cbcvebase.

Debian Linux vulnerabilities

12,638 known vulnerabilities affecting debian/linux.

Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226

Vulnerabilities

Page 607 of 632
CVE-2015-6937P4MEDIUMCVSS 4.9fixed in linux 4.2.1-1 (bookworm)2015
CVE-2015-6937 [MEDIUM] CVE-2015-6937: linux - The __rds_conn_create function in net/rds/connection.c in the Linux kernel throu... The __rds_conn_create function in net/rds/connection.c in the Linux kernel through 4.2.3 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by using a socket that was not properly bound. Scope: local bookworm: resolved (fixed in 4.2.1-1) bullseye: resolved (fixed in 4.2.1-1) forky: reso
debian
CVE-2013-7270P4MEDIUMCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7270 [MEDIUM] CVE-2013-7270: linux - The packet_recvmsg function in net/packet/af_packet.c in the Linux kernel before... The packet_recvmsg function in net/packet/af_packet.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. Scope: local bookworm: resolved (fixed in
debian
CVE-2013-7271P4MEDIUMCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7271 [MEDIUM] CVE-2013-7271: linux - The x25_recvmsg function in net/x25/af_x25.c in the Linux kernel before 3.12.4 u... The x25_recvmsg function in net/x25/af_x25.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. Scope: local bookworm: resolved (fixed in 3.12.6-
debian
CVE-2013-7281P4LOWCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7281 [MEDIUM] CVE-2013-7281: linux - The dgram_recvmsg function in net/ieee802154/dgram.c in the Linux kernel before ... The dgram_recvmsg function in net/ieee802154/dgram.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel stack memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. Scope: local bookworm: resolved (fi
debian
CVE-2013-7265P4LOWCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7265 [MEDIUM] CVE-2013-7265: linux - The pn_recvmsg function in net/phonet/datagram.c in the Linux kernel before 3.12... The pn_recvmsg function in net/phonet/datagram.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel stack memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. Scope: local bookworm: resolved (fixed i
debian
CVE-2015-0275P4MEDIUMCVSS 4.9fixed in linux 3.16.7-ckt9-1 (bookworm)2015
CVE-2015-0275 [MEDIUM] CVE-2015-0275: linux - The ext4_zero_range function in fs/ext4/extents.c in the Linux kernel before 4.1... The ext4_zero_range function in fs/ext4/extents.c in the Linux kernel before 4.1 allows local users to cause a denial of service (BUG) via a crafted fallocate zero-range request. Scope: local bookworm: resolved (fixed in 3.16.7-ckt9-1) bullseye: resolved (fixed in 3.16.7-ckt9-1) forky: resolved (fixed in 3.16.7-ckt9-1) sid: resolved (fixed in 3.16.7-ckt9-1) trixie: re
debian
CVE-2014-9420P4MEDIUMCVSS 4.9fixed in linux 3.16.7-ckt4-1 (bookworm)2014
CVE-2014-9420 [MEDIUM] CVE-2014-9420: linux - The rock_continue function in fs/isofs/rock.c in the Linux kernel through 3.18.1... The rock_continue function in fs/isofs/rock.c in the Linux kernel through 3.18.1 does not restrict the number of Rock Ridge continuation entries, which allows local users to cause a denial of service (infinite loop, and system crash or hang) via a crafted iso9660 image. Scope: local bookworm: resolved (fixed in 3.16.7-ckt4-1) bullseye: resolved (fixed in 3.16.7-ckt4-1
debian
CVE-2013-7269P4MEDIUMCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7269 [MEDIUM] CVE-2013-7269: linux - The nr_recvmsg function in net/netrom/af_netrom.c in the Linux kernel before 3.1... The nr_recvmsg function in net/netrom/af_netrom.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. Scope: local bookworm: resolved (fixed in 3.
debian
CVE-2015-4700P4MEDIUMCVSS 4.9fixed in linux 4.0.7-1 (bookworm)2015
CVE-2015-4700 [MEDIUM] CVE-2015-4700: linux - The bpf_int_jit_compile function in arch/x86/net/bpf_jit_comp.c in the Linux ker... The bpf_int_jit_compile function in arch/x86/net/bpf_jit_comp.c in the Linux kernel before 4.0.6 allows local users to cause a denial of service (system crash) by creating a packet filter and then loading crafted BPF instructions that trigger late convergence by the JIT compiler. Scope: local bookworm: resolved (fixed in 4.0.7-1) bullseye: resolved (fixed in 4.0.7-1)
debian
CVE-2013-4515P4LOWCVSS 4.9fixed in linux 3.12-1 (bookworm)2013
CVE-2013-4515 [MEDIUM] CVE-2013-4515: linux - The bcm_char_ioctl function in drivers/staging/bcm/Bcmchar.c in the Linux kernel... The bcm_char_ioctl function in drivers/staging/bcm/Bcmchar.c in the Linux kernel before 3.12 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via an IOCTL_BCM_GET_DEVICE_DRIVER_INFO ioctl call. Scope: local bookworm: resolved (fixed in 3.12-1) bullseye: resolved (fixed in 3.12-1) forky: resolved
debian
CVE-2013-0231P4MEDIUMCVSS 4.9fixed in linux 3.2.41-1 (bookworm)2013
CVE-2013-0231 [MEDIUM] CVE-2013-0231: linux - The pciback_enable_msi function in the PCI backend driver (drivers/xen/pciback/c... The pciback_enable_msi function in the PCI backend driver (drivers/xen/pciback/conf_space_capability_msi.c) in Xen for the Linux kernel 2.6.18 and 3.8 allows guest OS users with PCI device access to cause a denial of service via a large number of kernel log messages. NOTE: some of these details are obtained from third party information. Scope: local bookworm: resolved
debian
CVE-2013-7267P4MEDIUMCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7267 [MEDIUM] CVE-2013-7267: linux - The atalk_recvmsg function in net/appletalk/ddp.c in the Linux kernel before 3.1... The atalk_recvmsg function in net/appletalk/ddp.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. Scope: local bookworm: resolved (fixed in 3.
debian
CVE-2013-7264P4LOWCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7264 [MEDIUM] CVE-2013-7264: linux - The l2tp_ip_recvmsg function in net/l2tp/l2tp_ip.c in the Linux kernel before 3.... The l2tp_ip_recvmsg function in net/l2tp/l2tp_ip.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel stack memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. Scope: local bookworm: resolved (fixed
debian
CVE-2012-4398P4LOWCVSS 4.9fixed in linux 3.2.35-1 (bookworm)2012
CVE-2012-4398 [MEDIUM] CVE-2012-4398: linux - The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 do... The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 does not set a certain killable attribute, which allows local users to cause a denial of service (memory consumption) via a crafted application. Scope: local bookworm: resolved (fixed in 3.2.35-1) bullseye: resolved (fixed in 3.2.35-1) forky: resolved (fixed in 3.2.35-1) sid: resolved (fixed
debian
CVE-2014-9729P4MEDIUMCVSS 4.9fixed in linux 3.16.7-ckt4-1 (bookworm)2014
CVE-2014-9729 [MEDIUM] CVE-2014-9729: linux - The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.18.2 ... The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.18.2 does not ensure a certain data-structure size consistency, which allows local users to cause a denial of service (system crash) via a crafted UDF filesystem image. Scope: local bookworm: resolved (fixed in 3.16.7-ckt4-1) bullseye: resolved (fixed in 3.16.7-ckt4-1) forky: resolved (fixed in
debian
CVE-2013-3224P4LOWCVSS 4.9fixed in linux 3.8.11-1 (bookworm)2013
CVE-2013-3224 [MEDIUM] CVE-2013-3224: linux - The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel... The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call. Scope: local bookworm: resolved (fixed in 3.8.11-1) bullseye: resolved (fixed in 3.8.11-1
debian
CVE-2013-3234P4LOWCVSS 4.9fixed in linux 3.8.11-1 (bookworm)2013
CVE-2013-3234 [MEDIUM] CVE-2013-3234: linux - The rose_recvmsg function in net/rose/af_rose.c in the Linux kernel before 3.9-r... The rose_recvmsg function in net/rose/af_rose.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call. Scope: local bookworm: resolved (fixed in 3.8.11-1) bullseye: resolved (fixed in 3.8.11-1) forky: resolved (fixe
debian
CVE-2013-3237P4LOWCVSS 4.9fixed in open-vm-tools 2:9.2.2-893683-8 (bookworm)2013
CVE-2013-3237 [MEDIUM] CVE-2013-3237: linux - The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kerne... The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call. Scope: local bookworm: resolved bullseye: resolved forky: resolved sid: resolved trixie: resolved
debian
CVE-2015-3332P4MEDIUMCVSS 4.9fixed in linux 3.16.7-ckt9-3 (bookworm)2015
CVE-2015-3332 [MEDIUM] CVE-2015-3332: linux - A certain backport in the TCP Fast Open implementation for the Linux kernel befo... A certain backport in the TCP Fast Open implementation for the Linux kernel before 3.18 does not properly maintain a count value, which allow local users to cause a denial of service (system crash) via the Fast Open feature, as demonstrated by visiting the chrome://flags/#enable-tcp-fast-open URL when using certain 3.10.x through 3.16.x kernel builds, including longte
debian
CVE-2012-6647P4MEDIUMCVSS 4.9fixed in linux 3.2.29-1 (bookworm)2012
CVE-2012-6647 [MEDIUM] CVE-2012-6647: linux - The futex_wait_requeue_pi function in kernel/futex.c in the Linux kernel before ... The futex_wait_requeue_pi function in kernel/futex.c in the Linux kernel before 3.5.1 does not ensure that calls have two different futex addresses, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted FUTEX_WAIT_REQUEUE_PI command. Scope: local bookworm: resolved (fix
debian
Debian Linux vulnerabilities | cvebase