Debian

Debian 14 (forky)

19396 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:19
  • Zuletzt bearbeitet 04.09.2026 16:18:07

In the Linux kernel, the following vulnerability has been resolved: xfs: validate attr entry pointer before field access xfs_attr3_leaf_verify_entry() accesses lentry/rentry fields (namelen, valuelen) before checking if the entry pointer itself is ...

  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:13:18
  • Zuletzt bearbeitet 04.09.2026 16:18:07

In the Linux kernel, the following vulnerability has been resolved: xfs: restore nofs context unconditionally in xfs_trans_roll When __xfs_trans_commit() fails in xfs_trans_roll(), the NOFS context is cleared but only restored in the success path. ...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:17
  • Zuletzt bearbeitet 04.09.2026 16:18:07

In the Linux kernel, the following vulnerability has been resolved: nfc: digital: clamp SENSF_RES length to the destination buffer digital_in_recv_sensf_res() memcpy()s resp->len bytes from a remote NFC-F device response into the NFC_SENSF_RES_MAXS...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:16
  • Zuletzt bearbeitet 04.09.2026 16:18:07

In the Linux kernel, the following vulnerability has been resolved: nfc: fdp: bound the device-reported read length and fix an skb leak fdp_nci_i2c_read() takes the next packet length from two device-supplied bytes and never validates it. The value...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:15
  • Zuletzt bearbeitet 04.09.2026 16:18:06

In the Linux kernel, the following vulnerability has been resolved: nfc: microread: validate target discovery payload lengths microread_target_discovered() parses target discovery payloads from skb->data according to the HCI gate. The fixed field o...

Medienbericht
  • EPSS 0.23%
  • Veröffentlicht 04.09.2026 15:13:14
  • Zuletzt bearbeitet 04.09.2026 16:18:06

In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: bound the connect_sn TLV walk to the skb Commit 27256cdb290e ("nfc: llcp: bound SNL TLV parsing to the skb and add length checks") fixed the unbounded TLV walk in nfc_ll...

Medienbericht
  • EPSS 0.23%
  • Veröffentlicht 04.09.2026 15:13:13
  • Zuletzt bearbeitet 04.09.2026 16:18:06

In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: fix OOB read and u8 offset wrap in TLV parsers nfc_llcp_parse_gb_tlv() and nfc_llcp_parse_connection_tlv() contain three related bugs in their TLV parsing loops: 1. 'of...

Medienbericht
  • EPSS 0.23%
  • Veröffentlicht 04.09.2026 15:13:12
  • Zuletzt bearbeitet 04.09.2026 16:18:06

In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: reject PDUs shorter than the LLCP header Every LLCP PDU begins with a two-byte header (DSAP/SSAP + PTYPE), but the receive path never checked that a frame is at least LL...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:10
  • Zuletzt bearbeitet 04.09.2026 16:18:06

In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: purge fragmented skbs during cleanup pn53x_common_clean() purges resp_q before freeing the common PN533 state, but it leaves fragment_skb untouched. The fragmentation ...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:09
  • Zuletzt bearbeitet 04.09.2026 16:18:06

In the Linux kernel, the following vulnerability has been resolved: nfc: nci: add data_len bound checks to activation parameter extractors nci_extract_activation_params_iso_dep() and nci_extract_activation_params_nfc_dep() read an inner length byte...