Debian Security Vulnerabilities (CVEs)

Track 1,405 security vulnerabilities affecting Debian products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

182 Critical
923 High
300 Medium
🔔 Get Alerts for Debian
CVE-2025-37917 5.5

A race condition vulnerability in the MediaTek Star EMAC network driver for Linux kernels allows spinlock recursion when DMA interrupts are re-enabled...

May 20, 2025
CVE-2025-37921 7.8

This CVE describes a race condition vulnerability in the Linux kernel's VXLAN implementation where deletion of default FDB entries occurs without prop...

May 20, 2025
CVE-2025-37923 7.8

This CVE describes an out-of-bounds write vulnerability in the Linux kernel's tracing subsystem. The trace_seq_to_buffer() function can copy more data...

May 20, 2025
CVE-2025-37912 5.5

A null pointer dereference vulnerability exists in the Linux kernel's Intel Ethernet Connection (ice) driver. This allows a local attacker with VF (Vi...

May 20, 2025
CVE-2025-37913 7.8

A double-free vulnerability in the Linux kernel's qfq scheduler occurs when netem is used as a child qdisc, causing reentrant enqueue operations. This...

May 20, 2025
CVE-2025-37901 5.5

A missing check in the Linux kernel's Qualcomm MPM driver causes kernel crashes when handling interrupts for non-wakeup GPIO pins. This affects Linux ...

May 20, 2025
CVE-2025-37903 7.8

A use-after-free vulnerability in the Linux kernel's AMD GPU display driver allows attackers to cause memory corruption when USB-C docks are unplugged...

May 20, 2025
CVE-2025-37905 5.5

This CVE describes a memory leak vulnerability in the Linux kernel's ARM SCMI firmware subsystem. When SCMI protocol devices are destroyed, an unbalan...

May 20, 2025
CVE-2025-37892 7.8

This CVE describes a missing error check in the Linux kernel's INFTL (Inverse NAND Flash Translation Layer) subsystem. If the inftl_read_oob() functio...

May 20, 2025
CVE-2025-37851 5.5

A buffer overflow vulnerability exists in the Linux kernel's OMAPFB display driver when processing certain 'plane' parameter values. This could allow ...

May 9, 2025
CVE-2025-37854 7.8

A use-after-free vulnerability in the Linux kernel's AMDKFD driver allows local attackers to cause denial of service or potentially execute arbitrary ...

May 9, 2025
CVE-2025-37858 5.5

A Linux kernel JFS filesystem integer overflow vulnerability occurs when calculating allocation group sizes on 32-bit systems with large (>2TB) aggreg...

May 9, 2025
CVE-2025-37849 7.8

This CVE describes a use-after-free vulnerability in the Linux kernel's KVM (Kernel-based Virtual Machine) subsystem for ARM64 architecture. When vCPU...

May 9, 2025
CVE-2025-37836 5.5

This CVE describes a memory leak vulnerability in the Linux kernel's PCI subsystem. If device_register() fails during pci_register_host_bridge(), the ...

May 9, 2025
CVE-2025-37839 7.8

This Linux kernel vulnerability involves an incorrect WARN_ON check in the jbd2 journaling subsystem that could trigger false warnings or potentially ...

May 9, 2025
CVE-2025-37841 5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's cpupower benchmarking tool. If memory allocation fails, the system c...

May 9, 2025
CVE-2025-37829 5.5

A NULL pointer dereference vulnerability in the Linux kernel's SCPI cpufreq driver allows local attackers to crash the system by triggering a kernel p...

May 8, 2025
CVE-2025-37819 7.8

A use-after-free vulnerability in the Linux kernel's GIC-V2M interrupt controller allows attackers to cause kernel panics or potentially execute arbit...

May 8, 2025
CVE-2025-37823 7.8

This CVE describes a use-after-free vulnerability in the Linux kernel's HFSC (Hierarchical Fair Service Curve) network scheduler. An attacker could po...

May 8, 2025
CVE-2025-37810 7.8

This CVE describes an out-of-bounds memory access vulnerability in the Linux kernel's DWC3 USB gadget driver. An attacker could trigger a kernel crash...

May 8, 2025
CVE-2025-37812 5.5

A race condition in the Linux kernel's cdns3 USB driver causes a deadlock when using NCM gadget functionality under PREEMPT_RT configuration. This vul...

May 8, 2025
CVE-2025-37817 7.8

This CVE describes a double-free vulnerability in the Linux kernel's MCB (Memory Controller Bridge) subsystem. When mcb_device_register() fails in cha...

May 8, 2025
CVE-2024-47619 7.5

This vulnerability in syslog-ng's TLS certificate validation allows improper wildcard matching patterns like 'foo.*.bar' and 'foo.a*c.bar' that should...

May 7, 2025
CVE-2022-21546 7.8

A NULL pointer dereference vulnerability in the Linux kernel's SCSI target subsystem allows attackers to crash the kernel by sending specially crafted...

May 2, 2025
CVE-2025-37797 7.8

This CVE describes a Use-After-Free vulnerability in the Linux kernel's HFSC (Hierarchical Fair Service Curve) queuing discipline scheduler. The vulne...

May 2, 2025
CVE-2025-37788 5.5

A memory leak vulnerability exists in the Linux kernel's cxgb4 driver when initializing ethtool filters. If memory allocation fails for the bmap struc...

May 1, 2025
CVE-2025-37789 7.8

This vulnerability in the Linux kernel's Open vSwitch module allows attackers to trigger a kernel panic or potentially execute arbitrary code by sendi...

May 1, 2025
CVE-2025-37780 7.1

A memory corruption vulnerability in the Linux kernel's ISO filesystem (isofs) export functionality allows out-of-bounds read access when processing f...

May 1, 2025
CVE-2025-37769 5.5

A division by zero vulnerability in the AMD GPU power management driver (drm/amd/pm/smu11) in the Linux kernel allows local attackers to cause a kerne...

May 1, 2025
CVE-2025-37771 5.5

A division by zero vulnerability exists in the AMD GPU power management driver (drm/amd/pm) in the Linux kernel. This occurs when users set speed valu...

May 1, 2025
CVE-2025-37773 5.5

A NULL pointer dereference vulnerability in the Linux kernel's virtiofs filesystem driver could cause kernel panics when source name is NULL during fu...

May 1, 2025
CVE-2025-37765 5.5

A use-after-free vulnerability in the Linux kernel's Nouveau DRM driver allows local attackers to cause a kernel panic (denial of service) by triggeri...

May 1, 2025
CVE-2025-37767 5.5

A division by zero vulnerability exists in the AMD GPU power management driver (drm/amd/pm) in the Linux kernel. Attackers can trigger a kernel panic ...

May 1, 2025
CVE-2025-37756 5.5

A vulnerability in the Linux kernel's TLS implementation allows attackers to trigger a kernel warning or potential crash by disconnecting a TLS socket...

May 1, 2025
CVE-2025-37758 5.5

A NULL pointer dereference vulnerability in the Linux kernel's PATA PXA driver could cause kernel crashes or denial of service. This affects systems u...

May 1, 2025
CVE-2025-37748 5.5

This vulnerability is a NULL pointer dereference in the MediaTek IOMMU driver of the Linux kernel, occurring during device initialization. It allows l...

May 1, 2025
CVE-2025-37749 7.1

This CVE describes an out-of-bounds read vulnerability in the Linux kernel's PPP (Point-to-Point Protocol) implementation. When processing short or em...

May 1, 2025
CVE-2025-37752 7.8

This CVE-2025-37752 is a Linux kernel vulnerability in the Stochastic Fairness Queueing (SFQ) network scheduler that allows array index out-of-bounds ...

May 1, 2025
CVE-2025-37738 7.8

A use-after-free vulnerability in the Linux kernel's ext4 filesystem allows attackers to cause memory corruption when processing extended attributes. ...

May 1, 2025
CVE-2025-37740 5.5

A divide-by-zero vulnerability in the Linux kernel's JFS filesystem can cause kernel panic when mounting filesystems with malformed allocation group m...

May 1, 2025
CVE-2025-37742 5.5

This CVE describes an uninitialized memory access vulnerability in the JFS filesystem implementation in the Linux kernel. When mounting a JFS filesyst...

May 1, 2025
CVE-2025-23156 7.1

This vulnerability in the Linux kernel's Venus media driver allows out-of-bounds memory access when parsing HFI packets. Attackers could potentially r...

May 1, 2025
CVE-2025-23158 7.8

A Linux kernel vulnerability in the Venus media driver allows out-of-bounds write due to improper validation of queue size values from firmware. This ...

May 1, 2025
CVE-2025-23160 5.5

A resource leak vulnerability in the MediaTek video codec driver for Linux kernel allows attackers to cause memory exhaustion on affected systems. Thi...

May 1, 2025
CVE-2025-23142 7.8

A use-after-free vulnerability in the Linux kernel's SCTP implementation allows a race condition where a transport structure can be accessed after bei...

May 1, 2025
CVE-2025-23144 5.5

This CVE describes a race condition vulnerability in the Linux kernel's LED backlight subsystem where the led_access lock is not properly held when ca...

May 1, 2025
CVE-2025-23146 5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's ENE-KB3930 MFD driver. If exploited, it could cause a kernel panic o...

May 1, 2025
CVE-2025-23148 5.5

A NULL pointer dereference vulnerability in the Linux kernel's Exynos ChipID driver could cause kernel panic or system crash when accessing uninitiali...

May 1, 2025
CVE-2025-23150 5.5

A Linux kernel vulnerability in the ext4 filesystem's do_split function allows an off-by-one error that can lead to out-of-bounds memory access and us...

May 1, 2025
CVE-2025-23140 5.5

This CVE describes a resource leak vulnerability in the Linux kernel's PCI endpoint test driver. When request_irq() fails during IRQ allocation, the c...

May 1, 2025

Why Monitor Debian Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 1,405+ known vulnerabilities affecting Debian products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Debian packages in under 60 seconds. No agents required - completely agentless scanning that works across Debian deployments.

Free vulnerability database: Access detailed information about every Debian CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Debian CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Debian CVEs Free