Debian

Debian 14 (forky)

19386 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:10:41
  • Zuletzt bearbeitet 17.09.2026 17:17:58

In the Linux kernel, the following vulnerability has been resolved: misc: ad525x_dpot: use driver core groups for sysfs files ad_dpot_probe() creates per-RDAC sysfs files manually and then optionally creates the command sysfs group. This leaves pro...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:10:41
  • Zuletzt bearbeitet 17.09.2026 17:17:58

In the Linux kernel, the following vulnerability has been resolved: misc: bcm-vk: Use acquire/release for msgq_inited bcm_vk_sync_msgq() fills the message queue information and then sets msgq_inited. Readers call bcm_vk_drv_access_ok() before acces...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:10:40
  • Zuletzt bearbeitet 17.09.2026 17:17:58

In the Linux kernel, the following vulnerability has been resolved: ipack: ipoctal: fix UAF, null-ptr-deref, and use-after-free in cleanup on remove Three issues arise when the device is removed while a tty session is still active: 1. UAF of struc...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:10:39
  • Zuletzt bearbeitet 17.09.2026 17:17:58

In the Linux kernel, the following vulnerability has been resolved: mtd: part: reject MTDPART_OFS_RETAIN in mtd_add_partition() mtd_add_partition() does not reject the special offset value MTDPART_OFS_RETAIN (-3), which leads to a WARN_ON in add_mt...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:10:39
  • Zuletzt bearbeitet 17.09.2026 17:17:58

In the Linux kernel, the following vulnerability has been resolved: mtd: mtdswap: Avoid freeing registered blktrans device twice In mtdswap_add_mtd(), debugfs setup failure after successful blktrans registration can free mbd_dev twice. add_mtd_blk...

  • EPSS 0.19%
  • Veröffentlicht 17.09.2026 16:10:38
  • Zuletzt bearbeitet 17.09.2026 17:17:57

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Associate BOs with every job that accesses them A submission can expand into a chain of jobs (e.g. bin + render + cache clean). Implicit synchronization in v3d_submit_lock...

  • EPSS 0.15%
  • Veröffentlicht 17.09.2026 16:10:37
  • Zuletzt bearbeitet 18.09.2026 18:18:19

In the Linux kernel, the following vulnerability has been resolved: software node: Fix software_node_get_reference_args() with index -1 The bounds check for the index passed to software_node_get_reference_args() was failing when passed UINT_MAX, th...

  • EPSS 0.16%
  • Veröffentlicht 17.09.2026 16:10:36
  • Zuletzt bearbeitet 17.09.2026 17:17:57

In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow interpreter fallback for arena-related insns Since the interpreter does not support the arena-related insns, interpreter fallback should not be allowed for these insn...

  • EPSS 0.13%
  • Veröffentlicht 17.09.2026 16:10:36
  • Zuletzt bearbeitet 18.09.2026 18:18:19

In the Linux kernel, the following vulnerability has been resolved: bpf: Reject arena frees below the arena base bpf_arena_free_pages() accepts scalar arena addresses. The runtime masks the address to the low 32 bits and reconstructs a full user ad...

  • EPSS 0.16%
  • Veröffentlicht 17.09.2026 16:10:35
  • Zuletzt bearbeitet 17.09.2026 17:17:57

In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow interpreter fallback for gotox insn The interpreter does not recognize the BPF_JMP|BPF_JA|BPF_X insn, which is used for insn_array map. Thereafter, it would hit the B...