Debian Linux vulnerabilities
12,638 known vulnerabilities affecting debian/linux.
Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226
Vulnerabilities
Page 592 of 632
CVE-2020-27820P4LOWCVSS 4.7fixed in linux 5.15.5-1 (bookworm)2020
CVE-2020-27820 [MEDIUM] CVE-2020-27820: linux - A vulnerability was found in Linux kernel, where a use-after-frees in nouveau's ...
A vulnerability was found in Linux kernel, where a use-after-frees in nouveau's postclose() handler could happen if removing device (that is not common to remove video card physically without power-off, but same happens if "unbind" the driver).
Scope: local
bookworm: resolved (fixed in 5.15.5-1)
bullseye: resolved (fixed in 5.10.84-1)
forky: resolved (fixed in 5.15.
debian
CVE-2022-49149P4MEDIUMCVSS 4.7fixed in linux 5.17.3-1 (bookworm)2022
CVE-2022-49149 [MEDIUM] CVE-2022-49149: linux - In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix ...
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix call timer start racing with call destruction The rxrpc_call struct has a timer used to handle various timed events relating to a call. This timer can get started from the packet input routines that are run in softirq mode with just the RCU read lock held. Unfortunately, because only the
debian
CVE-2023-53808P4UNKNOWNfixed in linux 6.1.55-1 (bookworm)2023
CVE-2023-53808 CVE-2023-53808: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mwifi...
In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: fix memory leak in mwifiex_histogram_read() Always free the zeroed page on return from 'mwifiex_histogram_read()'.
Scope: local
bookworm: resolved (fixed in 6.1.55-1)
bullseye: resolved (fixed in 5.10.197-1)
forky: resolved (fixed in 6.5.3-1)
sid: resolved (fixed in 6.5.3-1)
trixie: resolved (
debian
CVE-2025-40055P4UNKNOWNfixed in linux 6.1.158-1 (bookworm)2025
CVE-2025-40055 CVE-2025-40055: linux - In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix ...
In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix double free in user_cluster_connect() user_cluster_disconnect() frees "conn->cc_private" which is "lc" but then the error handling frees "lc" a second time. Set "lc" to NULL on this path to avoid a double free.
Scope: local
bookworm: resolved (fixed in 6.1.158-1)
bullseye: resolved (fixed in 5.10.
debian
CVE-2024-24859P4MEDIUMCVSS 4.6fixed in linux 6.1.85-1 (bookworm)2024
CVE-2024-24859 [MEDIUM] CVE-2024-24859: linux - A race condition was found in the Linux kernel's net/bluetooth in sniff_{min,max...
A race condition was found in the Linux kernel's net/bluetooth in sniff_{min,max}_interval_set() function. This can result in a bluetooth sniffing exception issue, possibly leading denial of service.
Scope: local
bookworm: resolved (fixed in 6.1.85-1)
bullseye: resolved (fixed in 5.10.216-1)
forky: resolved (fixed in 6.8.9-1)
sid: resolved (fixed in 6.8.9-1)
trixie:
debian
CVE-2022-50741P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50741 CVE-2022-50741: linux - In the Linux kernel, the following vulnerability has been resolved: media: imx-...
In the Linux kernel, the following vulnerability has been resolved: media: imx-jpeg: Disable useless interrupt to avoid kernel panic There is a hardware bug that the interrupt STMBUF_HALF may be triggered after or when disable interrupt. It may led to unexpected kernel panic. And interrupt STMBUF_HALF and STMBUF_RTND have no other effect. So disable them and the unused inter
debian
CVE-2022-50857P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50857 CVE-2022-50857: linux - In the Linux kernel, the following vulnerability has been resolved: rapidio: ri...
In the Linux kernel, the following vulnerability has been resolved: rapidio: rio: fix possible name leak in rio_register_mport() If device_register() returns error, the name allocated by dev_set_name() need be freed. It should use put_device() to give up the reference in the error path, so that the name can be freed in kobject_cleanup(), and list_del() is called to delete th
debian
CVE-2022-50729P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50729 CVE-2022-50729: linux - In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix ...
In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix resource leak in ksmbd_session_rpc_open() When ksmbd_rpc_open() fails then it must call ksmbd_rpc_id_free() to undo the result of ksmbd_ipc_id_alloc().
Scope: local
bookworm: resolved (fixed in 6.1.4-1)
bullseye: resolved
forky: resolved (fixed in 6.1.4-1)
sid: resolved (fixed in 6.1.4-1)
trixie:
debian
CVE-2019-15221P4MEDIUMCVSS 4.6fixed in linux 5.2.6-1 (bookworm)2019
CVE-2019-15221 [MEDIUM] CVE-2019-15221: linux - An issue was discovered in the Linux kernel before 5.1.17. There is a NULL point...
An issue was discovered in the Linux kernel before 5.1.17. There is a NULL pointer dereference caused by a malicious USB device in the sound/usb/line6/pcm.c driver.
Scope: local
bookworm: resolved (fixed in 5.2.6-1)
bullseye: resolved (fixed in 5.2.6-1)
forky: resolved (fixed in 5.2.6-1)
sid: resolved (fixed in 5.2.6-1)
trixie: resolved (fixed in 5.2.6-1)
debian
CVE-2022-50713P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50713 CVE-2022-50713: linux - In the Linux kernel, the following vulnerability has been resolved: clk: viscon...
In the Linux kernel, the following vulnerability has been resolved: clk: visconti: Fix memory leak in visconti_register_pll() @pll->rate_table has allocated memory by kmemdup(), if clk_hw_register() fails, it should be freed, otherwise it will cause memory leak issue, this patch fixes it.
Scope: local
bookworm: resolved (fixed in 6.1.4-1)
bullseye: resolved
forky: resolved (
debian
CVE-2025-40109P4UNKNOWNfixed in linux 6.1.158-1 (bookworm)2025
CVE-2025-40109 CVE-2025-40109: linux - In the Linux kernel, the following vulnerability has been resolved: crypto: rng...
In the Linux kernel, the following vulnerability has been resolved: crypto: rng - Ensure set_ent is always present Ensure that set_ent is always set since only drbg provides it.
Scope: local
bookworm: resolved (fixed in 6.1.158-1)
bullseye: resolved (fixed in 5.10.247-1)
forky: resolved (fixed in 6.17.6-1)
sid: resolved (fixed in 6.17.6-1)
trixie: resolved (fixed in 6.12.57-
debian
CVE-2022-50837P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50837 CVE-2022-50837: linux - In the Linux kernel, the following vulnerability has been resolved: net: dsa: t...
In the Linux kernel, the following vulnerability has been resolved: net: dsa: tag_8021q: avoid leaking ctx on dsa_tag_8021q_register() error path If dsa_tag_8021q_setup() fails, for example due to the inability of the device to install a VLAN, the tag_8021q context of the switch will leak. Make sure it is freed on the error path.
Scope: local
bookworm: resolved (fixed in 6.1
debian
CVE-2025-40029P4UNKNOWNfixed in linux 6.1.158-1 (bookworm)2025
CVE-2025-40029 CVE-2025-40029: linux - In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc...
In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: Check return value of platform_get_resource() platform_get_resource() returns NULL in case of failure, so check its return value and propagate the error in order to prevent NULL pointer dereference.
Scope: local
bookworm: resolved (fixed in 6.1.158-1)
bullseye: resolved (fixed in 5.10.247-1)
for
debian
CVE-2022-50887P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50887 CVE-2022-50887: linux - In the Linux kernel, the following vulnerability has been resolved: regulator: ...
In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix unbalanced of node refcount in regulator_dev_lookup() I got the the following report: OF: ERROR: memory leak, expected refcount 1 instead of 2, of_node_get()/of_node_put() unbalanced - destroy cset entry: attach overlay node /i2c/pmic@62/regulators/exten In of_get_regulator(), the node i
debian
CVE-2022-50572P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50572 CVE-2022-50572: linux - In the Linux kernel, the following vulnerability has been resolved: ASoC: audio...
In the Linux kernel, the following vulnerability has been resolved: ASoC: audio-graph-card: fix refcount leak of cpu_ep in __graph_for_each_link() The of_get_next_child() returns a node with refcount incremented, and decrements the refcount of prev. So in the error path of the while loop, of_node_put() needs be called for cpu_ep.
Scope: local
bookworm: resolved (fixed in 6.1
debian
CVE-2023-54266P4UNKNOWNfixed in linux 6.1.55-1 (bookworm)2023
CVE-2023-54266 CVE-2023-54266: linux - In the Linux kernel, the following vulnerability has been resolved: media: dvb-...
In the Linux kernel, the following vulnerability has been resolved: media: dvb-usb: m920x: Fix a potential memory leak in m920x_i2c_xfer() 'read' is freed when it is known to be NULL, but not when a read error occurs. Revert the logic to avoid a small leak, should a m920x_read() call fail.
Scope: local
bookworm: resolved (fixed in 6.1.55-1)
bullseye: resolved (fixed in 5.10.
debian
CVE-2023-53696P4UNKNOWNfixed in linux 6.1.25-1 (bookworm)2023
CVE-2023-53696 CVE-2023-53696: linux - In the Linux kernel, the following vulnerability has been resolved: scsi: qla2x...
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix memory leak in qla2x00_probe_one() There is a memory leak reported by kmemleak: unreferenced object 0xffffc900003f0000 (size 12288): comm "modprobe", pid 19117, jiffies 4299751452 (age 42490.264s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0
debian
CVE-2022-50723P4UNKNOWNfixed in linux 6.0.6-1 (bookworm)2022
CVE-2022-50723 CVE-2022-50723: linux - In the Linux kernel, the following vulnerability has been resolved: bnxt_en: fi...
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: fix memory leak in bnxt_nvm_test() Free the kzalloc'ed buffer before returning in the success path.
Scope: local
bookworm: resolved (fixed in 6.0.6-1)
bullseye: resolved
forky: resolved (fixed in 6.0.6-1)
sid: resolved (fixed in 6.0.6-1)
trixie: resolved (fixed in 6.0.6-1)
debian
CVE-2023-53745P4UNKNOWNfixed in linux 6.1.20-1 (bookworm)2023
CVE-2023-53745 CVE-2023-53745: linux - In the Linux kernel, the following vulnerability has been resolved: um: vector:...
In the Linux kernel, the following vulnerability has been resolved: um: vector: Fix memory leak in vector_config If the return value of the uml_parse_vector_ifspec function is NULL, we should call kfree(params) to prevent memory leak.
Scope: local
bookworm: resolved (fixed in 6.1.20-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.20-1)
sid: resolved
debian
CVE-2023-53744P4UNKNOWNfixed in linux 6.1.37-1 (bookworm)2023
CVE-2023-53744 CVE-2023-53744: linux - In the Linux kernel, the following vulnerability has been resolved: soc: ti: pm...
In the Linux kernel, the following vulnerability has been resolved: soc: ti: pm33xx: Fix refcount leak in am33xx_pm_probe wkup_m3_ipc_get() takes refcount, which should be freed by wkup_m3_ipc_put(). Add missing refcount release in the error paths.
Scope: local
bookworm: resolved (fixed in 6.1.37-1)
bullseye: resolved (fixed in 5.10.191-1)
forky: resolved (fixed in 6.3.7-1)
debian