cbcvebase.

Debian Linux vulnerabilities

12,638 known vulnerabilities affecting debian/linux.

Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226

Vulnerabilities

Page 151 of 632
CVE-2017-16526P4HIGHCVSS 7.8fixed in linux 4.13.10-1 (bookworm)2017
CVE-2017-16526 [HIGH] CVE-2017-16526: linux - drivers/uwb/uwbd.c in the Linux kernel before 4.13.6 allows local users to cause... drivers/uwb/uwbd.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (general protection fault and system crash) or possibly have unspecified other impact via a crafted USB device. Scope: local bookworm: resolved (fixed in 4.13.10-1) bullseye: resolved (fixed in 4.13.10-1) forky: resolved (fixed in 4.13.10-1) sid: resolved (fixed in 4.1
debian
CVE-2014-7284P4MEDIUMCVSS 6.4fixed in linux 3.16.2-1 (bookworm)2014
CVE-2014-7284 [MEDIUM] CVE-2014-7284: linux - The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3... The net_get_random_once implementation in net/core/utils.c in the Linux kernel 3.13.x and 3.14.x before 3.14.5 on certain Intel processors does not perform the intended slow-path operation to initialize random seeds, which makes it easier for remote attackers to spoof or disrupt IP communication by leveraging the predictability of TCP sequence numbers, TCP and UDP por
debian
CVE-2026-23191P4HIGHCVSS 7.8fixed in linux 6.18.10-1 (forky)2026
CVE-2026-23191 [HIGH] CVE-2026-23191: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: aloop... In the Linux kernel, the following vulnerability has been resolved: ALSA: aloop: Fix racy access at PCM trigger The PCM trigger callback of aloop driver tries to check the PCM state and stop the stream of the tied substream in the corresponding cable. Since both check and stop operations are performed outside the cable lock, this may result in UAF when a program attem
debian
CVE-2018-3620P4MEDIUMCVSS 5.6fixed in intel-microcode 3.20180703.1 (bookworm)2018
CVE-2018-3620 [MEDIUM] CVE-2018-3620: intel-microcode - Systems with microprocessors utilizing speculative execution and address transla... Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access via a terminal page fault and a side-channel analysis. Scope: local bookworm: resolved (fixed in 3.20180703.1) bullseye: resolved (fixed in 3.20180703.1) for
debian
CVE-2021-4204P4HIGHCVSS 7.1fixed in linux 5.17.3-1 (bookworm)2021
CVE-2021-4204 [HIGH] CVE-2021-4204: linux - An out-of-bounds (OOB) memory access flaw was found in the Linux kernel's eBPF d... An out-of-bounds (OOB) memory access flaw was found in the Linux kernel's eBPF due to an Improper Input Validation. This flaw allows a local attacker with a special privilege to crash the system or leak internal information. Scope: local bookworm: resolved (fixed in 5.17.3-1) bullseye: open forky: resolved (fixed in 5.17.3-1) sid: resolved (fixed in 5.17.3-1) trixie: re
debian
CVE-2015-8543P4HIGHCVSS 7.0fixed in linux 4.3.3-1 (bookworm)2015
CVE-2015-8543 [HIGH] CVE-2015-8543: linux - The networking implementation in the Linux kernel through 4.3.3, as used in Andr... The networking implementation in the Linux kernel through 4.3.3, as used in Android and other products, does not validate protocol identifiers for certain protocol families, which allows local users to cause a denial of service (NULL function pointer dereference and system crash) or possibly gain privileges by leveraging CLONE_NEWUSER support to execute a crafted SOCK_R
debian
CVE-2015-5157P4HIGHCVSS 7.2fixed in linux 4.0.8-2 (bookworm)2015
CVE-2015-5157 [HIGH] CVE-2015-5157: linux - arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platfor... arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform mishandles IRET faults in processing NMIs that occurred during userspace execution, which might allow local users to gain privileges by triggering an NMI. Scope: local bookworm: resolved (fixed in 4.0.8-2) bullseye: resolved (fixed in 4.0.8-2) forky: resolved (fixed in 4.0.8-2) sid: resolv
debian
CVE-2020-9383P4HIGHCVSS 7.1fixed in linux 5.5.13-1 (bookworm)2020
CVE-2020-9383 [HIGH] CVE-2020-9383: linux - An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drive... An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it, aka CID-2e90ca68b0d2. Scope: local bookworm: resolved (fixed in 5.5.13-1) bullseye: resolved (fixed in 5.5.13-1) forky: resolved (fixed in 5.5.13-1) sid: resolv
debian
CVE-2014-3534P4HIGHCVSS 7.2fixed in linux 3.14.13-2 (bookworm)2014
CVE-2014-3534 [HIGH] CVE-2014-3534: linux - arch/s390/kernel/ptrace.c in the Linux kernel before 3.15.8 on the s390 platform... arch/s390/kernel/ptrace.c in the Linux kernel before 3.15.8 on the s390 platform does not properly restrict address-space control operations in PTRACE_POKEUSR_AREA requests, which allows local users to obtain read and write access to kernel memory locations, and consequently gain privileges, via a crafted application that makes a ptrace system call. Scope: local bookwor
debian
CVE-2017-12154P4HIGHCVSS 7.1fixed in linux 4.12.13-1 (bookworm)2017
CVE-2017-12154 [HIGH] CVE-2017-12154: linux - The prepare_vmcs02 function in arch/x86/kvm/vmx.c in the Linux kernel through 4.... The prepare_vmcs02 function in arch/x86/kvm/vmx.c in the Linux kernel through 4.13.3 does not ensure that the "CR8-load exiting" and "CR8-store exiting" L0 vmcs02 controls exist in cases where L1 omits the "use TPR shadow" vmcs12 control, which allows KVM L2 guest OS users to obtain read and write access to the hardware CR8 register. Scope: local bookworm: resolved (f
debian
CVE-2025-39682P4HIGHCVSS 7.1fixed in linux 6.1.153-1 (bookworm)2025
CVE-2025-39682 [HIGH] CVE-2025-39682: linux - In the Linux kernel, the following vulnerability has been resolved: tls: fix ha... In the Linux kernel, the following vulnerability has been resolved: tls: fix handling of zero-length records on the rx_list Each recvmsg() call must process either - only contiguous DATA records (any number of them) - one non-DATA record If the next record has different type than what has already been processed we break out of the main processing loop. If the record h
debian
CVE-2019-15917P4HIGHCVSS 7.0fixed in linux 4.19.37-1 (bookworm)2019
CVE-2019-15917 [HIGH] CVE-2019-15917: linux - An issue was discovered in the Linux kernel before 5.0.5. There is a use-after-f... An issue was discovered in the Linux kernel before 5.0.5. There is a use-after-free issue when hci_uart_register_dev() fails in hci_uart_set_proto() in drivers/bluetooth/hci_ldisc.c. Scope: local bookworm: resolved (fixed in 4.19.37-1) bullseye: resolved (fixed in 4.19.37-1) forky: resolved (fixed in 4.19.37-1) sid: resolved (fixed in 4.19.37-1) trixie: resolved (fixe
debian
CVE-2025-40190P4UNKNOWNfixed in linux 6.1.158-1 (bookworm)2025
CVE-2025-40190 CVE-2025-40190: linux - In the Linux kernel, the following vulnerability has been resolved: ext4: guard... In the Linux kernel, the following vulnerability has been resolved: ext4: guard against EA inode refcount underflow in xattr update syzkaller found a path where ext4_xattr_inode_update_ref() reads an EA inode refcount that is already ref underflow: ref_count=-1 ref_change=-1 EXT4-fs warning: ea_inode dec ref err=-117 Make the invariant explicit: if the current refcount is no
debian
CVE-2025-40334P4LOWfixed in linux 6.17.8-1 (forky)2025
CVE-2025-40334 [LOW] CVE-2025-40334: linux - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu:... In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: validate userq buffer virtual address and size It needs to validate the userq object virtual address to determine whether it is residented in a valid vm mapping. Scope: local bookworm: resolved bullseye: resolved forky: resolved (fixed in 6.17.8-1) sid: resolved (fixed in 6.17.8-1) trixie:
debian
CVE-2022-1353P4HIGHCVSS 7.1fixed in linux 5.17.3-1 (bookworm)2022
CVE-2022-1353 [HIGH] CVE-2022-1353: linux - A vulnerability was found in the pfkey_register function in net/key/af_key.c in ... A vulnerability was found in the pfkey_register function in net/key/af_key.c in the Linux kernel. This flaw allows a local, unprivileged user to gain access to kernel memory, leading to a system crash or a leak of internal kernel information. Scope: local bookworm: resolved (fixed in 5.17.3-1) bullseye: resolved (fixed in 5.10.113-1) forky: resolved (fixed in 5.17.3-1)
debian
CVE-2026-22984P4HIGHCVSS 7.1fixed in linux 6.1.162-1 (bookworm)2026
CVE-2026-22984 [HIGH] CVE-2026-22984: linux - In the Linux kernel, the following vulnerability has been resolved: libceph: pr... In the Linux kernel, the following vulnerability has been resolved: libceph: prevent potential out-of-bounds reads in handle_auth_done() Perform an explicit bounds check on payload_len to avoid a possible out-of-bounds access in the callout. [ idryomov: changelog ] Scope: local bookworm: resolved (fixed in 6.1.162-1) bullseye: resolved forky: resolved (fixed in 6.18.8
debian
CVE-2020-15780P4MEDIUMCVSS 6.7fixed in linux 5.7.10-1 (bookworm)2020
CVE-2020-15780 [MEDIUM] CVE-2020-15780: linux - An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel befo... An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel before 5.7.7. Injection of malicious ACPI tables via configfs could be used by attackers to bypass lockdown and secure boot restrictions, aka CID-75b0cea7bf30. Scope: local bookworm: resolved (fixed in 5.7.10-1) bullseye: resolved (fixed in 5.7.10-1) forky: resolved (fixed in 5.7.10-1) sid:
debian
CVE-2022-49407P4HIGHCVSS 7.1fixed in linux 5.18.5-1 (bookworm)2022
CVE-2022-49407 [HIGH] CVE-2022-49407: linux - In the Linux kernel, the following vulnerability has been resolved: dlm: fix pl... In the Linux kernel, the following vulnerability has been resolved: dlm: fix plock invalid read This patch fixes an invalid read showed by KASAN. A unlock will allocate a "struct plock_op" and a followed send_op() will append it to a global send_list data structure. In some cases a followed dev_read() moves it to recv_list and dev_write() will cast it to "struct plock
debian
CVE-2024-27401P4HIGHCVSS 7.1fixed in linux 6.1.94-1 (bookworm)2024
CVE-2024-27401 [HIGH] CVE-2024-27401: linux - In the Linux kernel, the following vulnerability has been resolved: firewire: n... In the Linux kernel, the following vulnerability has been resolved: firewire: nosy: ensure user_length is taken into account when fetching packet contents Ensure that packet_buffer_get respects the user_length provided. If the length of the head packet exceeds the user_length, packet_buffer_get will now return 0 to signify to the user that no data were read and a larg
debian
CVE-2025-38728P4HIGHCVSS 7.1fixed in linux 6.1.153-1 (bookworm)2025
CVE-2025-38728 [HIGH] CVE-2025-38728: linux - In the Linux kernel, the following vulnerability has been resolved: smb3: fix f... In the Linux kernel, the following vulnerability has been resolved: smb3: fix for slab out of bounds on mount to ksmbd With KASAN enabled, it is possible to get a slab out of bounds during mount to ksmbd due to missing check in parse_server_interfaces() (see below): BUG: KASAN: slab-out-of-bounds in parse_server_interfaces+0x14ee/0x1880 [cifs] Read of size 4 at addr f
debian
Debian Linux vulnerabilities | cvebase