and then fch->io_uring. fch->io_uring is set before fch->initialized, ordered b...

  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 15:55:12
  • Zuletzt bearbeitet 11.09.2026 10:16:51

In the Linux kernel, the following vulnerability has been resolved: fuse: publish io-uring queues with release semantics fuse_uring_create_queue() initializes a fuse_ring_queue and then publishes the pointer into ring->queues[qid] with WRITE_ONCE()...

  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 15:55:10
  • Zuletzt bearbeitet 07.09.2026 16:17:30

In the Linux kernel, the following vulnerability has been resolved: fuse: wait for FR_FINISHED on abort_on_kill to prevent use-after-free The abort_on_kill path in request_wait_answer() calls fuse_abort_conn() and returns without waiting for FR_FIN...