Debian Linux vulnerabilities
12,638 known vulnerabilities affecting debian/linux.
Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226
Vulnerabilities
Page 608 of 632
CVE-2014-8172P4MEDIUMCVSS 4.9fixed in linux 3.13.4-1 (bookworm)2014
CVE-2014-8172 [MEDIUM] CVE-2014-8172: linux - The filesystem implementation in the Linux kernel before 3.13 performs certain o...
The filesystem implementation in the Linux kernel before 3.13 performs certain operations on lists of files with an inappropriate locking approach, which allows local users to cause a denial of service (soft lockup or system crash) via unspecified use of Asynchronous I/O (AIO) operations.
Scope: local
bookworm: resolved (fixed in 3.13.4-1)
bullseye: resolved (fixed in
debian
CVE-2013-3235P4LOWCVSS 4.9fixed in linux 3.8.11-1 (bookworm)2013
CVE-2013-3235 [MEDIUM] CVE-2013-3235: linux - net/tipc/socket.c in the Linux kernel before 3.9-rc7 does not initialize a certa...
net/tipc/socket.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure and a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Scope: local
bookworm: resolved (fixed in 3.8.11-1)
bullseye: resolved (fixed in 3.8.11-1)
forky: resolved (fixe
debian
CVE-2013-3223P4LOWCVSS 4.9fixed in linux 3.8.11-1 (bookworm)2013
CVE-2013-3223 [MEDIUM] CVE-2013-3223: linux - The ax25_recvmsg function in net/ax25/af_ax25.c in the Linux kernel before 3.9-r...
The ax25_recvmsg function in net/ax25/af_ax25.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.
Scope: local
bookworm: resolved (fixed in 3.8.11-1)
bullseye: resolved (fixed in 3.8.11-1)
forky: resolved (fixe
debian
CVE-2015-3212P4MEDIUMCVSS 4.9fixed in linux 4.0.8-1 (bookworm)2015
CVE-2015-3212 [MEDIUM] CVE-2015-3212: linux - Race condition in net/sctp/socket.c in the Linux kernel before 4.1.2 allows loca...
Race condition in net/sctp/socket.c in the Linux kernel before 4.1.2 allows local users to cause a denial of service (list corruption and panic) via a rapid series of system calls related to sockets, as demonstrated by setsockopt calls.
Scope: local
bookworm: resolved (fixed in 4.0.8-1)
bullseye: resolved (fixed in 4.0.8-1)
forky: resolved (fixed in 4.0.8-1)
sid: reso
debian
CVE-2019-19063P4LOWCVSS 4.6fixed in linux 5.4.8-1 (bookworm)2019
CVE-2019-19063 [MEDIUM] CVE-2019-19063: linux - Two memory leaks in the rtl_usb_probe() function in drivers/net/wireless/realtek...
Two memory leaks in the rtl_usb_probe() function in drivers/net/wireless/realtek/rtlwifi/usb.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption), aka CID-3f9361695113.
Scope: local
bookworm: resolved (fixed in 5.4.8-1)
bullseye: resolved (fixed in 5.4.8-1)
forky: resolved (fixed in 5.4.8-1)
sid: resolved (fixed in 5
debian
CVE-2019-15218P4MEDIUMCVSS 4.6fixed in linux 5.2.6-1 (bookworm)2019
CVE-2019-15218 [MEDIUM] CVE-2019-15218: linux - An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointe...
An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in the drivers/media/usb/siano/smsusb.c driver.
Scope: local
bookworm: resolved (fixed in 5.2.6-1)
bullseye: resolved (fixed in 5.2.6-1)
forky: resolved (fixed in 5.2.6-1)
sid: resolved (fixed in 5.2.6-1)
trixie: resolved (fixed in 5.2.6-1)
debian
CVE-2013-6885P4MEDIUMCVSS 4.7fixed in linux 3.14.2-1 (bookworm)2013
CVE-2013-6885 [MEDIUM] CVE-2013-6885: linux - The microcode on AMD 16h 00h through 0Fh processors does not properly handle the...
The microcode on AMD 16h 00h through 0Fh processors does not properly handle the interaction between locked instructions and write-combined memory types, which allows local users to cause a denial of service (system hang) via a crafted application, aka the errata 793 issue.
Scope: local
bookworm: resolved (fixed in 3.14.2-1)
bullseye: resolved (fixed in 3.14.2-1)
fork
debian
CVE-2016-2185P4LOWCVSS 4.6fixed in linux 4.5.1-1 (bookworm)2016
CVE-2016-2185 [MEDIUM] CVE-2016-2185: linux - The ati_remote2_probe function in drivers/input/misc/ati_remote2.c in the Linux ...
The ati_remote2_probe function in drivers/input/misc/ati_remote2.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device descriptor.
Scope: local
bookworm: resolved (fixed in 4.5.1-1)
bullseye: resolved (fixed in 4.5.1-1)
forky: resol
debian
CVE-2016-2186P4LOWCVSS 4.6fixed in linux 4.5.1-1 (bookworm)2016
CVE-2016-2186 [MEDIUM] CVE-2016-2186: linux - The powermate_probe function in drivers/input/misc/powermate.c in the Linux kern...
The powermate_probe function in drivers/input/misc/powermate.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted endpoints value in a USB device descriptor.
Scope: local
bookworm: resolved (fixed in 4.5.1-1)
bullseye: resolved (fixed in 4.5.1-1)
forky: resolved
debian
CVE-2022-50669P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50669 CVE-2022-50669: linux - In the Linux kernel, the following vulnerability has been resolved: misc: ocxl:...
In the Linux kernel, the following vulnerability has been resolved: misc: ocxl: fix possible name leak in ocxl_file_register_afu() If device_register() returns error in ocxl_file_register_afu(), the name allocated by dev_set_name() need be freed. As comment of device_register() says, it should use put_device() to give up the reference in the error path. So fix this by callin
debian
CVE-2022-50658P4UNKNOWNfixed in linux 6.0.6-1 (bookworm)2022
CVE-2022-50658 CVE-2022-50658: linux - In the Linux kernel, the following vulnerability has been resolved: cpufreq: qc...
In the Linux kernel, the following vulnerability has been resolved: cpufreq: qcom: fix memory leak in error path If for some reason the speedbin length is incorrect, then there is a memory leak in the error path because we never free the speedbin buffer. This commit fixes the error path to always free the speedbin buffer.
Scope: local
bookworm: resolved (fixed in 6.0.6-1)
bu
debian
CVE-2023-53858P4UNKNOWNfixed in linux 6.1.52-1 (bookworm)2023
CVE-2023-53858 CVE-2023-53858: linux - In the Linux kernel, the following vulnerability has been resolved: tty: serial...
In the Linux kernel, the following vulnerability has been resolved: tty: serial: samsung_tty: Fix a memory leak in s3c24xx_serial_getclk() in case of error If clk_get_rate() fails, the clk that has just been allocated needs to be freed.
Scope: local
bookworm: resolved (fixed in 6.1.52-1)
bullseye: resolved (fixed in 5.10.191-1)
forky: resolved (fixed in 6.4.11-1)
sid: resolv
debian
CVE-2022-50662P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50662 CVE-2022-50662: linux - In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: f...
In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: fix memory leak in hns_roce_alloc_mr() When hns_roce_mr_enable() failed in hns_roce_alloc_mr(), mr_key is not released. Compiled test only.
Scope: local
bookworm: resolved (fixed in 6.1.4-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.4-1)
sid: resolved (fixed in 6.1.4-1)
debian
CVE-2022-50663P4UNKNOWNfixed in linux 6.1.4-1 (bookworm)2022
CVE-2022-50663 CVE-2022-50663: linux - In the Linux kernel, the following vulnerability has been resolved: net: stmmac...
In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix possible memory leak in stmmac_dvr_probe() The bitmap_free() should be called to free priv->af_xdp_zc_qps when create_singlethread_workqueue() fails, otherwise there will be a memory leak, so we add the err path error_wq_init to fix it.
Scope: local
bookworm: resolved (fixed in 6.1.4-1)
bull
debian
CVE-2016-2053P4MEDIUMCVSS 4.7fixed in linux 4.3.1-1 (bookworm)2016
CVE-2016-2053 [MEDIUM] CVE-2016-2053: linux - The asn1_ber_decoder function in lib/asn1_decoder.c in the Linux kernel before 4...
The asn1_ber_decoder function in lib/asn1_decoder.c in the Linux kernel before 4.3 allows attackers to cause a denial of service (panic) via an ASN.1 BER file that lacks a public key, leading to mishandling by the public_key_verify_signature function in crypto/asymmetric_keys/public_key.c.
Scope: local
bookworm: resolved (fixed in 4.3.1-1)
bullseye: resolved (fixed in
debian
CVE-2019-15098P4MEDIUMCVSS 4.6fixed in linux 5.3.7-1 (bookworm)2019
CVE-2019-15098 [MEDIUM] CVE-2019-15098: linux - drivers/net/wireless/ath/ath6kl/usb.c in the Linux kernel through 5.2.9 has a NU...
drivers/net/wireless/ath/ath6kl/usb.c in the Linux kernel through 5.2.9 has a NULL pointer dereference via an incomplete address in an endpoint descriptor.
Scope: local
bookworm: resolved (fixed in 5.3.7-1)
bullseye: resolved (fixed in 5.3.7-1)
forky: resolved (fixed in 5.3.7-1)
sid: resolved (fixed in 5.3.7-1)
trixie: resolved (fixed in 5.3.7-1)
debian
CVE-2022-50832P4UNKNOWNfixed in linux 6.1.20-1 (bookworm)2022
CVE-2022-50832 CVE-2022-50832: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1...
In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: fix potential memory leak in wilc_mac_xmit() The wilc_mac_xmit() returns NETDEV_TX_OK without freeing skb, add dev_kfree_skb() to fix it. Compile tested only.
Scope: local
bookworm: resolved (fixed in 6.1.20-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.20-1)
sid:
debian
CVE-2022-50830P4UNKNOWNfixed in linux 6.1.20-1 (bookworm)2022
CVE-2022-50830 CVE-2022-50830: linux - In the Linux kernel, the following vulnerability has been resolved: auxdisplay:...
In the Linux kernel, the following vulnerability has been resolved: auxdisplay: hd44780: Fix potential memory leak in hd44780_remove() hd44780_probe() allocates a memory chunk for hd with kzalloc() and makes "lcd->drvdata->hd44780" point to it. When we call hd44780_remove(), we should release all relevant memory and resource. But "lcd->drvdata ->hd44780" is not released, whi
debian
CVE-2019-15219P4MEDIUMCVSS 4.6fixed in linux 5.2.6-1 (bookworm)2019
CVE-2019-15219 [MEDIUM] CVE-2019-15219: linux - An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointe...
An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in the drivers/usb/misc/sisusbvga/sisusb.c driver.
Scope: local
bookworm: resolved (fixed in 5.2.6-1)
bullseye: resolved (fixed in 5.2.6-1)
forky: resolved (fixed in 5.2.6-1)
sid: resolved (fixed in 5.2.6-1)
trixie: resolved (fixed in 5.2.6-
debian
CVE-2022-50748P4UNKNOWNfixed in linux 6.0.3-1 (bookworm)2022
CVE-2022-50748 CVE-2022-50748: linux - In the Linux kernel, the following vulnerability has been resolved: ipc: mqueue...
In the Linux kernel, the following vulnerability has been resolved: ipc: mqueue: fix possible memory leak in init_mqueue_fs() commit db7cfc380900 ("ipc: Free mq_sysctls if ipc namespace creation failed") Here's a similar memory leak to the one fixed by the patch above. retire_mq_sysctls need to be called when init_mqueue_fs fails after setup_mq_sysctls.
Scope: local
bookworm
debian