cbcvebase.

Debian Linux vulnerabilities

12,638 known vulnerabilities affecting debian/linux.

Total CVEs
12,638
CISA KEV
29
actively exploited
Public exploits
140
Exploited in wild
47
Severity breakdown
CRITICAL70HIGH2664MEDIUM6236LOW2442UNKNOWN1226

Vulnerabilities

Page 621 of 632
CVE-2022-49574P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49574 [MEDIUM] CVE-2022-49574: linux - In the Linux kernel, the following vulnerability has been resolved: tcp: Fix da... In the Linux kernel, the following vulnerability has been resolved: tcp: Fix data-races around sysctl_tcp_recovery. While reading sysctl_tcp_recovery, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.16-1) sid:
debian
CVE-2022-49573P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49573 [MEDIUM] CVE-2022-49573: linux - In the Linux kernel, the following vulnerability has been resolved: tcp: Fix a ... In the Linux kernel, the following vulnerability has been resolved: tcp: Fix a data-race around sysctl_tcp_early_retrans. While reading sysctl_tcp_early_retrans, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.1
debian
CVE-2022-49587P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49587 [MEDIUM] CVE-2022-49587: linux - In the Linux kernel, the following vulnerability has been resolved: tcp: Fix a ... In the Linux kernel, the following vulnerability has been resolved: tcp: Fix a data-race around sysctl_tcp_notsent_lowat. While reading sysctl_tcp_notsent_lowat, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.1
debian
CVE-2022-49585P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49585 [MEDIUM] CVE-2022-49585: linux - In the Linux kernel, the following vulnerability has been resolved: tcp: Fix da... In the Linux kernel, the following vulnerability has been resolved: tcp: Fix data-races around sysctl_tcp_fastopen_blackhole_timeout. While reading sysctl_tcp_fastopen_blackhole_timeout, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved (fixed in 5.10.136-1) forky:
debian
CVE-2022-49577P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49577 [MEDIUM] CVE-2022-49577: linux - In the Linux kernel, the following vulnerability has been resolved: udp: Fix a ... In the Linux kernel, the following vulnerability has been resolved: udp: Fix a data-race around sysctl_udp_l3mdev_accept. While reading sysctl_udp_l3mdev_accept, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.1
debian
CVE-2022-49579P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49579 [MEDIUM] CVE-2022-49579: linux - In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix d... In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix data-races around sysctl_fib_multipath_hash_policy. While reading sysctl_fib_multipath_hash_policy, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: open forky: resolved (fixed in 5.18.16-1) sid:
debian
CVE-2022-49596P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49596 [MEDIUM] CVE-2022-49596: linux - In the Linux kernel, the following vulnerability has been resolved: tcp: Fix da... In the Linux kernel, the following vulnerability has been resolved: tcp: Fix data-races around sysctl_tcp_min_snd_mss. While reading sysctl_tcp_min_snd_mss, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.16-1)
debian
CVE-2022-49580P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49580 [MEDIUM] CVE-2022-49580: linux - In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix a... In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix a data-race around sysctl_fib_multipath_use_neigh. While reading sysctl_fib_multipath_use_neigh, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fi
debian
CVE-2022-49597P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49597 [MEDIUM] CVE-2022-49597: linux - In the Linux kernel, the following vulnerability has been resolved: tcp: Fix da... In the Linux kernel, the following vulnerability has been resolved: tcp: Fix data-races around sysctl_tcp_base_mss. While reading sysctl_tcp_base_mss, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.16-1) sid:
debian
CVE-2022-49588P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49588 [MEDIUM] CVE-2022-49588: linux - In the Linux kernel, the following vulnerability has been resolved: tcp: Fix da... In the Linux kernel, the following vulnerability has been resolved: tcp: Fix data-races around sysctl_tcp_migrate_req. While reading sysctl_tcp_migrate_req, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: open forky: resolved (fixed in 5.18.16-1) sid: resolved (fixed in 5
debian
CVE-2022-49576P4MEDIUMCVSS 4.7fixed in linux 5.18.16-1 (bookworm)2022
CVE-2022-49576 [MEDIUM] CVE-2022-49576: linux - In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix d... In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix data-races around sysctl_fib_multipath_hash_fields. While reading sysctl_fib_multipath_hash_fields, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. Scope: local bookworm: resolved (fixed in 5.18.16-1) bullseye: resolved forky: resolved (fixed in 5.18.16-1)
debian
CVE-2024-42227P4LOWCVSS 4.7fixed in linux 6.9.9-1 (forky)2024
CVE-2024-42227 [MEDIUM] CVE-2024-42227: linux - In the Linux kernel, the following vulnerability has been resolved: drm/amd/dis... In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix overlapping copy within dml_core_mode_programming [WHY] &mode_lib->mp.Watermark and &locals->Watermark are the same address. memcpy may lead to unexpected behavior. [HOW] memmove should be used. Scope: local bookworm: resolved bullseye: resolved forky: resolved (fixed in 6.9.9-1
debian
CVE-2022-49629P4MEDIUMCVSS 4.7fixed in linux 5.18.14-1 (bookworm)2022
CVE-2022-49629 [MEDIUM] CVE-2022-49629: linux - In the Linux kernel, the following vulnerability has been resolved: nexthop: Fi... In the Linux kernel, the following vulnerability has been resolved: nexthop: Fix data-races around nexthop_compat_mode. While reading nexthop_compat_mode, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. Scope: local bookworm: resolved (fixed in 5.18.14-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.14-1) s
debian
CVE-2022-49631P4MEDIUMCVSS 4.7fixed in linux 5.18.14-1 (bookworm)2022
CVE-2022-49631 [MEDIUM] CVE-2022-49631: linux - In the Linux kernel, the following vulnerability has been resolved: raw: Fix a ... In the Linux kernel, the following vulnerability has been resolved: raw: Fix a data-race around sysctl_raw_l3mdev_accept. While reading sysctl_raw_l3mdev_accept, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader. Scope: local bookworm: resolved (fixed in 5.18.14-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.1
debian
CVE-2022-49637P4MEDIUMCVSS 4.7fixed in linux 5.18.14-1 (bookworm)2022
CVE-2022-49637 [MEDIUM] CVE-2022-49637: linux - In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix a... In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix a data-race around sysctl_fib_sync_mem. While reading sysctl_fib_sync_mem, it can be changed concurrently. So, we need to add READ_ONCE() to avoid a data-race. Scope: local bookworm: resolved (fixed in 5.18.14-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.14-1)
debian
CVE-2015-8324P4MEDIUMCVSS 4.6fixed in linux 2.6.37-1 (bookworm)2015
CVE-2015-8324 [MEDIUM] CVE-2015-8324: linux - The ext4 implementation in the Linux kernel before 2.6.34 does not properly trac... The ext4 implementation in the Linux kernel before 2.6.34 does not properly track the initialization of certain data structures, which allows physically proximate attackers to cause a denial of service (NULL pointer dereference and panic) via a crafted USB device, related to the ext4_fill_super function. Scope: local bookworm: resolved (fixed in 2.6.37-1) bullseye: re
debian
CVE-2022-49638P4MEDIUMCVSS 4.7fixed in linux 5.18.14-1 (bookworm)2022
CVE-2022-49638 [MEDIUM] CVE-2022-49638: linux - In the Linux kernel, the following vulnerability has been resolved: icmp: Fix d... In the Linux kernel, the following vulnerability has been resolved: icmp: Fix data-races around sysctl. While reading icmp sysctl variables, they can be changed concurrently. So, we need to add READ_ONCE() to avoid data-races. Scope: local bookworm: resolved (fixed in 5.18.14-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.14-1) sid: resol
debian
CVE-2022-49639P4MEDIUMCVSS 4.7fixed in linux 5.18.14-1 (bookworm)2022
CVE-2022-49639 [MEDIUM] CVE-2022-49639: linux - In the Linux kernel, the following vulnerability has been resolved: cipso: Fix ... In the Linux kernel, the following vulnerability has been resolved: cipso: Fix data-races around sysctl. While reading cipso sysctl variables, they can be changed concurrently. So, we need to add READ_ONCE() to avoid data-races. Scope: local bookworm: resolved (fixed in 5.18.14-1) bullseye: resolved (fixed in 5.10.136-1) forky: resolved (fixed in 5.18.14-1) sid: res
debian
CVE-2022-49632P4MEDIUMCVSS 4.7fixed in linux 5.18.14-1 (bookworm)2022
CVE-2022-49632 [MEDIUM] CVE-2022-49632: linux - In the Linux kernel, the following vulnerability has been resolved: icmp: Fix a... In the Linux kernel, the following vulnerability has been resolved: icmp: Fix a data-race around sysctl_icmp_errors_use_inbound_ifaddr. While reading sysctl_icmp_errors_use_inbound_ifaddr, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader. Scope: local bookworm: resolved (fixed in 5.18.14-1) bullseye: open forky: resolved (fixed in 5.18.
debian
CVE-2022-49630P4MEDIUMCVSS 4.7fixed in linux 5.18.14-1 (bookworm)2022
CVE-2022-49630 [MEDIUM] CVE-2022-49630: linux - In the Linux kernel, the following vulnerability has been resolved: tcp: Fix a ... In the Linux kernel, the following vulnerability has been resolved: tcp: Fix a data-race around sysctl_tcp_ecn_fallback. While reading sysctl_tcp_ecn_fallback, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader. Scope: local bookworm: resolved (fixed in 5.18.14-1) bullseye: open forky: resolved (fixed in 5.18.14-1) sid: resolved (fixed in
debian
Debian Linux vulnerabilities | cvebase