Debian Security Vulnerabilities (CVEs)
Track 1,353 security vulnerabilities affecting Debian products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.
A Linux kernel TLS vulnerability where zero-length records on the rx_list can cause improper handling during decryption, potentially leading to memory...
Sep 5, 2025A race condition vulnerability in the Linux kernel's PPP implementation could allow local attackers to cause a kernel panic (system crash) or potentia...
Sep 5, 2025A null pointer dereference vulnerability in the Linux kernel's AMD display driver could cause kernel crashes or denial of service. This affects system...
Sep 5, 2025This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's qla4xxx SCSI driver. The vulnerability occurs when error pointers ar...
Sep 5, 2025A memory leak vulnerability in the Linux kernel's netfilter subsystem where loopback packets cause reference count leaks when rejected. This affects L...
Sep 5, 2025A Linux kernel vulnerability in the ASIX USB network driver allows invalid PHY addresses to be used during MDIO bus initialization, potentially causin...
Sep 5, 2025A use-after-free vulnerability in the Linux kernel's NFS server (nfsd) allows attackers to potentially crash the kernel or execute arbitrary code. Thi...
Sep 4, 2025A race condition in the Linux kernel's netlink subsystem can cause infinite retry loops when sending unicast messages, leading to CPU stalls and poten...
Sep 4, 2025A slab out-of-bounds read vulnerability in the Linux kernel's SMB3 implementation allows attackers to read kernel memory during mount operations to ks...
Sep 4, 2025A memory corruption vulnerability in the Linux kernel's SCTP (Stream Control Transmission Protocol) implementation allows uninitialized memory access ...
Sep 4, 2025A reference count leak in the Linux kernel's netfilter ctnetlink component prevents proper cleanup of connection tracking objects. This can cause kern...
Sep 4, 2025A deadlock vulnerability exists in the Linux kernel's SMB server implementation when handling file linking operations with ReplaceIfExists flag. This ...
Sep 4, 2025A vulnerability in the Linux kernel's HFS+ filesystem driver where erroneous volume header values cause the system to incorrectly assume the attribute...
Sep 4, 2025This is a memory corruption vulnerability in the Linux kernel's HFS+ filesystem driver. A slab-out-of-bounds read in the hfsplus_uni2asc() function ca...
Sep 4, 2025A slab-out-of-bounds memory access vulnerability in the Linux kernel's HFS filesystem implementation allows attackers to read or write beyond allocate...
Sep 4, 2025A NULL pointer dereference vulnerability in the Linux kernel's ASoC (Audio System on Chip) subsystem could cause kernel crashes when removing PCM runt...
Sep 4, 2025A vulnerability in the Linux kernel's NTFS3 filesystem driver allows local attackers to cause a kernel panic or potentially execute arbitrary code by ...
Sep 4, 2025This CVE describes an out-of-bounds read vulnerability in the JFS filesystem implementation in the Linux kernel. An attacker could exploit filesystem ...
Sep 4, 2025A double-free vulnerability in the Linux kernel's bfa SCSI driver allows attackers to potentially crash the kernel or execute arbitrary code with kern...
Sep 4, 2025A Linux kernel vulnerability in the ext4 filesystem where a maliciously crafted filesystem image triggers a kernel panic (BUG_ON) when an inode has th...
Sep 4, 2025A buffer overflow vulnerability exists in the Linux kernel's framebuffer device driver (fbdev) in the do_register_framebuffer() function. This allows ...
Sep 4, 2025This CVE describes a use-after-free vulnerability in the Linux kernel's pNFS block/scsi layout code where uninitialized pointers in the 'layoutupdate_...
Sep 4, 2025This CVE describes a null pointer dereference vulnerability in the Linux kernel's w7090p DVB frontend driver. Attackers with local access can trigger ...
Sep 4, 2025A null pointer dereference vulnerability in the Linux kernel's DVB frontend driver allows local attackers to crash the system or potentially execute a...
Sep 4, 2025A null pointer dereference vulnerability in the Linux kernel's lpfc SCSI driver could cause kernel panic or system crash when specific error condition...
Sep 4, 2025A NULL pointer dereference vulnerability in the Linux kernel's Enhanced Transmission Selection (ETS) queuing discipline allows local attackers to caus...
Sep 4, 2025This vulnerability in the Linux kernel's fbdev subsystem allows a local user to trigger an out-of-bounds write in the fast_imageblit function when per...
Sep 4, 2025A race condition vulnerability in the Linux kernel's comedi subsystem allows use-after-free when polling operations overlap with device detachment. Th...
Sep 4, 2025A Linux kernel vulnerability in the Venus media driver allows out-of-bounds memory reads when processing firmware messages. This could lead to kernel ...
Sep 4, 2025A race condition in the Linux kernel's page table dump functionality could allow concurrent memory hot removal operations to cause the kernel to acces...
Sep 4, 2025This CVE-2025-38677 is an out-of-bounds memory access vulnerability in the Linux kernel's F2FS filesystem driver. It allows attackers with access to a...
Aug 30, 2025This CVE addresses a use-after-free vulnerability in the Linux kernel's TLS implementation that could allow local attackers to escalate privileges or ...
Aug 28, 2025This CVE describes a stack buffer overflow vulnerability in the AMD IOMMU driver of the Linux kernel. An attacker with control over the kernel command...
Aug 26, 2025A race condition in the Linux kernel's Appletalk AARP proxy-probe routine allows a use-after-free vulnerability when an expire timer thread frees memo...
Aug 22, 2025A NULL pointer dereference vulnerability in the Linux kernel's regulator subsystem can cause kernel panics when accessing regulator coupling data afte...
Aug 22, 2025This Linux kernel vulnerability allows interrupt handlers to corrupt stack pointers during context switching, potentially leading to kernel panics and...
Aug 22, 2025This CVE describes a null pointer dereference vulnerability in the Linux kernel's ice driver, which handles Intel Ethernet Connection network adapters...
Aug 22, 2025A NULL pointer dereference vulnerability in the Linux kernel's CAN (Controller Area Network) subsystem allows local attackers to crash the kernel when...
Aug 22, 2025A buffer overflow vulnerability in the Linux kernel's F2FS filesystem driver allows out-of-bounds memory access when mounting devices with paths exact...
Aug 22, 2025A race condition vulnerability in the Linux kernel's HFS+ filesystem implementation where concurrent file operations can trigger a false warning about...
Aug 22, 2025This CVE describes a vulnerability in the Linux kernel's WiFi subsystem where TDLS (Tunneled Direct Link Setup) operations could be triggered before a...
Aug 22, 2025A NULL pointer dereference vulnerability in the Linux kernel's mlx5 network driver could cause kernel crashes when device memory allocation fails. Thi...
Aug 22, 2025A NULL pointer dereference vulnerability exists in the Linux kernel's davinci_lpsc_clk_register() function when devm_kasprintf() fails to allocate mem...
Aug 22, 2025This CVE describes a kernel memory corruption vulnerability in the Linux netfilter subsystem's xt_nfacct module. The vulnerability occurs when the mod...
Aug 22, 2025This vulnerability in the Linux kernel's imxfb framebuffer driver could allow a local attacker to cause a kernel null pointer dereference, leading to ...
Aug 22, 2025A kernel panic vulnerability in the Linux kernel's UDP processing allows remote attackers to crash affected systems by sending specially crafted UDP p...
Aug 22, 2025A vulnerability in the Linux kernel's PowerNV PCI hotplug subsystem could cause system instability when PCI devices are unexpectedly removed. This aff...
Aug 22, 2025A resource leak vulnerability in the Linux kernel's pnv_php driver causes kernel panic when unplugging PCIe bridge configurations. This affects Linux ...
Aug 22, 2025A use-after-free vulnerability in the Linux kernel's vsock (virtual socket) subsystem allows local attackers to potentially escalate privileges or cra...
Aug 22, 2025This CVE addresses a semi-unbounded recursion vulnerability in the Linux kernel's eventpoll (epoll) subsystem. Attackers could potentially cause kerne...
Aug 19, 2025Why Monitor Debian Security Vulnerabilities?
Real-time CVE tracking: Our automated system monitors 1,353+ known vulnerabilities affecting Debian products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.
Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Debian packages in under 60 seconds. No agents required - completely agentless scanning that works across Debian deployments.
Free vulnerability database: Access detailed information about every Debian CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.
🚀 Get Started in 60 Seconds
- Register free account & add your servers
- Run one-time scan or schedule automatic monitoring (every 1-24 hours)
- Receive instant alerts when new Debian CVEs affect your systems
- Access dashboard with severity breakdown & fix instructions