VendorsDebiandebian_linux11.0
Vulnerabilities

Debian Debian Linux 11.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2060CVEs
CVE-2024-49883
ext4: aovid use-after-free in ext4_ext_insert_extent()
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-49991
drm/amdkfd: amdkfd_free_gtt_mem clear the correct pointer
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2026-25506
MUNGE has a buffer overflow in message unpacking allows key leakage and credential forgery
Published 2026-02-10 · Modified
7.8EPSS 0.003
CVE-2023-3611
Out-of-bounds write in Linux kernel's net/sched: sch_qfq component
Published 2023-07-21 · Modified
7.8EPSS 0.003
CVE-2024-44974
mptcp: pm: avoid possible UaF when selecting endp
Published 2024-09-04 · Modified
7.8EPSS 0.003
CVE-2024-49966
ocfs2: cancel dqi_sync_work before freeing oinfo
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2022-42332
x86 shadow plus log-dirty mode use-after-free In environments where host assisted address translation is necessary but Hardware Assisted Paging (HAP) is unavailable, Xen will run guests in so called shadow mode. Shadow mode maintains a pool of memory used for both shadow page tables as well as auxiliary data structures. To migrate or snapshot guests, Xen additionally runs them in so called log-dirty mode. The data structures needed by the log-dirty tracking are part of aformentioned auxiliary data. In order to keep error handling efforts within reasonable bounds, for operations which may require memory allocations shadow mode logic ensures up front that enough memory is available for the worst case requirements. Unfortunately, while page table memory is properly accounted for on the code path requiring the potential establishing of new shadows, demands by the log-dirty infrastructure were not taken into consideration. As a result, just established shadow page tables could be freed again immediately, while other code is still accessing them on the assumption that they would remain allocated.
Published 2023-03-21 · Modified
7.8EPSS 0.003
CVE-2024-49884
ext4: fix slab-use-after-free in ext4_split_extent_at()
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-47698
drivers: media: dvb-frontends/rtl2832: fix an out-of-bounds write error
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-35867
smb: client: fix potential UAF in cifs_stats_proc_show()
Published 2024-05-19 · Modified
7.8EPSS 0.003
CVE-2021-28701
Another race in XENMAPSPACE_grant_table handling Guests are permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire lifetime. Grant table v2 status pages, however, are de-allocated when a guest switches (back) from v2 to v1. Freeing such pages requires that the hypervisor enforce that no parallel request can result in the addition of a mapping of such a page to a guest. That enforcement was missing, allowing guests to retain access to pages that were freed and perhaps re-used for other purposes. Unfortunately, when XSA-379 was being prepared, this similar issue was not noticed.
Published 2021-09-08 · Modified
7.8EPSS 0.003
CVE-2021-28697
grant table v2 status pages may remain accessible after de-allocation Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire lifetime. Grant table v2 status pages, however, get de-allocated when a guest switched (back) from v2 to v1. The freeing of such pages requires that the hypervisor know where in the guest these pages were mapped. The hypervisor tracks only one use within guest space, but racing requests from the guest to insert mappings of these pages may result in any of them to become mapped in multiple locations. Upon switching back from v2 to v1, the guest would then retain access to a page that was freed and perhaps re-used for other purposes.
Published 2021-08-27 · Modified
7.8EPSS 0.003
CVE-2023-52812
drm/amd: check num of link levels when update pcie param
Published 2024-05-21 · Analyzed
7.8EPSS 0.003
CVE-2025-38236
af_unix: Don't leave consecutive consumed OOB skbs.
Published 2025-07-08 · Modified
7.8EPSS 0.003
CVE-2024-46821
drm/amd/pm: Fix negative array index read
Published 2024-09-27 · Analyzed
7.8EPSS 0.003
CVE-2024-49989
drm/amd/display: fix double free issue during amdgpu module unload
Published 2024-10-21 · Analyzed
7.8EPSS 0.003
CVE-2025-37854
drm/amdkfd: Fix mode1 reset crash issue
Published 2025-05-09 · Modified
7.8EPSS 0.003
CVE-2024-46812
drm/amd/display: Skip inactive planes within ModeSupportAndSystemConfiguration
Published 2024-09-27 · Modified
7.8EPSS 0.003
CVE-2024-50055
driver core: bus: Fix double free in driver API bus_register()
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-43839
bna: adjust 'name' buf size of bna_tcb and bna_ccb structures
Published 2024-08-17 · Analyzed
7.8EPSS 0.003
CVE-2023-3610
Use-after-free in Linux kernel's netfilter: nf_tables component
Published 2023-07-21 · Modified
7.8EPSS 0.003
CVE-2024-47730
crypto: hisilicon/qm - inject error before stopping queue
Published 2024-10-21 · Modified
7.8EPSS 0.003
CVE-2024-44977
drm/amdgpu: Validate TA binary size
Published 2024-09-04 · Analyzed
7.8EPSS 0.003
CVE-2024-46849
ASoC: meson: axg-card: fix 'use-after-free'
Published 2024-09-27 · Analyzed
7.8EPSS 0.003
CVE-2024-50007
ALSA: asihpi: Fix potential OOB array access
Published 2024-10-21 · Analyzed
7.8EPSS 0.003
CVE-2025-38003
can: bcm: add missing rcu read protection for procfs content
Published 2025-06-08 · Modified
7.8EPSS 0.002
CVE-2024-49924
fbdev: pxafb: Fix possible use after free in pxafb_task()
Published 2024-10-21 · Modified
7.8EPSS 0.002
CVE-2024-49986
platform/x86: x86-android-tablets: Fix use after free on platform_device_register() errors
Published 2024-10-21 · Modified
7.8EPSS 0.002
CVE-2024-46746
HID: amd_sfh: free driver_data after destroying hid device
Published 2024-09-18 · Modified
7.8EPSS 0.002
CVE-2024-46830
KVM: x86: Acquire kvm->srcu when handling KVM_SET_VCPU_EVENTS
Published 2024-09-27 · Modified
7.8EPSS 0.002
CVE-2023-52752
smb: client: fix use-after-free bug in cifs_debug_data_proc_show()
Published 2024-05-21 · Analyzed
7.8EPSS 0.002
CVE-2024-46853
spi: nxp-fspi: fix the KASAN report out-of-bounds bug
Published 2024-09-27 · Analyzed
7.8EPSS 0.002
CVE-2024-35866
smb: client: fix potential UAF in cifs_dump_full_key()
Published 2024-05-19 · Analyzed
7.8EPSS 0.002
CVE-2025-37998
openvswitch: Fix unsafe attribute parsing in output_userspace()
Published 2025-05-29 · Modified
7.8EPSS 0.002
CVE-2024-41096
PCI/MSI: Fix UAF in msi_capability_init
Published 2024-07-29 · Modified
7.8EPSS 0.002
CVE-2023-52621
bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers
Published 2024-03-26 · Analyzed
7.8EPSS 0.002
CVE-2024-46725
drm/amdgpu: Fix out-of-bounds write warning
Published 2024-09-18 · Modified
7.8EPSS 0.002
CVE-2024-42160
f2fs: check validation of fault attrs in f2fs_build_fault_attr()
Published 2024-07-30 · Analyzed
7.8EPSS 0.002
CVE-2024-38588
ftrace: Fix possible use-after-free issue in ftrace_location()
Published 2024-06-19 · Analyzed
7.8EPSS 0.002
CVE-2025-37923
tracing: Fix oob write in trace_seq_to_buffer()
Published 2025-05-20 · Modified
7.8EPSS 0.002
← Prev19 / 52Next →