Debian Linux vulnerabilities
12,638 known vulnerabilities affecting debian/linux.
Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226
Vulnerabilities
Page 244 of 632
CVE-2026-31411P4UNKNOWNfixed in linux 6.18.14-1 (forky)2026
CVE-2026-31411 CVE-2026-31411: linux - In the Linux kernel, the following vulnerability has been resolved: net: atm: f...
In the Linux kernel, the following vulnerability has been resolved: net: atm: fix crash due to unvalidated vcc pointer in sigd_send() Reproducer available at [1]. The ATM send path (sendmsg -> vcc_sendmsg -> sigd_send) reads the vcc pointer from msg->vcc and uses it directly without any validation. This pointer comes from userspace via sendmsg() and can be arbitrarily forged
debian
CVE-2021-3753P4MEDIUMCVSS 4.7fixed in linux 5.14.6-1 (bookworm)2021
CVE-2021-3753 [MEDIUM] CVE-2021-3753: linux - A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Li...
A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Linux kernel, which may cause an out of bounds read in vt as the write access to vc_mode is not protected by lock-in vt_ioctl (KDSETMDE). The highest threat from this vulnerability is to data confidentiality.
Scope: local
bookworm: resolved (fixed in 5.14.6-1)
bullseye: resolved (fixed in 5.
debian
CVE-2014-9895P4LOWCVSS 2.1fixed in linux 3.11.5-1 (bookworm)2014
CVE-2014-9895 [LOW] CVE-2014-9895: linux - drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android...
drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize certain data structures, which allows local users to obtain sensitive information via a crafted application, aka Android internal bug 28750150 and Qualcomm internal bug CR570757, a different vulnerability than CV
debian
CVE-2014-0205P4MEDIUMCVSS 6.9fixed in linux 2.6.37 (bookworm)2014
CVE-2014-0205 [MEDIUM] CVE-2014-0205: linux - The futex_wait function in kernel/futex.c in the Linux kernel before 2.6.37 does...
The futex_wait function in kernel/futex.c in the Linux kernel before 2.6.37 does not properly maintain a certain reference count during requeue operations, which allows local users to cause a denial of service (use-after-free and system crash) or possibly gain privileges via a crafted application that triggers a zero count.
Scope: local
bookworm: resolved (fixed in 2.
debian
CVE-2017-16534P4MEDIUMCVSS 6.8fixed in linux 4.13.10-1 (bookworm)2017
CVE-2017-16534 [MEDIUM] CVE-2017-16534: linux - The cdc_parse_cdc_header function in drivers/usb/core/message.c in the Linux ker...
The cdc_parse_cdc_header function in drivers/usb/core/message.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.10-1)
bullseye: resolved (fixed in 4.13.10-1)
forky: resolved (fixed
debian
CVE-2017-7273P4MEDIUMCVSS 6.6fixed in linux 4.9.6-1 (bookworm)2017
CVE-2017-7273 [MEDIUM] CVE-2017-7273: linux - The cp_report_fixup function in drivers/hid/hid-cypress.c in the Linux kernel 3....
The cp_report_fixup function in drivers/hid/hid-cypress.c in the Linux kernel 3.2 and 4.x before 4.9.4 allows physically proximate attackers to cause a denial of service (integer underflow) or possibly have unspecified other impact via a crafted HID report.
Scope: local
bookworm: resolved (fixed in 4.9.6-1)
bullseye: resolved (fixed in 4.9.6-1)
forky: resolved (fixed
debian
CVE-2017-16532P4MEDIUMCVSS 6.6fixed in linux 4.13.13-1 (bookworm)2017
CVE-2017-16532 [MEDIUM] CVE-2017-16532: linux - The get_endpoints function in drivers/usb/misc/usbtest.c in the Linux kernel thr...
The get_endpoints function in drivers/usb/misc/usbtest.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.13-1)
bullseye: resolved (fixed in 4.13.13-1)
forky: resolved (fixed
debian
CVE-2017-16529P4MEDIUMCVSS 6.6fixed in linux 4.13.10-1 (bookworm)2017
CVE-2017-16529 [MEDIUM] CVE-2017-16529: linux - The snd_usb_create_streams function in sound/usb/card.c in the Linux kernel befo...
The snd_usb_create_streams function in sound/usb/card.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.10-1)
bullseye: resolved (fixed in 4.13.10-1)
forky: resolved (fixed in 4.13.
debian
CVE-2017-16537P4MEDIUMCVSS 6.6fixed in linux 4.13.13-1 (bookworm)2017
CVE-2017-16537 [MEDIUM] CVE-2017-16537: linux - The imon_probe function in drivers/media/rc/imon.c in the Linux kernel through 4...
The imon_probe function in drivers/media/rc/imon.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.13-1)
bullseye: resolved (fixed in 4.13.13-1)
forky: resolved (fixed in 4.
debian
CVE-2017-16647P4MEDIUMCVSS 6.6fixed in linux 4.13.13-1 (bookworm)2017
CVE-2017-16647 [MEDIUM] CVE-2017-16647: linux - drivers/net/usb/asix_devices.c in the Linux kernel through 4.13.11 allows local ...
drivers/net/usb/asix_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.13-1)
bullseye: resolved (fixed in 4.13.13-1)
forky: resolved (fixed in 4.13.13-1)
sid: resolv
debian
CVE-2017-16533P4MEDIUMCVSS 6.6fixed in linux 4.13.10-1 (bookworm)2017
CVE-2017-16533 [MEDIUM] CVE-2017-16533: linux - The usbhid_parse function in drivers/hid/usbhid/hid-core.c in the Linux kernel b...
The usbhid_parse function in drivers/hid/usbhid/hid-core.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.10-1)
bullseye: resolved (fixed in 4.13.10-1)
forky: resolved (fixed in 4.
debian
CVE-2017-16536P4MEDIUMCVSS 6.6fixed in linux 4.13.13-1 (bookworm)2017
CVE-2017-16536 [MEDIUM] CVE-2017-16536: linux - The cx231xx_usb_probe function in drivers/media/usb/cx231xx/cx231xx-cards.c in t...
The cx231xx_usb_probe function in drivers/media/usb/cx231xx/cx231xx-cards.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted USB device.
Scope: local
bookworm: resolved (fixed in 4.13.13-1)
bullseye: resolved (fixed in 4.13.13-1)
for
debian
CVE-2023-30456P4MEDIUMCVSS 6.5fixed in linux 6.1.25-1 (bookworm)2023
CVE-2023-30456 [MEDIUM] CVE-2023-30456: linux - An issue was discovered in arch/x86/kvm/vmx/nested.c in the Linux kernel before ...
An issue was discovered in arch/x86/kvm/vmx/nested.c in the Linux kernel before 6.2.8. nVMX on x86_64 lacks consistency checks for CR0 and CR4.
Scope: local
bookworm: resolved (fixed in 6.1.25-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.25-1)
sid: resolved (fixed in 6.1.25-1)
trixie: resolved (fixed in 6.1.25-1)
debian
CVE-2022-38096P4MEDIUMCVSS 6.3fixed in linux 6.1.85-1 (bookworm)2022
CVE-2022-38096 [MEDIUM] CVE-2022-38096: linux - A NULL pointer dereference vulnerability was found in vmwgfx driver in drivers/g...
A NULL pointer dereference vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in GPU component of Linux kernel with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).
Scope: local
bookworm: resolved (fixed in 6.1.85-1)
bulls
debian
CVE-2022-38457P4MEDIUMCVSS 6.3fixed in linux 6.1.7-1 (bookworm)2022
CVE-2022-38457 [MEDIUM] CVE-2022-38457: linux - A use-after-free(UAF) vulnerability was found in function 'vmw_cmd_res_check' in...
A use-after-free(UAF) vulnerability was found in function 'vmw_cmd_res_check' in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in Linux kernel's vmwgfx driver with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).
Scope: local
bookworm: resolved (fixed in 6.1.7-
debian
CVE-2019-3016P4MEDIUMCVSS 6.2fixed in linux 5.4.19-1 (bookworm)2019
CVE-2019-3016 [MEDIUM] CVE-2019-3016: linux - In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may ...
In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may be able to read memory locations from another process in the same guest. This problem is limit to the host running linux kernel 4.10 with a guest running linux kernel 4.16 or later. The problem mainly affects AMD processors but Intel CPUs cannot be ruled out.
Scope: local
bookworm: resolve
debian
CVE-2019-12984P4MEDIUMCVSS 5.5fixed in linux 5.2.6-1 (bookworm)2019
CVE-2019-12984 [MEDIUM] CVE-2019-12984: linux - A NULL pointer dereference vulnerability in the function nfc_genl_deactivate_tar...
A NULL pointer dereference vulnerability in the function nfc_genl_deactivate_target() in net/nfc/netlink.c in the Linux kernel before 5.1.13 can be triggered by a malicious user-mode program that omits certain NFC attributes, leading to denial of service.
Scope: local
bookworm: resolved (fixed in 5.2.6-1)
bullseye: resolved (fixed in 5.2.6-1)
forky: resolved (fixed
debian
CVE-2013-4312P4MEDIUMCVSS 6.2fixed in linux 4.3.3-6 (bookworm)2013
CVE-2013-4312 [MEDIUM] CVE-2013-4312: linux - The Linux kernel before 4.4.1 allows local users to bypass file-descriptor limit...
The Linux kernel before 4.4.1 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by sending each descriptor over a UNIX socket before closing it, related to net/unix/af_unix.c and net/unix/garbage.c.
Scope: local
bookworm: resolved (fixed in 4.3.3-6)
bullseye: resolved (fixed in 4.3.3-6)
forky: resolved (fixed in 4.3
debian
CVE-2013-4591P4MEDIUMCVSS 6.2fixed in linux 3.8-1 (bookworm)2013
CVE-2013-4591 [MEDIUM] CVE-2013-4591: linux - Buffer overflow in the __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in ...
Buffer overflow in the __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (memory corruption and system crash) or possibly have unspecified other impact via a getxattr system call for the system.nfs4_acl extended attribute of a pathname on an NFSv4 filesystem.
Scope: local
bookworm: re
debian
CVE-2016-2847P4MEDIUMCVSS 6.2fixed in linux 4.3.5-1 (bookworm)2016
CVE-2016-2847 [MEDIUM] CVE-2016-2847: linux - fs/pipe.c in the Linux kernel before 4.5 does not limit the amount of unread dat...
fs/pipe.c in the Linux kernel before 4.5 does not limit the amount of unread data in pipes, which allows local users to cause a denial of service (memory consumption) by creating many pipes with non-default sizes.
Scope: local
bookworm: resolved (fixed in 4.3.5-1)
bullseye: resolved (fixed in 4.3.5-1)
forky: resolved (fixed in 4.3.5-1)
sid: resolved (fixed in 4.3.5-1)
debian