Debian Linux vulnerabilities
12,638 known vulnerabilities affecting debian/linux.
Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226
Vulnerabilities
Page 150 of 632
CVE-2014-2706P4LOWCVSS 7.1fixed in linux 3.13.7-1 (bookworm)2014
CVE-2014-2706 [HIGH] CVE-2014-2706: linux - Race condition in the mac80211 subsystem in the Linux kernel before 3.13.7 allow...
Race condition in the mac80211 subsystem in the Linux kernel before 3.13.7 allows remote attackers to cause a denial of service (system crash) via network traffic that improperly interacts with the WLAN_STA_PS_STA state (aka power-save mode), related to sta_info.c and tx.c.
Scope: local
bookworm: resolved (fixed in 3.13.7-1)
bullseye: resolved (fixed in 3.13.7-1)
forky:
debian
CVE-2019-18812P4LOWCVSS 7.5fixed in linux 5.4.6-1 (bookworm)2019
CVE-2019-18812 [HIGH] CVE-2019-18812: linux - A memory leak in the sof_dfsentry_write() function in sound/soc/sof/debug.c in t...
A memory leak in the sof_dfsentry_write() function in sound/soc/sof/debug.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-c0a333d842ef.
Scope: local
bookworm: resolved (fixed in 5.4.6-1)
bullseye: resolved (fixed in 5.4.6-1)
forky: resolved (fixed in 5.4.6-1)
sid: resolved (fixed in 5.4.6-1)
trixie: resol
debian
CVE-2019-19061P4LOWCVSS 7.5fixed in linux 5.3.9-1 (bookworm)2019
CVE-2019-19061 [HIGH] CVE-2019-19061: linux - A memory leak in the adis_update_scan_mode_burst() function in drivers/iio/imu/a...
A memory leak in the adis_update_scan_mode_burst() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-9c0530e898f3.
Scope: local
bookworm: resolved (fixed in 5.3.9-1)
bullseye: resolved (fixed in 5.3.9-1)
forky: resolved (fixed in 5.3.9-1)
sid: resolved (fixed in 5.3.9-
debian
CVE-2019-19079P4HIGHCVSS 7.5fixed in linux 5.3.7-1 (bookworm)2019
CVE-2019-19079 [HIGH] CVE-2019-19079: linux - A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Lin...
A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before 5.3 allows attackers to cause a denial of service (memory consumption), aka CID-a21b7f0cff19.
Scope: local
bookworm: resolved (fixed in 5.3.7-1)
bullseye: resolved (fixed in 5.3.7-1)
forky: resolved (fixed in 5.3.7-1)
sid: resolved (fixed in 5.3.7-1)
trixie: resolved (fixe
debian
CVE-2013-4563P4HIGHCVSS 7.1fixed in linux 3.11.10-1 (bookworm)2013
CVE-2013-4563 [HIGH] CVE-2013-4563: linux - The udp6_ufo_fragment function in net/ipv6/udp_offload.c in the Linux kernel thr...
The udp6_ufo_fragment function in net/ipv6/udp_offload.c in the Linux kernel through 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly perform a certain size comparison before inserting a fragment header, which allows remote attackers to cause a denial of service (panic) via a large IPv6 UDP packet, as demonstrated by use of the Token Bucket Filte
debian
CVE-2023-2593P4MEDIUMCVSS 5.9fixed in linux 6.1.7-1 (bookworm)2023
CVE-2023-2593 [MEDIUM] CVE-2023-2593: linux - A flaw exists within the Linux kernel's handling of new TCP connections. The iss...
A flaw exists within the Linux kernel's handling of new TCP connections. The issue results from the lack of memory release after its effective lifetime. This vulnerability allows an unauthenticated attacker to create a denial of service condition on the system.
Scope: local
bookworm: resolved (fixed in 6.1.7-1)
bullseye: resolved
forky: resolved (fixed in 6.1.7-1)
sid
debian
CVE-2025-21758P4MEDIUMCVSS 5.5fixed in linux 6.1.129-1 (bookworm)2025
CVE-2025-21758 [MEDIUM] CVE-2025-21758: linux - In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast...
In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: add RCU protection to mld_newpack() mld_newpack() can be called without RTNL or RCU being held. Note that we no longer can use sock_alloc_send_skb() because ipv6.igmp_sk uses GFP_KERNEL allocations which can sleep. Instead use alloc_skb() and charge the net->ipv6.igmp_sk socket under RC
debian
CVE-2024-0193P4HIGHCVSS 7.8fixed in linux 6.1.69-1 (bookworm)2024
CVE-2024-0193 [HIGH] CVE-2024-0193: linux - A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. ...
A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT_CHAIN object or NFT_OBJECT object, allowing a local unprivileged user with CAP_NET_ADMIN capability to escalate their privileges
debian
CVE-2016-3857P4LOWCVSS 7.8fixed in linux 4.7.2-1 (bookworm)2016
CVE-2016-3857 [HIGH] CVE-2016-3857: linux - The kernel in Android before 2016-08-05 on Nexus 7 (2013) devices allows attacke...
The kernel in Android before 2016-08-05 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 28522518.
Scope: local
bookworm: resolved (fixed in 4.7.2-1)
bullseye: resolved (fixed in 4.7.2-1)
forky: resolved (fixed in 4.7.2-1)
sid: resolved (fixed in 4.7.2-1)
trixie: resolved (fixed in 4.7.2-1)
debian
CVE-2016-2143P4HIGHCVSS 7.8fixed in linux 4.4.6-1 (bookworm)2016
CVE-2016-2143 [HIGH] CVE-2016-2143: linux - The fork implementation in the Linux kernel before 4.5 on s390 platforms mishand...
The fork implementation in the Linux kernel before 4.5 on s390 platforms mishandles the case of four page-table levels, which allows local users to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted application, related to arch/s390/include/asm/mmu_context.h and arch/s390/include/asm/pgalloc.h.
Scope: local
bookworm: resolve
debian
CVE-2018-12930P4HIGHCVSS 7.8fixed in linux 4.19.37-1 (bookworm)2018
CVE-2018-12930 [HIGH] CVE-2018-12930: linux - ntfs_end_buffer_async_read in the ntfs.ko filesystem driver in the Linux kernel ...
ntfs_end_buffer_async_read in the ntfs.ko filesystem driver in the Linux kernel 4.15.0 allows attackers to trigger a stack-based out-of-bounds write and cause a denial of service (kernel oops or panic) or possibly have unspecified other impact via a crafted ntfs filesystem.
Scope: local
bookworm: resolved (fixed in 4.19.37-1)
bullseye: resolved (fixed in 4.19.37-1)
fo
debian
CVE-2018-12931P4HIGHCVSS 7.8fixed in linux 4.19.37-1 (bookworm)2018
CVE-2018-12931 [HIGH] CVE-2018-12931: linux - ntfs_attr_find in the ntfs.ko filesystem driver in the Linux kernel 4.15.0 allow...
ntfs_attr_find in the ntfs.ko filesystem driver in the Linux kernel 4.15.0 allows attackers to trigger a stack-based out-of-bounds write and cause a denial of service (kernel oops or panic) or possibly have unspecified other impact via a crafted ntfs filesystem.
Scope: local
bookworm: resolved (fixed in 4.19.37-1)
bullseye: resolved (fixed in 4.19.37-1)
forky: resolve
debian
CVE-2017-5546P4HIGHCVSS 7.8fixed in linux 4.9.6-1 (bookworm)2017
CVE-2017-5546 [HIGH] CVE-2017-5546: linux - The freelist-randomization feature in mm/slab.c in the Linux kernel 4.8.x and 4....
The freelist-randomization feature in mm/slab.c in the Linux kernel 4.8.x and 4.9.x before 4.9.5 allows local users to cause a denial of service (duplicate freelist entries and system crash) or possibly have unspecified other impact in opportunistic circumstances by leveraging the selection of a large value for a random number.
Scope: local
bookworm: resolved (fixed in
debian
CVE-2017-18255P4LOWCVSS 7.8fixed in linux 4.11.6-1 (bookworm)2017
CVE-2017-18255 [HIGH] CVE-2017-18255: linux - The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Li...
The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow) or possibly have unspecified other impact via a large value, as demonstrated by an incorrect sample-rate calculation.
Scope: local
bookworm: resolved (fixed in 4.11.6-1)
bullseye: resolved (fixed in 4
debian
CVE-2017-17854P4HIGHCVSS 7.8fixed in linux 4.14.7-1 (bookworm)2017
CVE-2017-17854 [HIGH] CVE-2017-17854: linux - kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to c...
kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (integer overflow and memory corruption) or possibly have unspecified other impact by leveraging unrestricted integer values for pointer arithmetic.
Scope: local
bookworm: resolved (fixed in 4.14.7-1)
bullseye: resolved (fixed in 4.14.7-1)
forky: resolved (fixed in
debian
CVE-2017-9984P4LOWCVSS 7.8fixed in linux 4.13.4-1 (bookworm)2017
CVE-2017-9984 [HIGH] CVE-2017-9984: linux - The snd_msnd_interrupt function in sound/isa/msnd/msnd_pinnacle.c in the Linux k...
The snd_msnd_interrupt function in sound/isa/msnd/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a "double fetch" vulnerability.
Scope: local
bookworm: resol
debian
CVE-2017-9986P4LOWCVSS 7.8fixed in linux 4.15.4-1 (bookworm)2017
CVE-2017-9986 [HIGH] CVE-2017-9986: linux - The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel through 4.11....
The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a "double fetch" vulnerability.
Scope: local
bookworm: resolved (fixed in 4.15.
debian
CVE-2017-17852P4HIGHCVSS 7.8fixed in linux 4.14.7-1 (bookworm)2017
CVE-2017-17852 [HIGH] CVE-2017-17852: linux - kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to c...
kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging mishandling of 32-bit ALU ops.
Scope: local
bookworm: resolved (fixed in 4.14.7-1)
bullseye: resolved (fixed in 4.14.7-1)
forky: resolved (fixed in 4.14.7-1)
sid: resolved (fixed in 4.14.7-
debian
CVE-2018-7480P4HIGHCVSS 7.8fixed in linux 4.11.6-1 (bookworm)2018
CVE-2018-7480 [HIGH] CVE-2018-7480: linux - The blkcg_init_queue function in block/blk-cgroup.c in the Linux kernel before 4...
The blkcg_init_queue function in block/blk-cgroup.c in the Linux kernel before 4.11 allows local users to cause a denial of service (double free) or possibly have unspecified other impact by triggering a creation failure.
Scope: local
bookworm: resolved (fixed in 4.11.6-1)
bullseye: resolved (fixed in 4.11.6-1)
forky: resolved (fixed in 4.11.6-1)
sid: resolved (fixed in
debian
CVE-2017-9985P4LOWCVSS 7.8fixed in linux 4.13.4-1 (bookworm)2017
CVE-2017-9985 [HIGH] CVE-2017-9985: linux - The snd_msndmidi_input_read function in sound/isa/msnd/msnd_midi.c in the Linux ...
The snd_msndmidi_input_read function in sound/isa/msnd/msnd_midi.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a "double fetch" vulnerability.
Scope: local
bookworm: reso
debian