Debian Linux vulnerabilities
12,638 known vulnerabilities affecting debian/linux.
Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226
Vulnerabilities
Page 607 of 632
CVE-2015-6937P4MEDIUMCVSS 4.9fixed in linux 4.2.1-1 (bookworm)2015
CVE-2015-6937 [MEDIUM] CVE-2015-6937: linux - The __rds_conn_create function in net/rds/connection.c in the Linux kernel throu...
The __rds_conn_create function in net/rds/connection.c in the Linux kernel through 4.2.3 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by using a socket that was not properly bound.
Scope: local
bookworm: resolved (fixed in 4.2.1-1)
bullseye: resolved (fixed in 4.2.1-1)
forky: reso
debian
CVE-2013-7270P4MEDIUMCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7270 [MEDIUM] CVE-2013-7270: linux - The packet_recvmsg function in net/packet/af_packet.c in the Linux kernel before...
The packet_recvmsg function in net/packet/af_packet.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call.
Scope: local
bookworm: resolved (fixed in
debian
CVE-2013-7271P4MEDIUMCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7271 [MEDIUM] CVE-2013-7271: linux - The x25_recvmsg function in net/x25/af_x25.c in the Linux kernel before 3.12.4 u...
The x25_recvmsg function in net/x25/af_x25.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call.
Scope: local
bookworm: resolved (fixed in 3.12.6-
debian
CVE-2013-7281P4LOWCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7281 [MEDIUM] CVE-2013-7281: linux - The dgram_recvmsg function in net/ieee802154/dgram.c in the Linux kernel before ...
The dgram_recvmsg function in net/ieee802154/dgram.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel stack memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call.
Scope: local
bookworm: resolved (fi
debian
CVE-2013-7265P4LOWCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7265 [MEDIUM] CVE-2013-7265: linux - The pn_recvmsg function in net/phonet/datagram.c in the Linux kernel before 3.12...
The pn_recvmsg function in net/phonet/datagram.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel stack memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call.
Scope: local
bookworm: resolved (fixed i
debian
CVE-2015-0275P4MEDIUMCVSS 4.9fixed in linux 3.16.7-ckt9-1 (bookworm)2015
CVE-2015-0275 [MEDIUM] CVE-2015-0275: linux - The ext4_zero_range function in fs/ext4/extents.c in the Linux kernel before 4.1...
The ext4_zero_range function in fs/ext4/extents.c in the Linux kernel before 4.1 allows local users to cause a denial of service (BUG) via a crafted fallocate zero-range request.
Scope: local
bookworm: resolved (fixed in 3.16.7-ckt9-1)
bullseye: resolved (fixed in 3.16.7-ckt9-1)
forky: resolved (fixed in 3.16.7-ckt9-1)
sid: resolved (fixed in 3.16.7-ckt9-1)
trixie: re
debian
CVE-2014-9420P4MEDIUMCVSS 4.9fixed in linux 3.16.7-ckt4-1 (bookworm)2014
CVE-2014-9420 [MEDIUM] CVE-2014-9420: linux - The rock_continue function in fs/isofs/rock.c in the Linux kernel through 3.18.1...
The rock_continue function in fs/isofs/rock.c in the Linux kernel through 3.18.1 does not restrict the number of Rock Ridge continuation entries, which allows local users to cause a denial of service (infinite loop, and system crash or hang) via a crafted iso9660 image.
Scope: local
bookworm: resolved (fixed in 3.16.7-ckt4-1)
bullseye: resolved (fixed in 3.16.7-ckt4-1
debian
CVE-2013-7269P4MEDIUMCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7269 [MEDIUM] CVE-2013-7269: linux - The nr_recvmsg function in net/netrom/af_netrom.c in the Linux kernel before 3.1...
The nr_recvmsg function in net/netrom/af_netrom.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call.
Scope: local
bookworm: resolved (fixed in 3.
debian
CVE-2015-4700P4MEDIUMCVSS 4.9fixed in linux 4.0.7-1 (bookworm)2015
CVE-2015-4700 [MEDIUM] CVE-2015-4700: linux - The bpf_int_jit_compile function in arch/x86/net/bpf_jit_comp.c in the Linux ker...
The bpf_int_jit_compile function in arch/x86/net/bpf_jit_comp.c in the Linux kernel before 4.0.6 allows local users to cause a denial of service (system crash) by creating a packet filter and then loading crafted BPF instructions that trigger late convergence by the JIT compiler.
Scope: local
bookworm: resolved (fixed in 4.0.7-1)
bullseye: resolved (fixed in 4.0.7-1)
debian
CVE-2013-4515P4LOWCVSS 4.9fixed in linux 3.12-1 (bookworm)2013
CVE-2013-4515 [MEDIUM] CVE-2013-4515: linux - The bcm_char_ioctl function in drivers/staging/bcm/Bcmchar.c in the Linux kernel...
The bcm_char_ioctl function in drivers/staging/bcm/Bcmchar.c in the Linux kernel before 3.12 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via an IOCTL_BCM_GET_DEVICE_DRIVER_INFO ioctl call.
Scope: local
bookworm: resolved (fixed in 3.12-1)
bullseye: resolved (fixed in 3.12-1)
forky: resolved
debian
CVE-2013-0231P4MEDIUMCVSS 4.9fixed in linux 3.2.41-1 (bookworm)2013
CVE-2013-0231 [MEDIUM] CVE-2013-0231: linux - The pciback_enable_msi function in the PCI backend driver (drivers/xen/pciback/c...
The pciback_enable_msi function in the PCI backend driver (drivers/xen/pciback/conf_space_capability_msi.c) in Xen for the Linux kernel 2.6.18 and 3.8 allows guest OS users with PCI device access to cause a denial of service via a large number of kernel log messages. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved
debian
CVE-2013-7267P4MEDIUMCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7267 [MEDIUM] CVE-2013-7267: linux - The atalk_recvmsg function in net/appletalk/ddp.c in the Linux kernel before 3.1...
The atalk_recvmsg function in net/appletalk/ddp.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call.
Scope: local
bookworm: resolved (fixed in 3.
debian
CVE-2013-7264P4LOWCVSS 4.9fixed in linux 3.12.6-1 (bookworm)2013
CVE-2013-7264 [MEDIUM] CVE-2013-7264: linux - The l2tp_ip_recvmsg function in net/l2tp/l2tp_ip.c in the Linux kernel before 3....
The l2tp_ip_recvmsg function in net/l2tp/l2tp_ip.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel stack memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call.
Scope: local
bookworm: resolved (fixed
debian
CVE-2012-4398P4LOWCVSS 4.9fixed in linux 3.2.35-1 (bookworm)2012
CVE-2012-4398 [MEDIUM] CVE-2012-4398: linux - The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 do...
The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 does not set a certain killable attribute, which allows local users to cause a denial of service (memory consumption) via a crafted application.
Scope: local
bookworm: resolved (fixed in 3.2.35-1)
bullseye: resolved (fixed in 3.2.35-1)
forky: resolved (fixed in 3.2.35-1)
sid: resolved (fixed
debian
CVE-2014-9729P4MEDIUMCVSS 4.9fixed in linux 3.16.7-ckt4-1 (bookworm)2014
CVE-2014-9729 [MEDIUM] CVE-2014-9729: linux - The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.18.2 ...
The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.18.2 does not ensure a certain data-structure size consistency, which allows local users to cause a denial of service (system crash) via a crafted UDF filesystem image.
Scope: local
bookworm: resolved (fixed in 3.16.7-ckt4-1)
bullseye: resolved (fixed in 3.16.7-ckt4-1)
forky: resolved (fixed in
debian
CVE-2013-3224P4LOWCVSS 4.9fixed in linux 3.8.11-1 (bookworm)2013
CVE-2013-3224 [MEDIUM] CVE-2013-3224: linux - The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel...
The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Scope: local
bookworm: resolved (fixed in 3.8.11-1)
bullseye: resolved (fixed in 3.8.11-1
debian
CVE-2013-3234P4LOWCVSS 4.9fixed in linux 3.8.11-1 (bookworm)2013
CVE-2013-3234 [MEDIUM] CVE-2013-3234: linux - The rose_recvmsg function in net/rose/af_rose.c in the Linux kernel before 3.9-r...
The rose_recvmsg function in net/rose/af_rose.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Scope: local
bookworm: resolved (fixed in 3.8.11-1)
bullseye: resolved (fixed in 3.8.11-1)
forky: resolved (fixe
debian
CVE-2013-3237P4LOWCVSS 4.9fixed in open-vm-tools 2:9.2.2-893683-8 (bookworm)2013
CVE-2013-3237 [MEDIUM] CVE-2013-3237: linux - The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kerne...
The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
debian
CVE-2015-3332P4MEDIUMCVSS 4.9fixed in linux 3.16.7-ckt9-3 (bookworm)2015
CVE-2015-3332 [MEDIUM] CVE-2015-3332: linux - A certain backport in the TCP Fast Open implementation for the Linux kernel befo...
A certain backport in the TCP Fast Open implementation for the Linux kernel before 3.18 does not properly maintain a count value, which allow local users to cause a denial of service (system crash) via the Fast Open feature, as demonstrated by visiting the chrome://flags/#enable-tcp-fast-open URL when using certain 3.10.x through 3.16.x kernel builds, including longte
debian
CVE-2012-6647P4MEDIUMCVSS 4.9fixed in linux 3.2.29-1 (bookworm)2012
CVE-2012-6647 [MEDIUM] CVE-2012-6647: linux - The futex_wait_requeue_pi function in kernel/futex.c in the Linux kernel before ...
The futex_wait_requeue_pi function in kernel/futex.c in the Linux kernel before 3.5.1 does not ensure that calls have two different futex addresses, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted FUTEX_WAIT_REQUEUE_PI command.
Scope: local
bookworm: resolved (fix
debian