cbcvebase.

Debian Linux vulnerabilities

12,638 known vulnerabilities affecting debian/linux.

Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226

Vulnerabilities

Page 196 of 632
CVE-2019-19927P4MEDIUMCVSS 6.0fixed in linux 5.2.6-1 (bookworm)2019
CVE-2019-19927 [MEDIUM] CVE-2019-19927: linux - In the Linux kernel 5.0.0-rc7 (as distributed in ubuntu/linux.git on kernel.ubun... In the Linux kernel 5.0.0-rc7 (as distributed in ubuntu/linux.git on kernel.ubuntu.com), mounting a crafted f2fs filesystem image and performing some operations can lead to slab-out-of-bounds read access in ttm_put_pages in drivers/gpu/drm/ttm/ttm_page_alloc.c. This is related to the vmwgfx or ttm module. Scope: local bookworm: resolved (fixed in 5.2.6-1) bullseye:
debian
CVE-2021-47375P4MEDIUMCVSS 6.2fixed in linux 5.14.9-1 (bookworm)2021
CVE-2021-47375 [MEDIUM] CVE-2021-47375: linux - In the Linux kernel, the following vulnerability has been resolved: blktrace: F... In the Linux kernel, the following vulnerability has been resolved: blktrace: Fix uaf in blk_trace access after removing by sysfs There is an use-after-free problem triggered by following process: P1(sda) P2(sdb) echo 0 > /sys/block/sdb/trace/enable blk_trace_remove_queue synchronize_rcu blk_trace_free relay_close rcu_read_lock __blk_add_trace trace_note_tsk (Iterat
debian
CVE-2022-48762P4MEDIUMCVSS 6.2fixed in linux 5.16.7-1 (bookworm)2022
CVE-2022-48762 [MEDIUM] CVE-2022-48762: linux - In the Linux kernel, the following vulnerability has been resolved: arm64: exta... In the Linux kernel, the following vulnerability has been resolved: arm64: extable: fix load_unaligned_zeropad() reg indices In ex_handler_load_unaligned_zeropad() we erroneously extract the data and addr register indices from ex->type rather than ex->data. As ex->type will contain EX_TYPE_LOAD_UNALIGNED_ZEROPAD (i.e. 4): * We'll always treat X0 as the address regis
debian
CVE-2023-52497P4MEDIUMCVSS 6.1fixed in linux 6.1.76-1 (bookworm)2023
CVE-2023-52497 [MEDIUM] CVE-2023-52497: linux - In the Linux kernel, the following vulnerability has been resolved: erofs: fix ... In the Linux kernel, the following vulnerability has been resolved: erofs: fix lz4 inplace decompression Currently EROFS can map another compressed buffer for inplace decompression, that was used to handle the cases that some pages of compressed data are actually not in-place I/O. However, like most simple LZ77 algorithms, LZ4 expects the compressed data is arranged
debian
CVE-2018-12127P4MEDIUMCVSS 5.6fixed in intel-microcode 3.20190514.1 (bookworm)2018
CVE-2018-12127 [MEDIUM] CVE-2018-12127: intel-microcode - Microarchitectural Load Port Data Sampling (MLPDS): Load ports on some microproc... Microarchitectural Load Port Data Sampling (MLPDS): Load ports on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. A list of impacted products can be found here: https://www.intel.com/content/dam/www/public/us/en/documents/corporate-inform
debian
CVE-2018-12126P4MEDIUMCVSS 5.6fixed in intel-microcode 3.20190514.1 (bookworm)2018
CVE-2018-12126 [MEDIUM] CVE-2018-12126: intel-microcode - Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some mic... Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. A list of impacted products can be found here: https://www.intel.com/content/dam/www/public/us/en/documents/corporate-
debian
CVE-2013-2851P4LOWCVSS 6.0fixed in linux 3.9.8-1 (bookworm)2013
CVE-2013-2851 [MEDIUM] CVE-2013-2851: linux - Format string vulnerability in the register_disk function in block/genhd.c in th... Format string vulnerability in the register_disk function in block/genhd.c in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and writing format string specifiers to /sys/module/md_mod/parameters/new_array in order to create a crafted /dev/md device name. Scope: local bookworm: resolved (fixed in 3.9.8-1) bullseye: resolv
debian
CVE-2021-47099P4MEDIUMCVSS 6.0fixed in linux 5.15.15-1 (bookworm)2021
CVE-2021-47099 [MEDIUM] CVE-2021-47099: linux - In the Linux kernel, the following vulnerability has been resolved: veth: ensur... In the Linux kernel, the following vulnerability has been resolved: veth: ensure skb entering GRO are not cloned. After commit d3256efd8e8b ("veth: allow enabling NAPI even without XDP"), if GRO is enabled on a veth device and TSO is disabled on the peer device, TCP skbs will go through the NAPI callback. If there is no XDP program attached, the veth code does not p
debian
CVE-2023-32253P4MEDIUMCVSS 5.9fixed in linux 6.1.37-1 (bookworm)2023
CVE-2023-32253 [MEDIUM] CVE-2023-32253: linux - A flaw was found in the Linux kernel's ksmbd component. A deadlock is triggered ... A flaw was found in the Linux kernel's ksmbd component. A deadlock is triggered by sending multiple concurrent session setup requests, possibly leading to a denial of service. Scope: local bookworm: resolved (fixed in 6.1.37-1) bullseye: open forky: resolved (fixed in 6.3.7-1) sid: resolved (fixed in 6.3.7-1) trixie: resolved (fixed in 6.3.7-1)
debian
CVE-2020-28588P4MEDIUMCVSS 5.5fixed in linux 5.9.15-1 (bookworm)2020
CVE-2020-28588 [MEDIUM] CVE-2020-28588: linux - An information disclosure vulnerability exists in the /proc/pid/syscall function... An information disclosure vulnerability exists in the /proc/pid/syscall functionality of Linux Kernel 5.1 Stable and 5.4.66. More specifically, this issue has been introduced in v5.1-rc4 (commit 631b7abacd02b88f4b0795c08b54ad4fc3e7c7c0) and is still present in v5.10-rc4, so it’s likely that all versions in between are affected. An attacker can read /proc/pid/syscall
debian
CVE-2024-44947P4MEDIUMCVSS 5.5fixed in linux 6.1.112-1 (bookworm)2024
CVE-2024-44947 [MEDIUM] CVE-2024-44947: linux - In the Linux kernel, the following vulnerability has been resolved: fuse: Initi... In the Linux kernel, the following vulnerability has been resolved: fuse: Initialize beyond-EOF page contents before setting uptodate fuse_notify_store(), unlike fuse_do_readpage(), does not enable page zeroing (because it can be used to change partial page contents). So fuse_notify_store() must be more careful to fully initialize page contents (including parts of t
debian
CVE-2022-3435P4MEDIUMCVSS 4.3fixed in linux 6.0.12-1 (bookworm)2022
CVE-2022-3435 [MEDIUM] CVE-2022-3435: linux - A vulnerability classified as problematic has been found in Linux Kernel. This a... A vulnerability classified as problematic has been found in Linux Kernel. This affects the function fib_nh_match of the file net/ipv4/fib_semantics.c of the component IPv4 Handler. The manipulation leads to out-of-bounds read. It is possible to initiate the attack remotely. It is recommended to apply a patch to fix this issue. The identifier VDB-210357 was assigned to
debian
CVE-2019-15902P4MEDIUMCVSS 5.6fixed in linux 5.2.17-1 (bookworm)2019
CVE-2019-15902 [MEDIUM] CVE-2019-15902: linux - A backporting error was discovered in the Linux stable/longterm kernel 4.4.x thr... A backporting error was discovered in the Linux stable/longterm kernel 4.4.x through 4.4.190, 4.9.x through 4.9.190, 4.14.x through 4.14.141, 4.19.x through 4.19.69, and 5.2.x through 5.2.11. Misuse of the upstream "x86/ptrace: Fix possible spectre-v1 in ptrace_get_debugreg()" commit reintroduced the Spectre vulnerability that it aimed to eliminate. This occurred be
debian
CVE-2019-5489P4MEDIUMCVSS 5.5fixed in linux 4.19.37-4 (bookworm)2019
CVE-2019-5489 [MEDIUM] CVE-2019-5489: linux - The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13... The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation may be possible, as demonstrated by latency differ
debian
CVE-2020-24586P4LOWCVSS 3.5fixed in firmware-nonfree 20210818-1 (bookworm)2020
CVE-2020-24586 [LOW] CVE-2020-24586: firmware-nonfree - The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) ... The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that received fragments be cleared from memory after (re)connecting to a network. Under the right circumstances, when another device sends fragmented frames encrypted using WEP, CCMP, or GCMP, this can be abused to inject arbitra
debian
CVE-2022-23960P4MEDIUMCVSS 5.6fixed in linux 5.16.14-1 (bookworm)2022
CVE-2022-23960 [MEDIUM] CVE-2022-23960: linux - Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly re... Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information. Scope: local bookworm: resolved (fixed in 5.
debian
CVE-2024-36357P4MEDIUMCVSS 5.6fixed in amd64-microcode 3.20251202.1 (forky)2024
CVE-2024-36357 [MEDIUM] CVE-2024-36357: amd64-microcode - A transient execution vulnerability in some AMD processors may allow an attacker... A transient execution vulnerability in some AMD processors may allow an attacker to infer data in the L1D cache, potentially resulting in the leakage of sensitive information across privileged boundaries. Scope: local bookworm: open bullseye: open forky: resolved (fixed in 3.20251202.1) sid: resolved (fixed in 3.20251202.1) trixie: open
debian
CVE-2021-47384P4MEDIUMCVSS 5.3fixed in linux 5.14.12-1 (bookworm)2021
CVE-2021-47384 [MEDIUM] CVE-2021-47384: linux - In the Linux kernel, the following vulnerability has been resolved: hwmon: (w83... In the Linux kernel, the following vulnerability has been resolved: hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field If driver read tmp value sufficient for (tmp & 0x08) && (!(tmp & 0x80)) && ((tmp & 0x7) == ((tmp >> 4) & 0x7)) from device then Null pointer dereference occurs. (It is possible if tmp = 0b0xyz1xyz, where same litera
debian
CVE-2014-3690P4MEDIUMCVSS 5.5fixed in linux 3.16.7-1 (bookworm)2014
CVE-2014-3690 [MEDIUM] CVE-2014-3690: linux - arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.17.2 on Int... arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.17.2 on Intel processors does not ensure that the value in the CR4 control register remains the same after a VM entry, which allows host OS users to kill arbitrary processes or cause a denial of service (system disruption) by leveraging /dev/kvm access, as demonstrated by PR_SET_TSC prctl calls withi
debian
CVE-2018-18710P4MEDIUMCVSS 5.5fixed in linux 4.18.20-1 (bookworm)2018
CVE-2018-18710 [MEDIUM] CVE-2018-18710: linux - An issue was discovered in the Linux kernel through 4.19. An information leak in... An issue was discovered in the Linux kernel through 4.19. An information leak in cdrom_ioctl_select_disc in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast from unsigned long to int interferes with bounds checking. This is similar to CVE-2018-10940 and CVE-2018-16658. Scope: local bookworm: resolved (fixed in 4.18.20-1) bu
debian
Debian Linux vulnerabilities | cvebase