Debian Linux vulnerabilities
12,638 known vulnerabilities affecting debian/linux.
Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226
Vulnerabilities
Page 225 of 632
CVE-2017-16646P4MEDIUMCVSS 6.6fixed in linux 4.13.13-1 (bookworm)2017
CVE-2017-16646 [MEDIUM] CVE-2017-16646: linux - drivers/media/usb/dvb-usb/dib0700_devices.c in the Linux kernel through 4.13.11 ...
drivers/media/usb/dvb-usb/dib0700_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (BUG and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.13-1)
bullseye: resolved (fixed in 4.13.13-1)
forky: resolved (fixed in 4.13.13-1)
sid: resolved (fixe
debian
CVE-2013-0311P4MEDIUMCVSS 6.5fixed in linux 3.2.41-1 (bookworm)2013
CVE-2013-0311 [MEDIUM] CVE-2013-0311: linux - The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before ...
The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host OS privileges by leveraging KVM guest OS privileges.
Scope: local
bookworm: resolved (fixed in 3.2.41-1)
bullseye: resolved (fixed in 3.2.41-1)
forky: resolved (fixed in 3.2.41-1)
sid: resolve
debian
CVE-2017-16530P4MEDIUMCVSS 6.6fixed in linux 4.13.10-1 (bookworm)2017
CVE-2017-16530 [MEDIUM] CVE-2017-16530: linux - The uas driver in the Linux kernel before 4.13.6 allows local users to cause a d...
The uas driver in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device, related to drivers/usb/storage/uas-detect.h and drivers/usb/storage/uas.c.
Scope: local
bookworm: resolved (fixed in 4.13.10-1)
bullseye: resolved (fixed in 4.13.10-
debian
CVE-2017-16535P4MEDIUMCVSS 6.6fixed in linux 4.13.10-1 (bookworm)2017
CVE-2017-16535 [MEDIUM] CVE-2017-16535: linux - The usb_get_bos_descriptor function in drivers/usb/core/config.c in the Linux ke...
The usb_get_bos_descriptor function in drivers/usb/core/config.c in the Linux kernel before 4.13.10 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.10-1)
bullseye: resolved (fixed in 4.13.10-1)
forky: resolved (fixe
debian
CVE-2017-16527P4MEDIUMCVSS 6.6fixed in linux 4.13.10-1 (bookworm)2017
CVE-2017-16527 [MEDIUM] CVE-2017-16527: linux - sound/usb/mixer.c in the Linux kernel before 4.13.8 allows local users to cause ...
sound/usb/mixer.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (snd_usb_mixer_interrupt use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.10-1)
bullseye: resolved (fixed in 4.13.10-1)
forky: resolved (fixed in 4.13.10-1)
sid: resolve
debian
CVE-2017-16528P4MEDIUMCVSS 6.6fixed in linux 4.13.4-1 (bookworm)2017
CVE-2017-16528 [MEDIUM] CVE-2017-16528: linux - sound/core/seq_device.c in the Linux kernel before 4.13.4 allows local users to ...
sound/core/seq_device.c in the Linux kernel before 4.13.4 allows local users to cause a denial of service (snd_rawmidi_dev_seq_free use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.4-1)
bullseye: resolved (fixed in 4.13.4-1)
forky: resolved (fixed in 4.13.4-1)
sid: res
debian
CVE-2013-7027P4LOWCVSS 6.1fixed in linux 3.11.7-1 (bookworm)2013
CVE-2013-7027 [MEDIUM] CVE-2013-7027: linux - The ieee80211_radiotap_iterator_init function in net/wireless/radiotap.c in the ...
The ieee80211_radiotap_iterator_init function in net/wireless/radiotap.c in the Linux kernel before 3.11.7 does not check whether a frame contains any data outside of the header, which might allow attackers to cause a denial of service (buffer over-read) via a crafted header.
Scope: local
bookworm: resolved (fixed in 3.11.7-1)
bullseye: resolved (fixed in 3.11.7-1)
fo
debian
CVE-2016-3044P4MEDIUMCVSS 6.5fixed in linux 4.4.6-1 (bookworm)2016
CVE-2016-3044 [MEDIUM] CVE-2016-3044: linux - The Linux kernel component in IBM PowerKVM 2.1 before 2.1.1.3-65.10 and 3.1 befo...
The Linux kernel component in IBM PowerKVM 2.1 before 2.1.1.3-65.10 and 3.1 before 3.1.0.2 allows guest OS users to cause a denial of service (host OS infinite loop and hang) via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 4.4.6-1)
bullseye: resolved (fixed in 4.4.6-1)
forky: resolved (fixed in 4.4.6-1)
sid: resolved (fixed in 4.4.6-1)
trixie: resol
debian
CVE-2017-8831P4MEDIUMCVSS 6.4fixed in linux 4.12.6-1 (bookworm)2017
CVE-2017-8831 [MEDIUM] CVE-2017-8831: linux - The saa7164_bus_get function in drivers/media/pci/saa7164/saa7164-bus.c in the L...
The saa7164_bus_get function in drivers/media/pci/saa7164/saa7164-bus.c in the Linux kernel through 4.11.5 allows local users to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact by changing a certain sequence-number value, aka a "double fetch" vulnerability.
Scope: local
bookworm: resolved (fixed in 4.12.6-1)
bullseye: r
debian
CVE-2024-22099P4MEDIUMCVSS 6.3fixed in linux 6.1.82-1 (bookworm)2024
CVE-2024-22099 [MEDIUM] CVE-2024-22099: linux - NULL Pointer Dereference vulnerability in Linux Linux kernel kernel on Linux, x8...
NULL Pointer Dereference vulnerability in Linux Linux kernel kernel on Linux, x86, ARM (net, bluetooth modules) allows Overflow Buffers. This vulnerability is associated with program files /net/bluetooth/rfcomm/core.C. This issue affects Linux kernel: v2.6.12-rc2.
Scope: local
bookworm: resolved (fixed in 6.1.82-1)
bullseye: resolved (fixed in 5.10.216-1)
forky: res
debian
CVE-2022-36280P4MEDIUMCVSS 6.3fixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-36280 [MEDIUM] CVE-2022-36280: linux - An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx driver in ...
An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_kms.c in GPU component in the Linux kernel with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).
Scope: local
bookworm: resolved (fixed in 6.1.4-
debian
CVE-2018-14612P4MEDIUMCVSS 5.5fixed in linux 4.18.8-1 (bookworm)2018
CVE-2018-14612 [MEDIUM] CVE-2018-14612: linux - An issue was discovered in the Linux kernel through 4.17.10. There is an invalid...
An issue was discovered in the Linux kernel through 4.17.10. There is an invalid pointer dereference in btrfs_root_node() when mounting a crafted btrfs image, because of a lack of chunk block group mapping validation in btrfs_read_block_groups in fs/btrfs/extent-tree.c, and a lack of empty-tree checks in check_leaf in fs/btrfs/tree-checker.c.
Scope: local
bookworm:
debian
CVE-2018-14617P4MEDIUMCVSS 5.5fixed in linux 4.18.8-1 (bookworm)2018
CVE-2018-14617 [MEDIUM] CVE-2018-14617: linux - An issue was discovered in the Linux kernel through 4.17.10. There is a NULL poi...
An issue was discovered in the Linux kernel through 4.17.10. There is a NULL pointer dereference and panic in hfsplus_lookup() in fs/hfsplus/dir.c when opening a file (that is purportedly a hard link) in an hfs+ filesystem that has malformed catalog data, and is mounted read-only without a metadata directory.
Scope: local
bookworm: resolved (fixed in 4.18.8-1)
bulls
debian
CVE-2022-40133P4MEDIUMCVSS 6.3fixed in linux 6.1.7-1 (bookworm)2022
CVE-2022-40133 [MEDIUM] CVE-2022-40133: linux - A use-after-free(UAF) vulnerability was found in function 'vmw_execbuf_tie_conte...
A use-after-free(UAF) vulnerability was found in function 'vmw_execbuf_tie_context' in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in Linux kernel's vmwgfx driver with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).
Scope: local
bookworm: resolved (fixed in
debian
CVE-2019-14284P4MEDIUMCVSS 6.2fixed in linux 5.2.6-1 (bookworm)2019
CVE-2019-14284 [MEDIUM] CVE-2019-14284: linux - In the Linux kernel before 5.2.3, drivers/block/floppy.c allows a denial of serv...
In the Linux kernel before 5.2.3, drivers/block/floppy.c allows a denial of service by setup_format_params division-by-zero. Two consecutive ioctls can trigger the bug: the first one should set the drive geometry with .sect and .rate values that make F_SECT_PER_TRACK be zero. Next, the floppy format operation should be called. It can be triggered by an unprivileged
debian
CVE-2013-6368P4MEDIUMCVSS 6.2fixed in linux 3.12.5-1 (bookworm)2013
CVE-2013-6368 [MEDIUM] CVE-2013-6368: linux - The KVM subsystem in the Linux kernel through 3.12.5 allows local users to gain ...
The KVM subsystem in the Linux kernel through 3.12.5 allows local users to gain privileges or cause a denial of service (system crash) via a VAPIC synchronization operation involving a page-end address.
Scope: local
bookworm: resolved (fixed in 3.12.5-1)
bullseye: resolved (fixed in 3.12.5-1)
forky: resolved (fixed in 3.12.5-1)
sid: resolved (fixed in 3.12.5-1)
trixie
debian
CVE-2018-14615P4MEDIUMCVSS 5.5fixed in linux 4.19.9-1 (bookworm)2018
CVE-2018-14615 [MEDIUM] CVE-2018-14615: linux - An issue was discovered in the Linux kernel through 4.17.10. There is a buffer o...
An issue was discovered in the Linux kernel through 4.17.10. There is a buffer overflow in truncate_inline_inode() in fs/f2fs/inline.c when umounting an f2fs image, because a length value may be negative.
Scope: local
bookworm: resolved (fixed in 4.19.9-1)
bullseye: resolved (fixed in 4.19.9-1)
forky: resolved (fixed in 4.19.9-1)
sid: resolved (fixed in 4.19.9-1)
tr
debian
CVE-2018-13094P4MEDIUMCVSS 5.5fixed in linux 4.17.14-1 (bookworm)2018
CVE-2018-13094 [MEDIUM] CVE-2018-13094: linux - An issue was discovered in fs/xfs/libxfs/xfs_attr_leaf.c in the Linux kernel thr...
An issue was discovered in fs/xfs/libxfs/xfs_attr_leaf.c in the Linux kernel through 4.17.3. An OOPS may occur for a corrupted xfs image after xfs_da_shrink_inode() is called with a NULL bp.
Scope: local
bookworm: resolved (fixed in 4.17.14-1)
bullseye: resolved (fixed in 4.17.14-1)
forky: resolved (fixed in 4.17.14-1)
sid: resolved (fixed in 4.17.14-1)
trixie: reso
debian
CVE-2016-7042P4MEDIUMCVSS 6.2fixed in linux 4.7.8-1 (bookworm)2016
CVE-2016-7042 [MEDIUM] CVE-2016-7042: linux - The proc_keys_show function in security/keys/proc.c in the Linux kernel through ...
The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection (gcc) stack protector is enabled, uses an incorrect buffer size for certain timeout data, which allows local users to cause a denial of service (stack memory corruption and panic) by reading the /proc/keys file.
Scope: local
bookworm: resolved (fixed
debian
CVE-2013-0228P4MEDIUMCVSS 6.2fixed in linux 3.2.39-1 (bookworm)2013
CVE-2013-0228 [MEDIUM] CVE-2013-0228: linux - The xen_iret function in arch/x86/xen/xen-asm_32.S in the Linux kernel before 3....
The xen_iret function in arch/x86/xen/xen-asm_32.S in the Linux kernel before 3.7.9 on 32-bit Xen paravirt_ops platforms does not properly handle an invalid value in the DS segment register, which allows guest OS users to gain guest OS privileges via a crafted application.
Scope: local
bookworm: resolved (fixed in 3.2.39-1)
bullseye: resolved (fixed in 3.2.39-1)
forky
debian