Debian Linux vulnerabilities
12,638 known vulnerabilities affecting debian/linux.
Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226
Vulnerabilities
Page 464 of 632
CVE-2025-38514P4MEDIUMCVSS 5.5fixed in linux 6.1.147-1 (bookworm)2025
CVE-2025-38514 [MEDIUM] CVE-2025-38514: linux - In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix ...
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix oops due to non-existence of prealloc backlog struct If an AF_RXRPC service socket is opened and bound, but calls are preallocated, then rxrpc_alloc_incoming_call() will oops because the rxrpc_backlog struct doesn't get allocated until the first preallocation is made. Fix this by returnin
debian
CVE-2019-18806P4LOWCVSS 5.5fixed in linux 5.3.7-1 (bookworm)2019
CVE-2019-18806 [MEDIUM] CVE-2019-18806: linux - A memory leak in the ql_alloc_large_buffers() function in drivers/net/ethernet/q...
A memory leak in the ql_alloc_large_buffers() function in drivers/net/ethernet/qlogic/qla3xxx.c in the Linux kernel before 5.3.5 allows local users to cause a denial of service (memory consumption) by triggering pci_dma_mapping_error() failures, aka CID-1acb8f2a7a9f.
Scope: local
bookworm: resolved (fixed in 5.3.7-1)
bullseye: resolved (fixed in 5.3.7-1)
forky: reso
debian
CVE-2025-37755P4LOWCVSS 5.5fixed in linux 6.12.25-1 (forky)2025
CVE-2025-37755 [MEDIUM] CVE-2025-37755: linux - In the Linux kernel, the following vulnerability has been resolved: net: libwx:...
In the Linux kernel, the following vulnerability has been resolved: net: libwx: handle page_pool_dev_alloc_pages error page_pool_dev_alloc_pages could return NULL. There was a WARN_ON(!page) but it would still proceed to use the NULL pointer and then crash. This is similar to commit 001ba0902046 ("net: fec: handle page_pool_dev_alloc_pages error"). This is found by
debian
CVE-2024-49955P4MEDIUMCVSS 5.5fixed in linux 6.1.115-1 (bookworm)2024
CVE-2024-49955 [MEDIUM] CVE-2024-49955: linux - In the Linux kernel, the following vulnerability has been resolved: ACPI: batte...
In the Linux kernel, the following vulnerability has been resolved: ACPI: battery: Fix possible crash when unregistering a battery hook When a battery hook returns an error when adding a new battery, then the battery hook is automatically unregistered. However the battery hook provider cannot know that, so it will later call battery_hook_unregister() on the already
debian
CVE-2021-47611P4MEDIUMCVSS 5.5fixed in linux 5.15.15-1 (bookworm)2021
CVE-2021-47611 [MEDIUM] CVE-2021-47611: linux - In the Linux kernel, the following vulnerability has been resolved: mac80211: v...
In the Linux kernel, the following vulnerability has been resolved: mac80211: validate extended element ID is present Before attempting to parse an extended element, verify that the extended element ID is present.
Scope: local
bookworm: resolved (fixed in 5.15.15-1)
bullseye: resolved (fixed in 5.10.92-1)
forky: resolved (fixed in 5.15.15-1)
sid: resolved (fixed in
debian
CVE-2017-18261P4MEDIUMCVSS 5.5fixed in linux 4.13.4-1 (bookworm)2017
CVE-2017-18261 [MEDIUM] CVE-2017-18261: linux - The arch_timer_reg_read_stable macro in arch/arm64/include/asm/arch_timer.h in t...
The arch_timer_reg_read_stable macro in arch/arm64/include/asm/arch_timer.h in the Linux kernel before 4.13 allows local users to cause a denial of service (infinite recursion) by writing to a file under /sys/kernel/debug in certain circumstances, as demonstrated by a scenario involving debugfs, ftrace, PREEMPT_TRACER, and FUNCTION_GRAPH_TRACER.
Scope: local
bookwor
debian
CVE-2020-28941P4MEDIUMCVSS 5.5fixed in linux 5.9.11-1 (bookworm)2020
CVE-2020-28941 [MEDIUM] CVE-2020-28941: linux - An issue was discovered in drivers/accessibility/speakup/spk_ttyio.c in the Linu...
An issue was discovered in drivers/accessibility/speakup/spk_ttyio.c in the Linux kernel through 5.9.9. Local attackers on systems with the speakup driver could cause a local denial of service attack, aka CID-d41227544427. This occurs because of an invalid free when the line discipline is used more than once.
Scope: local
bookworm: resolved (fixed in 5.9.11-1)
bulls
debian
CVE-2020-36310P4MEDIUMCVSS 5.5fixed in linux 5.16.7-1 (bookworm)2020
CVE-2020-36310 [MEDIUM] CVE-2020-36310: linux - An issue was discovered in the Linux kernel before 5.8. arch/x86/kvm/svm/svm.c a...
An issue was discovered in the Linux kernel before 5.8. arch/x86/kvm/svm/svm.c allows a set_memory_region_test infinite loop for certain nested page faults, aka CID-e72436bc3a52.
Scope: local
bookworm: resolved (fixed in 5.16.7-1)
bullseye: resolved (fixed in 5.10.103-1)
forky: resolved (fixed in 5.16.7-1)
sid: resolved (fixed in 5.16.7-1)
trixie: resolved (fixed in
debian
CVE-2017-8106P4MEDIUMCVSS 5.5fixed in linux 3.16.2-1 (bookworm)2017
CVE-2017-8106 [MEDIUM] CVE-2017-8106: linux - The handle_invept function in arch/x86/kvm/vmx.c in the Linux kernel 3.12 throug...
The handle_invept function in arch/x86/kvm/vmx.c in the Linux kernel 3.12 through 3.15 allows privileged KVM guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) via a single-context INVEPT instruction with a NULL EPT pointer.
Scope: local
bookworm: resolved (fixed in 3.16.2-1)
bullseye: resolved (fixed in 3.16.2-1)
forky: resolved
debian
CVE-2022-26878P4LOWCVSS 5.5fixed in linux 5.16.7-1 (bookworm)2022
CVE-2022-26878 [MEDIUM] CVE-2022-26878: linux - drivers/bluetooth/virtio_bt.c in the Linux kernel before 5.16.3 has a memory lea...
drivers/bluetooth/virtio_bt.c in the Linux kernel before 5.16.3 has a memory leak (socket buffers have memory allocated but not freed).
Scope: local
bookworm: resolved (fixed in 5.16.7-1)
bullseye: resolved
forky: resolved (fixed in 5.16.7-1)
sid: resolved (fixed in 5.16.7-1)
trixie: resolved (fixed in 5.16.7-1)
debian
CVE-2024-43872P4MEDIUMCVSS 5.5fixed in linux 6.10.3-1 (forky)2024
CVE-2024-43872 [MEDIUM] CVE-2024-43872: linux - In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: F...
In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix soft lockup under heavy CEQE load CEQEs are handled in interrupt handler currently. This may cause the CPU core staying in interrupt context too long and lead to soft lockup under heavy load. Handle CEQEs in BH workqueue and set an upper limit for the number of CEQE handled by a single
debian
CVE-2021-46283P4MEDIUMCVSS 5.5fixed in linux 5.14.6-1 (bookworm)2021
CVE-2021-46283 [MEDIUM] CVE-2021-46283: linux - nf_tables_newset in net/netfilter/nf_tables_api.c in the Linux kernel before 5.1...
nf_tables_newset in net/netfilter/nf_tables_api.c in the Linux kernel before 5.12.13 allows local users to cause a denial of service (NULL pointer dereference and general protection fault) because of the missing initialization for nft_set_elem_expr_alloc. A local user can set a netfilter table expression in their own namespace.
Scope: local
bookworm: resolved (fixed
debian
CVE-2022-39190P4MEDIUMCVSS 5.5fixed in linux 5.19.6-1 (bookworm)2022
CVE-2022-39190 [MEDIUM] CVE-2022-39190: linux - An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel bef...
An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel before 5.19.6. A denial of service can occur upon binding to an already bound chain.
Scope: local
bookworm: resolved (fixed in 5.19.6-1)
bullseye: resolved (fixed in 5.10.140-1)
forky: resolved (fixed in 5.19.6-1)
sid: resolved (fixed in 5.19.6-1)
trixie: resolved (fixed in 5.19.6-1)
debian
CVE-2024-38590P4MEDIUMCVSS 5.5fixed in linux 6.1.94-1 (bookworm)2024
CVE-2024-38590 [MEDIUM] CVE-2024-38590: linux - In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: M...
In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Modify the print level of CQE error Too much print may lead to a panic in kernel. Change ibdev_err() to ibdev_err_ratelimited(), and change the printing level of cqe dump to debug level.
Scope: local
bookworm: resolved (fixed in 6.1.94-1)
bullseye: resolved (fixed in 5.10.221-1)
forky: res
debian
CVE-2024-26922P4MEDIUMCVSS 5.5fixed in linux 6.1.90-1 (bookworm)2024
CVE-2024-26922 [MEDIUM] CVE-2024-26922: linux - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu:...
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: validate the parameters of bo mapping operations more clearly Verify the parameters of amdgpu_vm_bo_(map/replace_map/clearing_mappings) in one common place.
Scope: local
bookworm: resolved (fixed in 6.1.90-1)
bullseye: resolved (fixed in 5.10.216-1)
forky: resolved (fixed in 6.8.9-1)
sid
debian
CVE-2020-12363P4MEDIUMCVSS 5.5fixed in firmware-nonfree 20210208-1 (bookworm)2020
CVE-2020-12363 [MEDIUM] CVE-2020-12363: firmware-nonfree - Improper input validation in some Intel(R) Graphics Drivers for Windows* before ...
Improper input validation in some Intel(R) Graphics Drivers for Windows* before version 26.20.100.7212 and before Linux kernel version 5.5 may allow a privileged user to potentially enable a denial of service via local access.
Scope: local
bookworm: resolved (fixed in 20210208-1)
bullseye: resolved (fixed in 20210208-1)
forky: resolved (fixed in 20210208-
debian
CVE-2023-52650P4MEDIUMCVSS 5.5fixed in linux 6.1.85-1 (bookworm)2023
CVE-2023-52650 [MEDIUM] CVE-2023-52650: linux - In the Linux kernel, the following vulnerability has been resolved: drm/tegra: ...
In the Linux kernel, the following vulnerability has been resolved: drm/tegra: dsi: Add missing check for of_find_device_by_node Add check for the return value of of_find_device_by_node() and return the error if it fails in order to avoid NULL pointer dereference.
Scope: local
bookworm: resolved (fixed in 6.1.85-1)
bullseye: resolved (fixed in 5.10.216-1)
forky: res
debian
CVE-2022-1852P4MEDIUMCVSS 5.5fixed in linux 5.18.2-1 (bookworm)2022
CVE-2022-1852 [MEDIUM] CVE-2022-1852: linux - A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, whic...
A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the x86_emulate_insn in arch/x86/kvm/emulate.c. This flaw occurs while executing an illegal instruction in guest in the Intel CPU.
Scope: local
bookworm: resolved (fixed in 5.18.2-1)
bullseye: resolved (fixed in 5.10.120-1)
forky: resolved (fixed in 5.1
debian
CVE-2024-42133P4LOWCVSS 5.5fixed in linux 6.9.9-1 (forky)2024
CVE-2024-42133 [MEDIUM] CVE-2024-42133: linux - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ...
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Ignore too large handle values in BIG hci_le_big_sync_established_evt is necessary to filter out cases where the handle value is belonging to ida id range, otherwise ida will be erroneously released in hci_conn_cleanup.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (f
debian
CVE-2024-40973P4MEDIUMCVSS 5.5fixed in linux 6.1.133-1 (bookworm)2024
CVE-2024-40973 [MEDIUM] CVE-2024-40973: linux - In the Linux kernel, the following vulnerability has been resolved: media: mtk-...
In the Linux kernel, the following vulnerability has been resolved: media: mtk-vcodec: potential null pointer deference in SCP The return value of devm_kzalloc() needs to be checked to avoid NULL pointer deference. This is similar to CVE-2022-3113.
Scope: local
bookworm: resolved (fixed in 6.1.133-1)
bullseye: open
forky: resolved (fixed in 6.9.7-1)
sid: resolved (f
debian