VendorsDebiandebian_linux11.0
Vulnerabilities

Debian Debian Linux 11.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2060CVEs
CVE-2023-0770
Stack-based Buffer Overflow in gpac/gpac
Published 2023-02-09 · Modified
7.8EPSS 0.004
CVE-2026-24765
PHPUnit Vulnerable to Unsafe Deserialization in PHPT Code Coverage Handling
Published 2026-01-27 · Analyzed
7.8EPSS 0.004
CVE-2025-38563
perf/core: Prevent VMA split of buffer mappings
Published 2025-08-19 · Analyzed
7.8EPSS 0.004
CVE-2026-4775
Libtiff: libtiff: arbitrary code execution or denial of service via signed integer overflow in tiff file processing
Published 2026-03-24 · Modified
7.8EPSS 0.004
CVE-2021-28709
issues with partially successful P2M updates on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] x86 HVM and PVH guests may be started in populate-on-demand (PoD) mode, to provide a way for them to later easily have more memory assigned. Guests are permitted to control certain P2M aspects of individual pages via hypercalls. These hypercalls may act on ranges of pages specified via page orders (resulting in a power-of-2 number of pages). In some cases the hypervisor carries out the requests by splitting them into smaller chunks. Error handling in certain PoD cases has been insufficient in that in particular partial success of some operations was not properly accounted for. There are two code paths affected - page removal (CVE-2021-28705) and insertion of new pages (CVE-2021-28709). (We provide one patch which combines the fix to both issues.)
Published 2021-11-24 · Modified
7.8EPSS 0.004
CVE-2021-28705
issues with partially successful P2M updates on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] x86 HVM and PVH guests may be started in populate-on-demand (PoD) mode, to provide a way for them to later easily have more memory assigned. Guests are permitted to control certain P2M aspects of individual pages via hypercalls. These hypercalls may act on ranges of pages specified via page orders (resulting in a power-of-2 number of pages). In some cases the hypervisor carries out the requests by splitting them into smaller chunks. Error handling in certain PoD cases has been insufficient in that in particular partial success of some operations was not properly accounted for. There are two code paths affected - page removal (CVE-2021-28705) and insertion of new pages (CVE-2021-28709). (We provide one patch which combines the fix to both issues.)
Published 2021-11-24 · Modified
7.8EPSS 0.004
CVE-2022-28390
ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c in the Linux kernel through 5.17.1 has a double free.
Published 2022-04-03 · Analyzed
7.8EPSS 0.004
CVE-2020-35511
A global buffer overflow was discovered in pngcheck function in pngcheck-2.4.0(5 patches applied) via a crafted png file.
Published 2022-08-23 · Modified
7.8EPSS 0.004
CVE-2022-26358
IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reporting, "RMRR") for Intel VT-d or Unity Mapping ranges for AMD-Vi. These are typically used for platform tasks such as legacy USB emulation. Since the precise purpose of these regions is unknown, once a device associated with such a region is active, the mappings of these regions need to remain continuouly accessible by the device. This requirement has been violated. Subsequent DMA or interrupts from the device may have unpredictable behaviour, ranging from IOMMU faults to memory corruption.
Published 2022-04-05 · Modified
7.8EPSS 0.004
CVE-2022-26359
IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reporting, "RMRR") for Intel VT-d or Unity Mapping ranges for AMD-Vi. These are typically used for platform tasks such as legacy USB emulation. Since the precise purpose of these regions is unknown, once a device associated with such a region is active, the mappings of these regions need to remain continuouly accessible by the device. This requirement has been violated. Subsequent DMA or interrupts from the device may have unpredictable behaviour, ranging from IOMMU faults to memory corruption.
Published 2022-04-05 · Modified
7.8EPSS 0.004
CVE-2022-33743
network backend may cause Linux netfront to use freed SKBs While adding logic to support XDP (eXpress Data Path), a code label was moved in a way allowing for SKBs having references (pointers) retained for further processing to nevertheless be freed.
Published 2022-07-05 · Modified
7.8EPSS 0.004
CVE-2022-3636
Linux Kernel Ethernet mtk_ppe.c __mtk_ppe_check_skb use after free
Published 2022-10-21 · Modified
7.8EPSS 0.004
CVE-2022-23033
arm: guest_physmap_remove_page not removing the p2m mappings The functions to remove one or more entries from a guest p2m pagetable on Arm (p2m_remove_mapping, guest_physmap_remove_page, and p2m_set_entry with mfn set to INVALID_MFN) do not actually clear the pagetable entry if the entry doesn't have the valid bit set. It is possible to have a valid pagetable entry without the valid bit set when a guest operating system uses set/way cache maintenance instructions. For instance, a guest issuing a set/way cache maintenance instruction, then calling the XENMEM_decrease_reservation hypercall to give back memory pages to Xen, might be able to retain access to those pages even after Xen started reusing them for other purposes.
Published 2022-01-25 · Modified
7.8EPSS 0.003
CVE-2022-0516
A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linux kernel. This flaw allows a local attacker with a normal user privilege to obtain unauthorized memory write access. This flaw affects Linux kernel versions prior to 5.17-rc4.
Published 2022-03-08 · Modified
7.8EPSS 0.003
CVE-2024-49894
drm/amd/display: Fix index out of bounds in degamma hardware format translation
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2025-37839
jbd2: remove wrong sb->s_sequence check
Published 2025-05-09 · Analyzed
7.8EPSS 0.003
CVE-2025-37756
net: tls: explicitly disallow disconnect
Published 2025-05-01 · Modified
7.8EPSS 0.003
CVE-2025-37840
mtd: rawnand: brcmnand: fix PM resume warning
Published 2025-05-09 · Analyzed
7.8EPSS 0.003
CVE-2024-49882
ext4: fix double brelse() the buffer of the extents path
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2021-38166
In kernel/bpf/hashtab.c in the Linux kernel through 5.13.8, there is an integer overflow and out-of-bounds write when many elements are placed in a single bucket. NOTE: exploitation might be impractical without the CAP_SYS_ADMIN capability.
Published 2021-08-07 · Analyzed
7.8EPSS 0.003
CVE-2022-2735
A vulnerability was found in the PCS project. This issue occurs due to incorrect permissions on a Unix socket used for internal communication between PCS daemons. A privilege escalation could happen by obtaining an authentication token for a hacluster user. With the "hacluster" token, this flaw allows an attacker to have complete control over the cluster managed by PCS.
Published 2022-09-06 · Modified
7.8EPSS 0.003
CVE-2021-4037
Kernel: security regression for cve-2018-13405
Published 2022-08-24 · Modified
7.8EPSS 0.003
CVE-2022-49063
ice: arfs: fix use-after-free when freeing @rx_cpu_rmap
Published 2025-02-26 · Analyzed
7.8EPSS 0.003
CVE-2023-52927
netfilter: allow exp not to be removed in nf_ct_find_expectation
Published 2025-03-14 · Modified
7.8EPSS 0.003
CVE-2024-39494
ima: Fix use-after-free on a dentry's dname.name
Published 2024-07-12 · Modified
7.8EPSS 0.003
CVE-2025-39866
fs: writeback: fix use-after-free in __mark_inode_dirty()
Published 2025-09-19 · Modified
7.8EPSS 0.003
CVE-2024-41000
block/ioctl: prefer different overflow check
Published 2024-07-12 · Modified
7.8EPSS 0.003
CVE-2025-1080
Macro URL arbitrary script execution
Published 2025-03-04 · Analyzed
7.8EPSS 0.003
CVE-2022-3176
Use-after-free in io_uring in Linux Kernel
Published 2022-09-16 · Modified
7.8EPSS 0.003
CVE-2024-40635
containerd has an integer overflow in User ID handling
Published 2025-03-17 · Analyzed
7.8EPSS 0.003
CVE-2025-37752
net_sched: sch_sfq: move the limit validation
Published 2025-05-01 · Modified
7.8EPSS 0.003
CVE-2024-47742
firmware_loader: Block path traversal
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-49960
ext4: fix timer use-after-free on failed mount
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-39496
btrfs: zoned: fix use-after-free due to race with dev replace
Published 2024-07-12 · Modified
7.8EPSS 0.003
CVE-2023-2007
The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.
Published 2023-04-24 · Modified
7.8EPSS 0.003
CVE-2024-47745
mm: call the security_mmap_file() LSM hook in remap_file_pages()
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2025-37927
iommu/amd: Fix potential buffer overflow in parse_ivrs_acpihid
Published 2025-05-20 · Analyzed
7.8EPSS 0.003
CVE-2024-47697
drivers: media: dvb-frontends/rtl2830: fix an out-of-bounds write error
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-49883
ext4: aovid use-after-free in ext4_ext_insert_extent()
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-26928
smb: client: fix potential UAF in cifs_debug_files_proc_show()
Published 2024-04-28 · Analyzed
7.8EPSS 0.003
← Prev18 / 52Next →