Debian Security Vulnerabilities (CVEs)

Track 1,405 security vulnerabilities affecting Debian products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

182 Critical
923 High
300 Medium
🔔 Get Alerts for Debian
CVE-2024-35849 7.1

This vulnerability in the Linux kernel's btrfs filesystem allows uninitialized kernel memory to be leaked to user-space via the btrfs_ioctl_logical_to...

May 17, 2024
CVE-2023-52690 5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's powerpc/powernv subsystem. If kasprintf() fails to allocate memory a...

May 17, 2024
CVE-2023-52693 5.5

This CVE describes a Linux kernel vulnerability where the ACPI video driver fails to properly handle errors when searching for a backlight device's pa...

May 17, 2024
CVE-2023-52696 7.5

This CVE is a NULL pointer dereference vulnerability in the Linux kernel's powerpc/powernv subsystem. The opal_powercap_init() function fails to check...

May 17, 2024
CVE-2023-52679 7.8

A double-free vulnerability in the Linux kernel's device tree parsing code allows memory corruption when processing malformed device tree data. This a...

May 17, 2024
CVE-2023-52686 5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's powerpc/powernv subsystem. The opal_event_init() function fails to c...

May 17, 2024
CVE-2024-35837 5.5

This CVE describes a vulnerability in the Linux kernel's Marvell PP2 network driver where buffer manager pool registers retain values after kexec rebo...

May 17, 2024
CVE-2024-35829 5.5

This CVE describes a memory leak vulnerability in the Linux kernel's Lima graphics driver. When lima_vm_map_bo fails during memory allocation, resourc...

May 17, 2024
CVE-2024-35833 5.5

A memory leak vulnerability in the Linux kernel's fsl-qdma DMA engine driver allows attackers to cause resource exhaustion by repeatedly triggering th...

May 17, 2024
CVE-2024-35825 5.5

A vulnerability in the Linux kernel's USB gadget NCM driver allows infinite processing of zero-length packets, leading to system crashes. This affects...

May 17, 2024
CVE-2024-35821 5.5

This Linux kernel vulnerability in the UBIFS filesystem allows concurrent readers to see stale data when reading from page cache. It affects systems u...

May 17, 2024
CVE-2024-35823 5.3

This CVE describes a buffer corruption vulnerability in the Linux kernel's virtual terminal (vt) subsystem when deleting Unicode characters. The issue...

May 17, 2024
CVE-2024-35813 5.5

This CVE addresses an out-of-bounds array access vulnerability in the Linux kernel's MMC (MultiMediaCard) subsystem. The flaw occurs when accessing an...

May 17, 2024
CVE-2024-35807 5.5

A corruption vulnerability in the Linux kernel's ext4 filesystem occurs during online resize operations on filesystems larger than 16 TiB with 4k bloc...

May 17, 2024
CVE-2024-35809 4.7

A race condition in the Linux kernel's PCI power management subsystem allows a kernel crash due to an unhandled page fault when removing certain PCI d...

May 17, 2024
CVE-2024-35805 5.5

This CVE describes a denial-of-service vulnerability in the Linux kernel's device mapper snapshot subsystem. When destroying a snapshot with many exce...

May 17, 2024
CVE-2023-52669 7.8

This CVE describes a buffer overread vulnerability in the Linux kernel's s390 AES CTR mode implementation. When processing the final block of data, th...

May 17, 2024
CVE-2024-35785 7.1

A kernel panic vulnerability in the Linux kernel's TEE (Trusted Execution Environment) OP-TEE driver allows local attackers to crash the system by tri...

May 17, 2024
CVE-2024-35789 7.8

This CVE describes a use-after-free vulnerability in the Linux kernel's WiFi subsystem (mac80211). When a station is moved out of a VLAN and the VLAN ...

May 17, 2024
CVE-2024-35791 7.8

This is a use-after-free vulnerability in the Linux kernel's KVM SVM (Secure Virtual Machine) subsystem. It allows a malicious user with access to a K...

May 17, 2024
CVE-2024-27431 5.5

This CVE describes an information disclosure vulnerability in the Linux kernel's cpumap XDP (eXpress Data Path) subsystem. When XDP programs run on cp...

May 17, 2024
CVE-2024-27417 5.5

This CVE describes a memory leak vulnerability in the Linux kernel's IPv6 implementation. When userspace provides specific network namespace attribute...

May 17, 2024
CVE-2024-27419 4.7

This CVE describes a race condition vulnerability in the Linux kernel's NET/ROM protocol implementation where concurrent access to the sysctl_net_busy...

May 17, 2024
CVE-2024-27413 5.5

A memory allocation vulnerability in the Linux kernel's EFI capsule loader where insufficient memory is allocated for a 64-bit physical address on 32-...

May 17, 2024
CVE-2024-27405 7.5

A vulnerability in the Linux kernel's USB gadget NCM driver causes properly parsed network datagrams to be dropped when Windows 11 sends extra padding...

May 17, 2024
CVE-2024-3044 6.5

This vulnerability in LibreOffice allows attackers to embed malicious scripts in documents that execute automatically when users click on graphics, by...

May 14, 2024
CVE-2024-32465 7.3

This CVE describes a vulnerability in Git that allows attackers to bypass security protections when cloning repositories from untrusted sources. Speci...

May 14, 2024
CVE-2024-4768 6.1

This vulnerability in Firefox, Firefox ESR, and Thunderbird allows attackers to trick users into granting WebAuthn permissions via manipulated popup n...

May 14, 2024
CVE-2024-27401 7.1

A vulnerability in the Linux kernel's firewire nosy driver could allow local attackers to cause buffer overflows by providing insufficient buffer size...

May 14, 2024
CVE-2024-27398 7.8

This is a use-after-free vulnerability in the Linux kernel's Bluetooth subsystem where a scheduled timeout worker thread can access a socket object af...

May 14, 2024
CVE-2024-27396 7.8

This CVE describes a use-after-free vulnerability in the Linux kernel's GTP (GPRS Tunneling Protocol) implementation. Attackers could potentially expl...

May 14, 2024
CVE-2023-52656 5.5

This CVE addresses dead code removal in the Linux kernel's io_uring subsystem related to SCM_RIGHTS file descriptor passing. The vulnerability itself ...

May 14, 2024
CVE-2024-33599 8.1

A stack-based buffer overflow vulnerability in nscd (Name Service Cache Daemon) allows attackers to execute arbitrary code or crash the service when n...

May 6, 2024
CVE-2024-33601 7.3

A memory allocation failure in nscd's netgroup cache can cause the daemon to terminate, resulting in denial of service for clients relying on name ser...

May 6, 2024
CVE-2024-34069 7.5

This vulnerability in Werkzeug's debugger allows attackers to execute arbitrary code on a developer's machine if they can trick the developer into int...

May 6, 2024
CVE-2024-34509 5.3

CVE-2024-34509 is a segmentation fault vulnerability in dcmdata component of DCMTK medical imaging toolkit. It allows denial of service attacks via sp...

May 5, 2024
CVE-2024-27074 5.5

This CVE describes a memory leak vulnerability in the Linux kernel's go7007 media driver. When the go7007_load_encoder function is called, it allocate...

May 1, 2024
CVE-2024-27075 7.8

This CVE addresses a stack overflow vulnerability in the Linux kernel's DVB frontend driver for STV0367 chips. The vulnerability occurs when clang com...

May 1, 2024
CVE-2024-27077 5.5

This CVE describes a memory leak vulnerability in the Linux kernel's V4L2 video framework. When the v4l2_m2m_register_entity function fails during dev...

May 1, 2024
CVE-2024-27388 5.5

This CVE describes a memory leak vulnerability in the Linux kernel's SUNRPC subsystem within the gssx_dec_option_array function. When triggered, it ca...

May 1, 2024
CVE-2024-27052 7.4

This CVE describes a use-after-free vulnerability in the Linux kernel's rtl8xxxu WiFi driver. When the driver is stopped, a workqueue might still be r...

May 1, 2024
CVE-2024-27053 9.1

This CVE describes a race condition vulnerability in the Linux kernel's wilc1000 WiFi driver where improper RCU (Read-Copy-Update) usage during WiFi c...

May 1, 2024
CVE-2024-27065 7.8

A vulnerability in the Linux kernel's netfilter nf_tables subsystem allows improper handling of table flag comparisons during updates. This could lead...

May 1, 2024
CVE-2024-27028 6.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's SPI-MT65xx driver interrupt handler. When the TX buffer in a spi_tra...

May 1, 2024
CVE-2024-27038 5.5

A NULL pointer dereference vulnerability in the Linux kernel's clock framework allows local attackers to cause a kernel panic (denial of service). Thi...

May 1, 2024
CVE-2024-27044 5.5

This CVE describes a NULL pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

May 1, 2024
CVE-2024-27024 7.8

This vulnerability in the Linux kernel's RDS (Reliable Datastream Sockets) subsystem occurs when get_mr() is called before a connection is established...

May 1, 2024
CVE-2024-27008 7.8

This vulnerability is an out-of-bounds memory access flaw in the Linux kernel's NVIDIA DRM driver (nv04). It allows attackers to potentially crash the...

May 1, 2024
CVE-2024-27000 7.8

A race condition vulnerability in the Linux kernel's mxs-auart serial driver allows local attackers to cause a kernel panic (denial of service) by tri...

May 1, 2024
CVE-2024-27004 5.5

This CVE describes a deadlock vulnerability in the Linux kernel's clock framework where the clk_disable_unused function could cause a system hang. The...

May 1, 2024

Why Monitor Debian Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 1,405+ known vulnerabilities affecting Debian products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Debian packages in under 60 seconds. No agents required - completely agentless scanning that works across Debian deployments.

Free vulnerability database: Access detailed information about every Debian CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Debian CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Debian CVEs Free