Debian

Debian 14 (forky)

19396 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 15.08.2026 12:27:45
  • Zuletzt bearbeitet 17.08.2026 06:19:49

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hold conn in hci_connect_big_sync() callback There is theoretical UAF if the conn is freed while the hci_sync task is running. Hold refcount to avoid that. Ha...

  • EPSS 0.17%
  • Veröffentlicht 15.08.2026 12:27:45
  • Zuletzt bearbeitet 23.08.2026 13:16:45

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: hold conn reference in abort_conn_sync() There is theoretical UAF if the conn is freed while the hci_sync task is running. Hold refcount to avoid that.

  • EPSS 0.16%
  • Veröffentlicht 15.08.2026 12:27:44
  • Zuletzt bearbeitet 17.08.2026 06:19:49

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hold conn in hci_past_sync() callback Avoids giving freed pointers to hci_conn_valid(), which kmalloc may have reused. Hold refcount to avoid that.

  • EPSS 0.16%
  • Veröffentlicht 15.08.2026 12:27:44
  • Zuletzt bearbeitet 17.08.2026 06:19:49

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hold conn in hci_connect_pa_sync() callback There is theoretical UAF if the conn is freed while the hci_sync task is running. Hold refcount to avoid that.

  • EPSS 0.16%
  • Veröffentlicht 15.08.2026 12:27:43
  • Zuletzt bearbeitet 17.08.2026 06:19:49

In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Block VFs from clobbering special CGX PKIND state PF and VF NIX LFs that share a CGX LMAC reuse the same hardware PKIND programming. When HiGig2 or EDSA parsing is en...

  • EPSS 0.18%
  • Veröffentlicht 15.08.2026 12:27:42
  • Zuletzt bearbeitet 19.08.2026 17:21:09

In the Linux kernel, the following vulnerability has been resolved: net: sxgbe: free TX rings on RX allocation failure When RX descriptor ring allocation fails, init_dma_desc_rings() only frees the partially allocated RX rings and returns. The TX r...

  • EPSS 0.16%
  • Veröffentlicht 15.08.2026 12:27:42
  • Zuletzt bearbeitet 17.08.2026 06:19:49

In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix potential deadlock in mpi3mr_fault_uevent_emit mpi3mr_fault_uevent_emit() runs from the fault watchdog and reset paths where host I/O may already be blocked. GFP_...

  • EPSS 0.17%
  • Veröffentlicht 15.08.2026 12:27:41
  • Zuletzt bearbeitet 17.08.2026 06:19:49

In the Linux kernel, the following vulnerability has been resolved: riscv: mm: Fix out-of-bounds page-table walk during memory hot-remove remove_pud_mapping() and remove_p4d_mapping() obtain a child table base with pud_offset(p4dp, 0) and p4d_offse...

  • EPSS 0.5%
  • Veröffentlicht 15.08.2026 12:27:40
  • Zuletzt bearbeitet 19.08.2026 17:21:09

In the Linux kernel, the following vulnerability has been resolved: qede: sync udp_tunnel ports outside qede_lock in the recovery path A TX timeout on a qede NIC that has VXLAN/GENEVE tunnel ports configured wedges the rtnetlink control plane of th...

  • EPSS 0.16%
  • Veröffentlicht 15.08.2026 12:27:39
  • Zuletzt bearbeitet 03.10.2026 11:17:39

In the Linux kernel, the following vulnerability has been resolved: ksmbd: use memcmp() to compare ClientGUIDs ClientGUID is a fixed-size binary value and can contain embedded NUL bytes. strncmp() stops comparing at the first NUL byte, so different...