cbcvebase.

Debian Linux vulnerabilities

12,638 known vulnerabilities affecting debian/linux.

Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226

Vulnerabilities

Page 602 of 632
CVE-2026-23210P4LOWCVSS 4.7fixed in linux 6.18.10-1 (forky)2026
CVE-2026-23210 [MEDIUM] CVE-2026-23210: linux - In the Linux kernel, the following vulnerability has been resolved: ice: Fix PT... In the Linux kernel, the following vulnerability has been resolved: ice: Fix PTP NULL pointer dereference during VSI rebuild Fix race condition where PTP periodic work runs while VSI is being rebuilt, accessing NULL vsi->rx_rings. The sequence was: 1. ice_ptp_prepare_for_reset() cancels PTP work 2. ice_ptp_rebuild() immediately queues PTP work 3. VSI rebuild happens
debian
CVE-2025-39927P4MEDIUMCVSS 4.7fixed in linux 6.16.8-1 (forky)2025
CVE-2025-39927 [MEDIUM] CVE-2025-39927: linux - In the Linux kernel, the following vulnerability has been resolved: ceph: fix r... In the Linux kernel, the following vulnerability has been resolved: ceph: fix race condition validating r_parent before applying state Add validation to ensure the cached parent directory inode matches the directory info in MDS replies. This prevents client-side race conditions where concurrent operations (e.g. rename) cause r_parent to become stale between request
debian
CVE-2023-53452P4MEDIUMCVSS 4.7fixed in linux 6.1.37-1 (bookworm)2023
CVE-2023-53452 [MEDIUM] CVE-2023-53452: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89... In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: fix potential race condition between napi_init and napi_enable A race condition can happen if netdev is registered, but NAPI isn't initialized yet, and meanwhile user space starts the netdev that will enable NAPI. Then, it hits BUG_ON(): kernel BUG at net/core/dev.c:6423! invalid opcode
debian
CVE-2023-53310P4MEDIUMCVSS 4.7fixed in linux 6.1.37-1 (bookworm)2023
CVE-2023-53310 [MEDIUM] CVE-2023-53310: linux - In the Linux kernel, the following vulnerability has been resolved: power: supp... In the Linux kernel, the following vulnerability has been resolved: power: supply: axp288_fuel_gauge: Fix external_power_changed race fuel_gauge_external_power_changed() dereferences info->bat, which gets sets in axp288_fuel_gauge_probe() like this: info->bat = devm_power_supply_register(dev, &fuel_gauge_desc, &psy_cfg); As soon as devm_power_supply_register() has c
debian
CVE-2022-50379P4MEDIUMCVSS 4.7fixed in linux 6.0.3-1 (bookworm)2022
CVE-2022-50379 [MEDIUM] CVE-2022-50379: linux - In the Linux kernel, the following vulnerability has been resolved: btrfs: fix ... In the Linux kernel, the following vulnerability has been resolved: btrfs: fix race between quota enable and quota rescan ioctl When enabling quotas, at btrfs_quota_enable(), after committing the transaction, we change fs_info->quota_root to point to the quota root we created and set BTRFS_FS_QUOTA_ENABLED at fs_info->flags. Then we try to start the qgroup rescan wo
debian
CVE-2026-23071P4MEDIUMCVSS 4.7fixed in linux 6.1.162-1 (bookworm)2026
CVE-2026-23071 [MEDIUM] CVE-2026-23071: linux - In the Linux kernel, the following vulnerability has been resolved: regmap: Fix... In the Linux kernel, the following vulnerability has been resolved: regmap: Fix race condition in hwspinlock irqsave routine Previously, the address of the shared member '&map->spinlock_flags' was passed directly to 'hwspin_lock_timeout_irqsave'. This creates a race condition where multiple contexts contending for the lock could overwrite the shared flags variable,
debian
CVE-2025-39884P4LOWCVSS 4.7fixed in linux 6.16.8-1 (forky)2025
CVE-2025-39884 [MEDIUM] CVE-2025-39884: linux - In the Linux kernel, the following vulnerability has been resolved: btrfs: fix ... In the Linux kernel, the following vulnerability has been resolved: btrfs: fix subvolume deletion lockup caused by inodes xarray race There is a race condition between inode eviction and inode caching that can cause a live struct btrfs_inode to be missing from the root->inodes xarray. Specifically, there is a window during evict() between the inode being unhashed an
debian
CVE-2023-53614P4MEDIUMCVSS 4.7fixed in linux 6.1.25-1 (bookworm)2023
CVE-2023-53614 [MEDIUM] CVE-2023-53614: linux - In the Linux kernel, the following vulnerability has been resolved: mm/ksm: fix... In the Linux kernel, the following vulnerability has been resolved: mm/ksm: fix race with VMA iteration and mm_struct teardown exit_mmap() will tear down the VMAs and maple tree with the mmap_lock held in write mode. Ensure that the maple tree is still valid by checking ksm_test_exit() after taking the mmap_lock in read mode, but before the for_each_vma() iterator d
debian
CVE-2026-23153P4LOWCVSS 4.7fixed in linux 6.18.9-1 (forky)2026
CVE-2026-23153 [MEDIUM] CVE-2026-23153: linux - In the Linux kernel, the following vulnerability has been resolved: firewire: c... In the Linux kernel, the following vulnerability has been resolved: firewire: core: fix race condition against transaction list The list of transaction is enumerated without acquiring card lock when processing AR response event. This causes a race condition bug when processing AT request completion event concurrently. This commit fixes the bug by put timer start for
debian
CVE-2013-5634P4MEDIUMCVSS 4.3fixed in linux 3.11.5-1 (bookworm)2013
CVE-2013-5634 [MEDIUM] CVE-2013-5634: linux - arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM... arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM is used, allows host OS users to cause a denial of service (NULL pointer dereference, OOPS, and host OS crash) or possibly have unspecified other impact by omitting vCPU initialization before a KVM_GET_REG_LIST ioctl call. Scope: local bookworm: resolved (fixed in 3.11.5-1) bullseye: reso
debian
CVE-2015-8552P4MEDIUMCVSS 4.4fixed in linux 4.3.3-3 (bookworm)2015
CVE-2015-8552 [MEDIUM] CVE-2015-8552: linux - The PCI backend driver in Xen, when running on an x86 system and using Linux 3.1... The PCI backend driver in Xen, when running on an x86 system and using Linux 3.1.x through 4.3.x as the driver domain, allows local guest administrators to generate a continuous stream of WARN messages and cause a denial of service (disk consumption) by leveraging a system with access to a passed-through MSI or MSI-X capable physical PCI device and XEN_PCI_OP_enable_m
debian
CVE-2020-27835P4MEDIUMCVSS 4.4fixed in linux 5.9.15-1 (bookworm)2020
CVE-2020-27835 [MEDIUM] CVE-2020-27835: linux - A use after free in the Linux kernel infiniband hfi1 driver in versions prior to... A use after free in the Linux kernel infiniband hfi1 driver in versions prior to 5.10-rc6 was found in the way user calls Ioctl after open dev file and fork. A local user could use this flaw to crash the system. Scope: local bookworm: resolved (fixed in 5.9.15-1) bullseye: resolved (fixed in 5.9.15-1) forky: resolved (fixed in 5.9.15-1) sid: resolved (fixed in 5.9.1
debian
CVE-2024-38559P4MEDIUMCVSS 4.4fixed in linux 6.1.94-1 (bookworm)2024
CVE-2024-38559 [MEDIUM] CVE-2024-38559: linux - In the Linux kernel, the following vulnerability has been resolved: scsi: qedf:... In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Ensure the copied buf is NUL terminated Currently, we allocate a count-sized kernel buffer and copy count from userspace to that buffer. Later, we use kstrtouint on this buffer but we don't ensure that the string is terminated inside the buffer, this can lead to OOB read when using kstrt
debian
CVE-2023-33250P4LOWCVSS 4.4fixed in linux 6.4.4-1 (forky)2023
CVE-2023-33250 [MEDIUM] CVE-2023-33250: linux - The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/io... The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c. Scope: local bookworm: resolved bullseye: resolved forky: resolved (fixed in 6.4.4-1) sid: resolved (fixed in 6.4.4-1) trixie: resolved (fixed in 6.4.4-1)
debian
CVE-2021-3635P4MEDIUMCVSS 4.4fixed in linux 5.4.19-1 (bookworm)2021
CVE-2021-3635 [MEDIUM] CVE-2021-3635: linux - A flaw was found in the Linux kernel netfilter implementation in versions prior ... A flaw was found in the Linux kernel netfilter implementation in versions prior to 5.5-rc7. A user with root (CAP_SYS_ADMIN) access is able to panic the system when issuing netfilter netflow commands. Scope: local bookworm: resolved (fixed in 5.4.19-1) bullseye: resolved (fixed in 5.4.19-1) forky: resolved (fixed in 5.4.19-1) sid: resolved (fixed in 5.4.19-1) trixie:
debian
CVE-2021-0605P4MEDIUMCVSS 4.4fixed in linux 5.8.7-1 (bookworm)2021
CVE-2021-0605 [MEDIUM] CVE-2021-0605: linux - In pfkey_dump of af_key.c, there is a possible out-of-bounds read due to a missi... In pfkey_dump of af_key.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure in the kernel with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-110373476 Scope: local bookworm: resolved (fixed in 5.8.7-1) bullsey
debian
CVE-2019-9444P4MEDIUMCVSS 4.4fixed in linux 4.15.4-1 (bookworm)2019
CVE-2019-9444 [MEDIUM] CVE-2019-9444: linux - In the Android kernel in sync debug fs driver there is a kernel pointer leak due... In the Android kernel in sync debug fs driver there is a kernel pointer leak due to the usage of printf with %p. This could lead to local information disclosure with system execution privileges needed. User interaction is not needed for exploitation. Scope: local bookworm: resolved (fixed in 4.15.4-1) bullseye: resolved (fixed in 4.15.4-1) forky: resolved (fixed in 4.
debian
CVE-2019-9245P4MEDIUMCVSS 4.4fixed in linux 4.19.16-1 (bookworm)2019
CVE-2019-9245 [MEDIUM] CVE-2019-9245: linux - In the Android kernel in the f2fs driver there is a possible out of bounds read ... In the Android kernel in the f2fs driver there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Scope: local bookworm: resolved (fixed in 4.19.16-1) bullseye: resolved (fixed in 4.19.16-1) forky: resolved (fixed in 4.
debian
CVE-2021-47603P4MEDIUMCVSS 4.4fixed in linux 5.15.15-1 (bookworm)2021
CVE-2021-47603 [MEDIUM] CVE-2021-47603: linux - In the Linux kernel, the following vulnerability has been resolved: audit: impr... In the Linux kernel, the following vulnerability has been resolved: audit: improve robustness of the audit queue handling If the audit daemon were ever to get stuck in a stopped state the kernel's kauditd_thread() could get blocked attempting to send audit records to the userspace audit daemon. With the kernel thread blocked it is possible that the audit queue could
debian
CVE-2019-9453P4MEDIUMCVSS 4.4fixed in linux 5.2.6-1 (bookworm)2019
CVE-2019-9453 [MEDIUM] CVE-2019-9453: linux - In the Android kernel in F2FS touch driver there is a possible out of bounds rea... In the Android kernel in F2FS touch driver there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with system execution privileges needed. User interaction is not needed for exploitation. Scope: local bookworm: resolved (fixed in 5.2.6-1) bullseye: resolved (fixed in 5.2.6-1) forky: resolved (fixed in 5
debian
Debian Linux vulnerabilities | cvebase