cbcvebase.

Debian Linux vulnerabilities

12,638 known vulnerabilities affecting debian/linux.

Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226

Vulnerabilities

Page 207 of 632
CVE-2025-68215P4LOWfixed in linux 6.17.10-1 (forky)2025
CVE-2025-68215 [LOW] CVE-2025-68215: linux - In the Linux kernel, the following vulnerability has been resolved: ice: fix PT... In the Linux kernel, the following vulnerability has been resolved: ice: fix PTP cleanup on driver removal in error path Improve the cleanup on releasing PTP resources in error path. The error case might happen either at the driver probe and PTP feature initialization or on PTP restart (errors in reset handling, NVM update etc). In both cases, calls to PF PTP cleanup (
debian
CVE-2026-23325P4LOWfixed in linux 6.19.8-1 (forky)2026
CVE-2026-23325 [LOW] CVE-2026-23325: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mt76:... In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Fix possible oob access in mt7996_mac_write_txwi_80211() Check frame length before accessing the mgmt fields in mt7996_mac_write_txwi_80211 in order to avoid a possible oob access. Scope: local bookworm: resolved bullseye: resolved forky: resolved (fixed in 6.19.8-1) sid: resolved (
debian
CVE-2026-23363P4LOWfixed in linux 6.19.8-1 (forky)2026
CVE-2026-23363 [LOW] CVE-2026-23363: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mt76:... In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: Fix possible oob access in mt7925_mac_write_txwi_80211() Check frame length before accessing the mgmt fields in mt7925_mac_write_txwi_80211 in order to avoid a possible oob access. Scope: local bookworm: resolved bullseye: resolved forky: resolved (fixed in 6.19.8-1) sid: resolved (
debian
CVE-2026-23305P4LOWfixed in linux 6.19.8-1 (forky)2026
CVE-2026-23305 [LOW] CVE-2026-23305: linux - In the Linux kernel, the following vulnerability has been resolved: accel/rocke... In the Linux kernel, the following vulnerability has been resolved: accel/rocket: fix unwinding in error path in rocket_probe When rocket_core_init() fails (as could be the case with EPROBE_DEFER), we need to properly unwind by decrementing the counter we just incremented and if this is the first core we failed to probe, remove the rocket DRM device with rocket_device_
debian
CVE-2022-48820P4HIGHCVSS 7.1fixed in linux 5.16.10-1 (bookworm)2022
CVE-2022-48820 [HIGH] CVE-2022-48820: linux - In the Linux kernel, the following vulnerability has been resolved: phy: stm32:... In the Linux kernel, the following vulnerability has been resolved: phy: stm32: fix a refcount leak in stm32_usbphyc_pll_enable() This error path needs to decrement "usbphyc->n_pll_cons.counter" before returning. Scope: local bookworm: resolved (fixed in 5.16.10-1) bullseye: resolved forky: resolved (fixed in 5.16.10-1) sid: resolved (fixed in 5.16.10-1) trixie: resol
debian
CVE-2019-3874P4MEDIUMCVSS 6.5fixed in linux 5.2.6-1 (bookworm)2019
CVE-2019-3874 [MEDIUM] CVE-2019-3874: linux - The SCTP socket buffer used by a userspace application is not accounted by the c... The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem. An attacker can use this flaw to cause a denial of service attack. Kernel 3.10.x and 4.18.x branches are believed to be vulnerable. Scope: local bookworm: resolved (fixed in 5.2.6-1) bullseye: resolved (fixed in 5.2.6-1) forky: resolved (fixed in 5.2.6-1) sid: resolved (f
debian
CVE-2022-49278P4HIGHCVSS 7.1fixed in linux 5.17.3-1 (bookworm)2022
CVE-2022-49278 [HIGH] CVE-2022-49278: linux - In the Linux kernel, the following vulnerability has been resolved: remoteproc:... In the Linux kernel, the following vulnerability has been resolved: remoteproc: Fix count check in rproc_coredump_write() Check count for 0, to avoid a potential underflow. Make the check the same as the one in rproc_recovery_write(). Scope: local bookworm: resolved (fixed in 5.17.3-1) bullseye: resolved (fixed in 5.10.113-1) forky: resolved (fixed in 5.17.3-1) sid: r
debian
CVE-2023-52571P4HIGHCVSS 7.1fixed in linux 6.1.64-1 (bookworm)2023
CVE-2023-52571 [HIGH] CVE-2023-52571: linux - In the Linux kernel, the following vulnerability has been resolved: power: supp... In the Linux kernel, the following vulnerability has been resolved: power: supply: rk817: Fix node refcount leak Dan Carpenter reports that the Smatch static checker warning has found that there is another refcount leak in the probe function. While of_node_put() was added in one of the return paths, it should in fact be added for ALL return paths that return an error
debian
CVE-2017-18202P4HIGHCVSS 7.0fixed in linux 4.14.7-1 (bookworm)2017
CVE-2017-18202 [HIGH] CVE-2017-18202: linux - The __oom_reap_task_mm function in mm/oom_kill.c in the Linux kernel before 4.14... The __oom_reap_task_mm function in mm/oom_kill.c in the Linux kernel before 4.14.4 mishandles gather operations, which allows attackers to cause a denial of service (TLB entry leak or use-after-free) or possibly have unspecified other impact by triggering a copy_to_user call within a certain time window. Scope: local bookworm: resolved (fixed in 4.14.7-1) bullseye: re
debian
CVE-2013-4511P4MEDIUMCVSS 6.9fixed in linux 3.11.8-1 (bookworm)2013
CVE-2013-4511 [MEDIUM] CVE-2013-4511: linux - Multiple integer overflows in Alchemy LCD frame-buffer drivers in the Linux kern... Multiple integer overflows in Alchemy LCD frame-buffer drivers in the Linux kernel before 3.12 allow local users to create a read-write memory mapping for the entirety of kernel memory, and consequently gain privileges, via crafted mmap operations, related to the (1) au1100fb_fb_mmap function in drivers/video/au1100fb.c and the (2) au1200fb_fb_mmap function in drivers
debian
CVE-2013-4470P4MEDIUMCVSS 6.9fixed in linux 3.11.7-1 (bookworm)2013
CVE-2013-4470 [MEDIUM] CVE-2013-4470: linux - The Linux kernel before 3.12, when UDP Fragmentation Offload (UFO) is enabled, d... The Linux kernel before 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly initialize certain data structures, which allows local users to cause a denial of service (memory corruption and system crash) or possibly gain privileges via a crafted application that uses the UDP_CORK option in a setsockopt system call and sends both short and long pack
debian
CVE-2017-18249P4HIGHCVSS 7.0fixed in linux 4.12.6-1 (bookworm)2017
CVE-2017-18249 [HIGH] CVE-2017-18249: linux - The add_free_nid function in fs/f2fs/node.c in the Linux kernel before 4.12 does... The add_free_nid function in fs/f2fs/node.c in the Linux kernel before 4.12 does not properly track an allocated nid, which allows local users to cause a denial of service (race condition) or possibly have unspecified other impact via concurrent threads. Scope: local bookworm: resolved (fixed in 4.12.6-1) bullseye: resolved (fixed in 4.12.6-1) forky: resolved (fixed i
debian
CVE-2015-7613P4MEDIUMCVSS 6.9fixed in linux 4.2.3-1 (bookworm)2015
CVE-2015-7613 [MEDIUM] CVE-2015-7613: linux - Race condition in the IPC object implementation in the Linux kernel through 4.2.... Race condition in the IPC object implementation in the Linux kernel through 4.2.3 allows local users to gain privileges by triggering an ipc_addid call that leads to uid and gid comparisons against uninitialized data, related to msg.c, shm.c, and util.c. Scope: local bookworm: resolved (fixed in 4.2.3-1) bullseye: resolved (fixed in 4.2.3-1) forky: resolved (fixed in
debian
CVE-2013-4343P4MEDIUMCVSS 6.9fixed in linux 3.11.5-1 (bookworm)2013
CVE-2013-4343 [MEDIUM] CVE-2013-4343: linux - Use-after-free vulnerability in drivers/net/tun.c in the Linux kernel through 3.... Use-after-free vulnerability in drivers/net/tun.c in the Linux kernel through 3.11.1 allows local users to gain privileges by leveraging the CAP_NET_ADMIN capability and providing an invalid tuntap interface name in a TUNSETIFF ioctl call. Scope: local bookworm: resolved (fixed in 3.11.5-1) bullseye: resolved (fixed in 3.11.5-1) forky: resolved (fixed in 3.11.5-1) sid
debian
CVE-2012-3552P4MEDIUMCVSS 5.9fixed in linux 3.0-1 (bookworm)2012
CVE-2012-3552 [MEDIUM] CVE-2012-3552: linux - Race condition in the IP implementation in the Linux kernel before 3.0 might all... Race condition in the IP implementation in the Linux kernel before 3.0 might allow remote attackers to cause a denial of service (slab corruption and system crash) by sending packets to an application that sets socket options during the handling of network traffic. Scope: local bookworm: resolved (fixed in 3.0-1) bullseye: resolved (fixed in 3.0-1) forky: resolved (fi
debian
CVE-2019-19531P4MEDIUMCVSS 6.8fixed in linux 5.2.9-1 (bookworm)2019
CVE-2019-19531 [MEDIUM] CVE-2019-19531: linux - In the Linux kernel before 5.2.9, there is a use-after-free bug that can be caus... In the Linux kernel before 5.2.9, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/yurex.c driver, aka CID-fc05481b2fca. Scope: local bookworm: resolved (fixed in 5.2.9-1) bullseye: resolved (fixed in 5.2.9-1) forky: resolved (fixed in 5.2.9-1) sid: resolved (fixed in 5.2.9-1) trixie: resolved (fixed in 5.2.9-1)
debian
CVE-2016-0723P4MEDIUMCVSS 6.8fixed in linux 4.3.3-6 (bookworm)2016
CVE-2016-0723 [MEDIUM] CVE-2016-0723: linux - Race condition in the tty_ioctl function in drivers/tty/tty_io.c in the Linux ke... Race condition in the tty_ioctl function in drivers/tty/tty_io.c in the Linux kernel through 4.4.1 allows local users to obtain sensitive information from kernel memory or cause a denial of service (use-after-free and system crash) by making a TIOCGETD ioctl call during processing of a TIOCSETD ioctl call. Scope: local bookworm: resolved (fixed in 4.3.3-6) bullseye: r
debian
CVE-2024-0340P4MEDIUMCVSS 4.4fixed in linux 6.1.82-1 (bookworm)2024
CVE-2024-0340 [MEDIUM] CVE-2024-0340: linux - A vulnerability was found in vhost_new_msg in drivers/vhost/vhost.c in the Linux... A vulnerability was found in vhost_new_msg in drivers/vhost/vhost.c in the Linux kernel, which does not properly initialize memory in messages passed between virtual guests and the host operating system in the vhost/vhost.c:vhost_new_msg() function. This issue can allow local privileged users to read some kernel memory contents when reading from the /dev/vhost-net dev
debian
CVE-2019-6133P4MEDIUMCVSS 6.7fixed in linux 4.19.16-1 (bookworm)2019
CVE-2019-6133 [MEDIUM] CVE-2019-6133: linux - In PolicyKit (aka polkit) 0.115, the "start time" protection mechanism can be by... In PolicyKit (aka polkit) 0.115, the "start time" protection mechanism can be bypassed because fork() is not atomic, and therefore authorization decisions are improperly cached. This is related to lack of uid checking in polkitbackend/polkitbackendinteractiveauthority.c. Scope: local bookworm: resolved (fixed in 4.19.16-1) bullseye: resolved (fixed in 4.19.16-1) forky
debian
CVE-2017-17558P4MEDIUMCVSS 6.6fixed in linux 4.14.7-1 (bookworm)2017
CVE-2017-17558 [MEDIUM] CVE-2017-17558: linux - The usb_destroy_configuration function in drivers/usb/core/config.c in the USB c... The usb_destroy_configuration function in drivers/usb/core/config.c in the USB core subsystem in the Linux kernel through 4.14.5 does not consider the maximum number of configurations and interfaces before attempting to release resources, which allows local users to cause a denial of service (out-of-bounds write access) or possibly have unspecified other impact via
debian
Debian Linux vulnerabilities | cvebase