- linux-6.1.124-1 (debian12)
- 6.1.153-1
- 2025-10-16 12:33:26
- 2025-10-22 09:01:15
- K20251016_41
- CVE-2024-36899
- Description:
gpiolib: cdev: Fix use after free in lineinfo_changed_notify
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-36899
- Patch: debian12/6.1.128-1/CVE-2024-36899-gpiolib-cdev-fix-use-after-free-in-lineinfo-changed-notify.patch
- From: 6.1.128-1
- CVE-2024-57910
- Description:
iio: light: vcnl4035: fix information leak in triggered buffer
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-57910
- Patch: debian12/6.1.128-1/CVE-2024-57910-iio-light-vcnl4035-fix-information-leak-in-triggered-buffer.patch
- From: 6.1.128-1
- CVE-2024-57911
- Description:
iio: dummy: iio_simply_dummy_buffer: fix information leak in triggered buffer
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-57911
- Patch: debian12/6.1.128-1/CVE-2024-57911-iio-dummy-iio-simply-dummy-buffer-fix-information-leak-in-triggered-buffer.patch
- From: 6.1.128-1
- CVE-2024-56664
- Description:
bpf, sockmap: Fix race between element replace and close()
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-56664
- Patch: debian12/6.1.128-1/CVE-2024-56664-bpf-sockmap-fix-race-between-element-replace-and-close.patch
- From: 6.1.128-1
- CVE-2024-56631
- Description:
scsi: sg: Fix slab-use-after-free read in sg_release()
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-56631
- Patch: debian12/6.1.128-1/CVE-2024-56631-scsi-sg-fix-slab-use-after-free-read-in-sg-release.patch
- From: 6.1.128-1
- CVE-2024-56551
- Description:
drm/amdgpu: fix usage slab after free
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-56551
- Patch: debian12/6.1.128-1/CVE-2024-56551-drm-amdgpu-fix-usage-slab-after-free.patch
- From: 6.1.128-1
- CVE-2024-56608
- Description:
drm/amd/display: Fix out-of-bounds access in 'dcn21_link_encoder_create'
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-56608
- Patch: debian12/6.1.128-1/CVE-2024-56608-drm-amd-display-fix-out-of-bounds-access-in-dcn21-link-encoder-create.patch
- From: 6.1.128-1
- CVE-2024-57892
- Description:
ocfs2: fix slab-use-after-free due to dangling pointer
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-57892
- Patch: debian12/6.1.128-1/CVE-2024-57892-ocfs2-fix-slab-use-after-free-due-to-dangling-pointe.patch
- From: 6.1.128-1
- CVE-2024-53170
- Description:
block: fix uaf for flush rq while iterating tags
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-53170
- Patch: debian12/6.1.128-1/CVE-2024-53170-block-fix-uaf-for-flush-rq-while-iterating-tags.patch
- From: 6.1.128-1
- CVE-2025-21631
- Description:
block, bfq: fix waker_bfqq UAF after bfq_split_bfqq()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21631
- Patch: debian12/6.1.128-1/CVE-2025-21631-block-bfq-fix-waker-bfqq-uaf-after-bfq-split-bfqq.patch
- From: 6.1.128-1
- CVE-2025-21680
- Description:
pktgen: Avoid out-of-bounds access in get_imix_entries
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21680
- Patch: debian12/6.1.128-1/CVE-2025-21680-pktgen-avoid-out-of-bounds-access-in-get-imix-entries.patch
- From: 6.1.128-1
- CVE-2024-57887
- Description:
drm: adv7511: Fix use-after-free in adv7533_attach_dsi()
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-57887
- Patch: debian12/6.1.128-1/CVE-2024-57887-drm-adv7511-Fix-use-after-free-in-adv7533_attach_dsi.patch
- From: 6.1.128-1
- CVE-2025-21671
- Description:
zram: fix potential UAF of zram table
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21671
- Patch: debian12/6.1.128-1/CVE-2025-21671-zram-fix-potential-uaf-of-zram-table.patch
- From: 6.1.128-1
- CVE-2024-50164
- Description:
bpf: Fix overloading of MEM_UNINIT's meaning
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-50164
- Patch: debian12/6.1.128-1/CVE-2024-50164-bpf-Fix-overloading-of-MEM_UNINIT-s-meaning-my-backp.patch
- From: 6.1.128-1
- CVE-2025-21718
- Description:
net: rose: fix timer races against user threads
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21718
- Patch: debian12/6.1.129-1/CVE-2025-21718-net-rose-fix-timer-races-against-user-threads.patch
- From: 6.1.129-1
- CVE-2024-49989
- Description:
drm/amd/display: fix double free issue during amdgpu module unload
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-49989
- Patch: debian12/6.1.129-1/CVE-2024-49989-drm-amd-display-fix-double-free-issue-during-amdgpu-module-unload.patch
- From: 6.1.129-1
- CVE-2024-57980
- Description:
media: uvcvideo: Fix double free in error path
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-57980
- Patch: debian12/6.1.129-1/CVE-2024-57980-media-uvcvideo-fix-double-free-in-error-path.patch
- From: 6.1.129-1
- CVE-2024-58007
- Description:
soc: qcom: socinfo: Avoid out of bounds read of serial number
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-58007
- Patch: debian12/6.1.129-1/CVE-2024-58007-soc-qcom-socinfo-avoid-out-of-bounds-read-of-serial-number.patch
- From: 6.1.129-1
- CVE-2025-21735
- Description:
NFC: nci: Add bounds checking in nci_hci_create_pipe()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21735
- Patch: debian12/6.1.129-1/CVE-2025-21735-nfc-nci-add-bounds-checking-in-nci-hci-create-pipe.patch
- From: 6.1.129-1
- CVE-2025-21791
- Description:
vrf: use RCU protection in l3mdev_l3_out()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21791
- Patch: debian12/6.1.129-1/CVE-2025-21791-vrf-use-rcu-protection-in-l3mdev-l3-out.patch
- From: 6.1.129-1
- CVE-2025-21785
- Description:
arm64: cacheinfo: Avoid out-of-bounds write to cacheinfo array
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21785
- Patch: debian12/6.1.129-1/CVE-2025-21785-arm64-cacheinfo-avoid-out-of-bounds-write-to-cacheinfo-array.patch
- From: 6.1.129-1
- CVE-2025-21782
- Description:
orangefs: fix a oob in orangefs_debug_write
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21782
- Patch: debian12/6.1.129-1/CVE-2025-21782-orangefs-fix-a-oob-in-orangefs-debug-write.patch
- From: 6.1.129-1
- CVE-2025-21780
- Description:
drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21780
- Patch: debian12/6.1.129-1/CVE-2025-21780-drm-amdgpu-avoid-buffer-overflow-attach-in-smu-sys-set-pp-table.patch
- From: 6.1.129-1
- CVE-2024-50061
- Description:
i3c: master: cdns: Fix use after free vulnerability in cdns_i3c_master Driver Due to Race Condition
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-50061
- Patch: debian12/6.1.129-1/CVE-2024-50061-i3c-master-cdns-fix-use-after-free-vulnerability-in-cdns-i3c-master-driver-due-to-race-condition.patch
- From: 6.1.129-1
- CVE-2025-21794
- Description:
The commit to patch isn't present
- CVE:
- Patch: skipped/CVE-2025-21794.patch
- From:
- CVE-2025-21934
- Description:
rapidio: fix an API misues when rio_add_net() fails
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21934
- Patch: debian12/6.1.133-1/CVE-2025-21934-rapidio-fix-an-api-misues-when-rio-add-net-fails.patch
- From: 6.1.133-1
- CVE-2025-21756
- Description:
vsock: Keep the binding until socket destruction
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21756
- Patch: debian12/6.1.133-1/CVE-2025-21756-vsock-keep-the-binding-until-socket-destruction.patch
- From: 6.1.133-1
- CVE-2025-22004
- Description:
net: atm: fix use after free in lec_send()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-22004
- Patch: debian12/6.1.133-1/CVE-2025-22004-net-atm-fix-use-after-free-in-lec-send.patch
- From: 6.1.133-1
- CVE-2025-21979
- Description:
wifi: cfg80211: cancel wiphy_work before freeing wiphy
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21979
- Patch: debian12/6.1.133-1/CVE-2025-21979-wifi-cfg80211-cancel-wiphy-work-before-freeing-wiphy.patch
- From: 6.1.133-1
- CVE-2025-21991
- Description:
x86/microcode/AMD: Fix out-of-bounds on systems with CPU-less NUMA nodes
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21991
- Patch: debian12/6.1.133-1/CVE-2025-21991-x86-microcode-amd-fix-out-of-bounds-on-systems-with-cpu-less-numa-nodes.patch
- From: 6.1.133-1
- CVE-2025-21867
- Description:
bpf, test_run: Fix use-after-free issue in eth_skb_pkt_type()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21867
- Patch: debian12/6.1.133-1/CVE-2025-21867-bpf-test-run-fix-use-after-free-issue-in-eth-skb-pkt-type.patch
- From: 6.1.133-1
- CVE-2025-21855
- Description:
ibmvnic: Don't reference skb after sending to VIOS
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21855
- Patch: debian12/6.1.133-1/CVE-2025-21855-ibmvnic-don-t-reference-skb-after-sending-to-vios.patch
- From: 6.1.133-1
- CVE-2025-21999
- Description:
proc: fix UAF in proc_get_inode()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21999
- Patch: debian12/6.1.133-1/CVE-2025-21999-proc-fix-uaf-in-proc-get-inode.patch
- From: 6.1.133-1
- CVE-2025-21999
- Description:
proc: fix UAF in proc_get_inode()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21999
- Patch: debian12/6.1.133-1/CVE-2025-21999-proc-fix-uaf-in-proc-get-inode-kpatch.patch
- From: 6.1.133-1
- CVE-2025-21858
- Description:
geneve: Fix use-after-free in geneve_find_dev().
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21858
- Patch: debian12/6.1.133-1/CVE-2025-21858-geneve-fix-use-after-free-in-geneve-find-dev.patch
- From: 6.1.133-1
- CVE-2025-21858
- Description:
geneve: Suppress list corruption splat in geneve_destroy_tunnels().
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21858
- Patch: debian12/6.1.133-1/CVE-2025-21858-geneve-Suppress-list-corruption-splat-in-geneve_destroy_tunnels.patch
- From: 6.1.133-1
- CVE-2025-21887
- Description:
ovl: fix UAF in ovl_dentry_update_reval by moving dput() in ovl_link_up
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21887
- Patch: debian12/6.1.133-1/CVE-2025-21887-ovl-fix-uaf-in-ovl-dentry-update-reval-by-moving-dput-in-ovl-link-up.patch
- From: 6.1.133-1
- CVE-2025-21945
- Description:
ksmbd: fix use-after-free in smb2_lock
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21945
- Patch: debian12/6.1.133-1/CVE-2025-21945-ksmbd-fix-use-after-free-in-smb2-lock.patch
- From: 6.1.133-1
- CVE-2025-21928
- Description:
HID: intel-ish-hid: Fix use-after-free issue in ishtp_hid_remove()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21928
- Patch: debian12/6.1.133-1/CVE-2025-21928-hid-intel-ish-hid-fix-use-after-free-issue-in-ishtp-hid-remove.patch
- From: 6.1.133-1
- CVE-2025-21920
- Description:
vlan: enforce underlying device type
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21920
- Patch: debian12/6.1.133-1/CVE-2025-21920-vlan-enforce-underlying-device-type.patch
- From: 6.1.133-1
- CVE-2025-21919
- Description:
sched/fair: Fix potential memory corruption in child_cfs_rq_on_list
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21919
- Patch: debian12/6.1.133-1/CVE-2025-21919-sched-fair-fix-potential-memory-corruption-in-child-cfs-rq-on-list.patch
- From: 6.1.133-1
- CVE-2024-50246
- Description:
fs/ntfs3: Add rough attr alloc_size check
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-50246
- Patch: debian12/6.1.133-1/CVE-2024-50246-fs-ntfs3-add-rough-attr-alloc-size-check.patch
- From: 6.1.133-1
- CVE-2025-21993
- Description:
iscsi_ibft: Fix UBSAN shift-out-of-bounds warning in ibft_attr_show_nic()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-21993
- Patch: debian12/6.1.133-1/CVE-2025-21993-iscsi-ibft-fix-ubsan-shift-out-of-bounds-warning-in-ibft-attr-show-nic.patch
- From: 6.1.133-1
- CVE-2024-26982
- Description:
Squashfs: check the inode number is not the invalid value of zero
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-26982
- Patch: debian12/6.1.133-1/CVE-2024-26982-Squashfs-check-the-inode-number-is-not-the-invalid-value-of-zero.patch
- From: 6.1.133-1
- CVE-2024-53166
- Description:
block, bfq: fix bfqq uaf in bfq_limit_depth()
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-53166
- Patch: debian12/6.1.133-1/CVE-2024-53166-block-bfq-fix-bfqq-uaf-in-bfq-limit-depth.patch
- From: 6.1.133-1
- CVE-2024-58002
- Description:
media: uvcvideo: Remove dangling pointers
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-58002
- Patch: debian12/6.1.133-1/CVE-2024-58002-media-uvcvideo-Only-save-async-fh-if-success.patch
- From: 6.1.133-1
- CVE-2024-58002
- Description:
media: uvcvideo: Remove dangling pointers
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-58002
- Patch: debian12/6.1.133-1/CVE-2024-58002-media-uvcvideo-remove-dangling-pointers.patch
- From: 6.1.133-1
- CVE-2024-58002
- Description:
media: uvcvideo: Remove dangling pointers
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-58002
- Patch: debian12/6.1.133-1/CVE-2024-58002-media-uvcvideo-remove-dangling-pointers-kpatch.patch
- From: 6.1.133-1
- CVE-2024-38541
- Description:
of: module: add buffer overflow check in of_modalias()
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-38541
- Patch: debian12/6.1.137-1/CVE-2024-38541-of-module-add-buffer-overflow-check-in-of-modalias.patch
- From: 6.1.137-1
- CVE-2024-26739
- Description:
net/sched: act_mirred: don't override retval if we already lost the skb
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-26739
- Patch: debian12/6.1.137-1/CVE-2024-26739-net-sched-act-mirred-don-t-override-retval-if-we-already-lost-the-skb.patch
- From: 6.1.137-1
- CVE-2025-37998
- Description:
openvswitch: Fix unsafe attribute parsing in output_userspace()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37998
- Patch: debian12/6.1.139-1/CVE-2025-37998-openvswitch-fix-unsafe-attribute-parsing-in-output-userspace.patch
- From: 6.1.139-1
- CVE-2025-37997
- Description:
netfilter: ipset: fix region locking in hash types
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37997
- Patch: debian12/6.1.139-1/CVE-2025-37997-netfilter-ipset-fix-region-locking-in-hash-types.patch
- From: 6.1.139-1
- CVE-2025-37995
- Description:
module: ensure that kobject_put() is safe for module type kobjects
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37995
- Patch: debian12/6.1.139-1/CVE-2025-37995-module-ensure-that-kobject-put-is-safe-for-module-type-kobjects.patch
- From: 6.1.139-1
- CVE-2025-37994
- Description:
usb: typec: ucsi: displayport: Fix NULL pointer access
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37994
- Patch: debian12/6.1.139-1/CVE-2025-37994-usb-typec-ucsi-displayport-fix-null-pointer-access.patch
- From: 6.1.139-1
- CVE-2025-22041
- Description:
ksmbd: fix use-after-free in ksmbd_sessions_deregister()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-22041
- Patch: debian12/6.1.135-1/CVE-2025-22041-ksmbd-fix-use-after-free-in-ksmbd-sessions-deregister.patch
- From: 6.1.135-1
- CVE-2025-22035
- Description:
tracing: Fix use-after-free in print_graph_function_flags during tracer switching
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-22035
- Patch: debian12/6.1.135-1/CVE-2025-22035-tracing-fix-use-after-free-in-print-graph-function-flags-during-tracer-switching.patch
- From: 6.1.135-1
- CVE-2025-22088
- Description:
RDMA/erdma: Prevent use-after-free in erdma_accept_newconn()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-22088
- Patch: debian12/6.1.135-1/CVE-2025-22088-rdma-erdma-prevent-use-after-free-in-erdma-accept-newconn.patch
- From: 6.1.135-1
- CVE-2024-46774
- Description:
Out of scope as the patch is for powerpc arch only, x86_64 is not affected
- CVE:
- Patch: skipped/CVE-2024-46774.patch
- From:
- CVE-2024-50063
- Description:
bpf: Prevent tail call between progs attached to different hooks
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-50063
- Patch: debian12/6.1.135-1/CVE-2024-50063-bpf-prevent-tail-call-between-progs-attached-to-different-hooks.patch
- From: 6.1.135-1
- CVE-2024-50063
- Description:
bpf: Prevent tail call between progs attached to different hooks
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-50063
- Patch: debian12/6.1.135-1/CVE-2024-50063-bpf-prevent-tail-call-between-progs-attached-to-different-hooks-kpatch.patch
- From: 6.1.135-1
- CVE-2025-37838
- Description:
HSI: ssi_protocol: Fix use after free vulnerability in ssi_protocol Driver Due to Race Condition
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37838
- Patch: debian12/6.1.135-1/CVE-2025-37838-hsi-ssi-protocol-fix-use-after-free-vulnerability-in-ssi-protocol-driver-due-to-race-condition.patch
- From: 6.1.135-1
- CVE-2025-37798
- Description:
codel: remove sch->q.qlen check before qdisc_tree_reduce_backlog()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37798
- Patch: debian12/6.1.135-1/CVE-2025-37798-codel-remove-sch-q.qlen-check-before-qdisc_tree_redu.patch
- From: 6.1.135-1
- CVE-2025-37923
- Description:
tracing: Fix oob write in trace_seq_to_buffer()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37923
- Patch: debian12/6.1.139-1/CVE-2025-37923-tracing-fix-oob-write-in-trace-seq-to-buffer.patch
- From: 6.1.139-1
- CVE-2025-37928
- Description:
dm-bufio: don't schedule in atomic context
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37928
- Patch: debian12/6.1.139-1/CVE-2025-37928-dm-bufio-don-t-schedule-in-atomic-context.patch
- From: 6.1.139-1
- CVE-2025-37897
- Description:
wifi: plfxlc: Remove erroneous assert in plfxlc_mac_release
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37897
- Patch: debian12/6.1.139-1/CVE-2025-37897-wifi-plfxlc-remove-erroneous-assert-in-plfxlc-mac-release.patch
- From: 6.1.139-1
- CVE-2025-37917
- Description:
net: ethernet: mtk-star-emac: fix spinlock recursion issues on rx/tx poll
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37917
- Patch: debian12/6.1.139-1/CVE-2025-37917-net-ethernet-mtk-star-emac-fix-spinlock-recursion-issues-on-rx-tx-poll.patch
- From: 6.1.139-1
- CVE-2025-37915
- Description:
net_sched: drr: Fix double list add in class with netem as child qdisc
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37915
- Patch: debian12/6.1.139-1/CVE-2025-37915-net-sched-drr-fix-double-list-add-in-class-with-netem-as-child-qdisc.patch
- From: 6.1.139-1
- CVE-2025-37970
- Description:
iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_fifo
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37970
- Patch: debian12/6.1.139-1/CVE-2025-37970-iio-imu-st-lsm6dsx-fix-possible-lockup-in-st-lsm6dsx-read-fifo.patch
- From: 6.1.139-1
- CVE-2025-37963
- Description:
Out of scope: not affected
- CVE:
- Patch: skipped/CVE-2025-37963.patch
- From:
- CVE-2025-37969
- Description:
iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_tagged_fifo
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37969
- Patch: debian12/6.1.139-1/CVE-2025-37969-iio-imu-st-lsm6dsx-fix-possible-lockup-in-st-lsm6dsx-read-tagged-fifo.patch
- From: 6.1.139-1
- CVE-2025-37936
- Description:
perf/x86/intel: KVM: Mask PEBS_ENABLE loaded for guest with vCPU's value.
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37936
- Patch: debian12/6.1.139-1/CVE-2025-37936-perf-x86-intel-kvm-mask-pebs-enable-loaded-for-guest-with-vcpu-s-value.patch
- From: 6.1.139-1
- CVE-2025-37921
- Description:
vxlan: vnifilter: Fix unlocked deletion of default FDB entry
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37921
- Patch: debian12/6.1.139-1/CVE-2025-37921-vxlan-vnifilter-fix-unlocked-deletion-of-default-fdb-entry.patch
- From: 6.1.139-1
- CVE-2025-37911
- Description:
bnxt_en: Fix out-of-bound memcpy() during ethtool -w
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37911
- Patch: debian12/6.1.139-1/CVE-2025-37911-bnxt-en-fix-out-of-bound-memcpy-during-ethtool-w-6.1.137-1.patch
- From: 6.1.139-1
- CVE-2025-37932
- Description:
sch_htb: make htb_qlen_notify() idempotent
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37932
- Patch: debian12/6.1.139-1/CVE-2025-37932-sch-htb-make-htb-qlen-notify-idempotent.patch
- From: 6.1.139-1
- CVE-2025-37798
- Description:
sch_qfq: make qfq_qlen_notify() idempotent
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37798
- Patch: debian12/6.1.139-1/CVE-2025-37932-sch_qfq-make-qfq_qlen_notify-idempotent.patch
- From: 6.1.135-1
- CVE-2025-37798
- Description:
sch_drr: make drr_qlen_notify() idempotent
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37798
- Patch: debian12/6.1.139-1/CVE-2025-37932-sch_drr-make-drr_qlen_notify-idempotent.patch
- From: 6.1.135-1
- CVE-2025-37798
- Description:
sch_hfsc: make hfsc_qlen_notify() idempotent
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37798
- Patch: debian12/6.1.139-1/CVE-2025-37932-sch_hfsc-make-hfsc_qlen_notify-idempotent.patch
- From: 6.1.135-1
- CVE-2025-37798
- Description:
sch_ets: make est_qlen_notify() idempotent
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37798
- Patch: debian12/6.1.139-1/CVE-2025-37932-sch_ets-make-est_qlen_notify-idempotent.patch
- From: 6.1.135-1
- CVE-2025-37951
- Description:
drm/v3d: Add job to pending list if the reset was skipped
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37951
- Patch: debian12/6.1.139-1/CVE-2025-37951-drm-v3d-add-job-to-pending-list-if-the-reset-was-skipped.patch
- From: 6.1.139-1
- CVE-2025-37961
- Description:
ipv4: Drop tos parameter from flowi4_update_output() (dependency)
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37961
- Patch: debian12/6.1.139-1/CVE-2025-37961-ipvs-fix-uninit-value-for-saddr-in-do-output-route4-dependency.patch
- From: 6.1.139-1
- CVE-2025-37961
- Description:
ipvs: fix uninit-value for saddr in do_output_route4
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37961
- Patch: debian12/6.1.139-1/CVE-2025-37961-ipvs-fix-uninit-value-for-saddr-in-do-output-route4.patch
- From: 6.1.139-1
- CVE-2025-37990
- Description:
wifi: brcm80211: fmac: Add error handling for brcmf_usb_dl_writeimage()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37990
- Patch: debian12/6.1.139-1/CVE-2025-37990-wifi-brcm80211-fmac-add-error-handling-for-brcmf-usb-dl-writeimage.patch
- From: 6.1.139-1
- CVE-2025-37914
- Description:
net_sched: ets: Fix double list add in class with netem as child qdisc
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37914
- Patch: debian12/6.1.139-1/CVE-2025-37914-net-sched-ets-fix-double-list-add-in-class-with-netem-as-child-qdisc.patch
- From: 6.1.139-1
- CVE-2025-37913
- Description:
net_sched: qfq: Fix double list add in class with netem as child qdisc
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37913
- Patch: debian12/6.1.139-1/CVE-2025-37913-net-sched-qfq-fix-double-list-add-in-class-with-netem-as-child-qdisc.patch
- From: 6.1.139-1
- CVE-2025-37912
- Description:
ice: Check VF VSI Pointer Value in ice_vc_add_fdir_fltr()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37912
- Patch: debian12/6.1.139-1/CVE-2025-37912-ice-check-vf-vsi-pointer-value-in-ice-vc-add-fdir-fltr.patch
- From: 6.1.139-1
- CVE-2025-37902
- Description:
dm: fix copying after src array boundaries
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37902
- Patch: debian12/6.1.139-1/CVE-2025-37902-dm-fix-copying-after-src-array-boundaries.patch
- From: 6.1.139-1
- CVE-2025-37953
- Description:
sch_htb: make htb_deactivate() idempotent
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37953
- Patch: debian12/6.1.139-1/CVE-2025-37953-sch-htb-make-htb-deactivate-idempotent.patch
- From: 6.1.139-1
- CVE-2025-37959
- Description:
bpf: Scrub packet on bpf_redirect_peer
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37959
- Patch: debian12/6.1.139-1/CVE-2025-37959-bpf-scrub-packet-on-bpf-redirect-peer.patch
- From: 6.1.139-1
- CVE-2025-37949
- Description:
Postponed: complex analysis and adaptation required
- CVE:
- Patch: skipped/CVE-2025-37949.patch
- From:
- CVE-2024-53203
- Description:
usb: typec: fix potential array underflow in ucsi_ccg_sync_control()
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-53203
- Patch: debian12/6.1.140-1/CVE-2024-53203-usb-typec-fix-potential-array-underflow-in-ucsi-ccg-sync-control.patch
- From: 6.1.140-1
- CVE-2025-37967
- Description:
usb: typec: ucsi: displayport: Fix deadlock
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37967
- Patch: debian12/6.1.140-1/CVE-2025-37967-usb-typec-ucsi-displayport-fix-deadlock.patch
- From: 6.1.140-1
- CVE-2025-38043
- Description:
firmware: arm_ffa: Set dma_mask for ffa devices
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38043
- Patch: debian12/6.1.147-1/CVE-2025-38043-firmware-arm_ffa-Set-dma_mask-for-ffa-devices.patch
- From: 6.1.147-1
- CVE-2025-38043
- Description:
firmware: arm_ffa: Set dma_mask for ffa devices
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38043
- Patch: debian12/6.1.147-1/CVE-2025-38043-firmware-arm_ffa-Set-dma_mask-for-ffa-devices-kpatch.patch
- From: 6.1.147-1
- CVE-2025-38077
- Description:
platform/x86: dell-wmi-sysman: Avoid buffer overflow in current_password_store()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38077
- Patch: debian12/6.1.147-1/CVE-2025-38077-platform-x86-dell-wmi-sysman-avoid-buffer-overflow-in-current-password-store.patch
- From: 6.1.147-1
- CVE-2025-38048
- Description:
virtio_ring: Fix data race by tagging event_triggered as racy for KCSAN
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38048
- Patch: debian12/6.1.147-1/CVE-2025-38048-virtio-ring-fix-data-race-by-tagging-event-triggered-as-racy-for-kcsan.patch
- From: 6.1.147-1
- CVE-2025-38063
- Description:
dm: fix unconditional IO throttle caused by REQ_PREFLUSH
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38063
- Patch: debian12/6.1.147-1/CVE-2025-38063-dm-fix-unconditional-io-throttle-caused-by-req-preflush.patch
- From: 6.1.147-1
- CVE-2025-38079
- Description:
crypto: algif_hash - fix double free in hash_accept
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38079
- Patch: debian12/6.1.147-1/CVE-2025-38079-crypto-algif-hash-fix-double-free-in-hash-accept.patch
- From: 6.1.147-1
- CVE-2024-56758
- Description:
btrfs: check folio mapping after unlock in relocate_one_folio()
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-56758
- Patch: debian12/6.1.147-1/CVE-2024-56758-btrfs-check-folio-mapping-after-unlock-in-relocate-one-folio.patch
- From: 6.1.147-1
- CVE-2025-38061
- Description:
net: pktgen: fix access outside of user given buffer in pktgen_thread_write()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38061
- Patch: debian12/6.1.147-1/CVE-2025-38061-net-pktgen-fix-access-outside-of-user-given-buffer-in-pktgen-thread-write.patch
- From: 6.1.147-1
- CVE-2025-38066
- Description:
dm cache: prevent BUG_ON by blocking retries on failed device resumes
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38066
- Patch: debian12/6.1.147-1/CVE-2025-38066-dm-cache-prevent-bug-on-by-blocking-retries-on-failed-device-resumes.patch
- From: 6.1.147-1
- CVE-2025-38051
- Description:
smb: client: Fix use-after-free in cifs_fill_dirent
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38051
- Patch: debian12/6.1.147-1/CVE-2025-38051-smb-client-fix-use-after-free-in-cifs-fill-dirent.patch
- From: 6.1.147-1
- CVE-2025-38065
- Description:
Affects only 32bit systems
- CVE:
- Patch: skipped/CVE-2025-38065.patch
- From:
- CVE-2025-38078
- Description:
ALSA: pcm: Fix race of buffer access at PCM OSS layer
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38078
- Patch: debian12/6.1.147-1/CVE-2025-38078-alsa-pcm-fix-race-of-buffer-access-at-pcm-oss-layer.patch
- From: 6.1.147-1
- CVE-2025-38035
- Description:
nvmet-tcp: don't restore null sk_state_change
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38035
- Patch: debian12/6.1.147-1/CVE-2025-38035-nvmet-tcp-don-t-restore-null-sk-state-change.patch
- From: 6.1.147-1
- CVE-2025-38044
- Description:
media: cx231xx: set device_caps for 417
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38044
- Patch: debian12/6.1.147-1/CVE-2025-38044-media-cx231xx-set-device-caps-for-417.patch
- From: 6.1.147-1
- CVE-2025-38058
- Description:
__legitimize_mnt(): check for MNT_SYNC_UMOUNT should be under mount_lock
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38058
- Patch: debian12/6.1.147-1/CVE-2025-38058-legitimize-mnt-check-for-mnt-sync-umount-should-be-under-mount-lock-6.1.137-1.patch
- From: 6.1.147-1
- CVE-2025-38072
- Description:
libnvdimm/labels: Fix divide error in nd_label_data_init()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38072
- Patch: debian12/6.1.147-1/CVE-2025-38072-libnvdimm-labels-fix-divide-error-in-nd-label-data-init.patch
- From: 6.1.147-1
- CVE-2025-38075
- Description:
scsi: target: iscsi: Fix timeout on deleted connection
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38075
- Patch: debian12/6.1.147-1/CVE-2025-38075-scsi-target-iscsi-fix-timeout-on-deleted-connection.patch
- From: 6.1.147-1
- CVE-2025-38037
- Description:
vxlan: Annotate FDB data races
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38037
- Patch: debian12/6.1.147-1/CVE-2025-38037-vxlan-annotate-fdb-data-races.patch
- From: 6.1.147-1
- CVE-2025-38174
- Description:
thunderbolt: Do not double dequeue a configuration request
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38174
- Patch: debian12/6.1.147-1/CVE-2025-38174-thunderbolt-do-not-double-dequeue-a-configuration-request.patch
- From: 6.1.147-1
- CVE-2025-38300
- Description:
crypto: sun8i-ce-cipher - fix error handling in sun8i_ce_cipher_prepare()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38300
- Patch: debian12/6.1.147-1/CVE-2025-38300-crypto-sun8i-ce-cipher-fix-error-handling-in-sun8i-ce-cipher-prepare.patch
- From: 6.1.147-1
- CVE-2025-38173
- Description:
crypto: marvell/cesa - Handle zero-length skcipher requests
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38173
- Patch: debian12/6.1.147-1/CVE-2025-38173-crypto-marvell-cesa-handle-zero-length-skcipher-requests.patch
- From: 6.1.147-1
- CVE-2025-38298
- Description:
EDAC/skx_common: Fix general protection fault
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38298
- Patch: debian12/6.1.147-1/CVE-2025-38298-edac-skx-common-fix-general-protection-fault.patch
- From: 6.1.147-1
- CVE-2025-38319
- Description:
drm/amd/pp: Fix potential NULL pointer dereference in atomctrl_initialize_mc_reg_table
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38319
- Patch: debian12/6.1.147-1/CVE-2025-38319-drm-amd-pp-fix-potential-null-pointer-dereference-in-atomctrl-initialize-mc-reg-table.patch
- From: 6.1.147-1
- CVE-2025-38170
- Description:
arm64/fpsimd: Discard stale CPU state when handling SME traps
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38170
- Patch: debian12/6.1.147-1/CVE-2025-38170-arm64-fpsimd-discard-stale-cpu-state-when-handling-sme-traps.patch
- From: 6.1.147-1
- CVE-2025-38293
- Description:
wifi: ath11k: fix node corruption in ar->arvifs list
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38293
- Patch: debian12/6.1.147-1/CVE-2025-38293-wifi-ath11k-fix-node-corruption-in-ar-arvifs-list.patch
- From: 6.1.147-1
- CVE-2025-38165
- Description:
bpf, sockmap: Fix panic when calling skb_linearize
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38165
- Patch: debian12/6.1.147-1/CVE-2025-38165-bpf-sockmap-fix-panic-when-calling-skb-linearize.patch
- From: 6.1.147-1
- CVE-2025-38160
- Description:
clk: bcm: rpi: Add NULL check in raspberrypi_clk_register()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38160
- Patch: debian12/6.1.147-1/CVE-2025-38160-clk-bcm-rpi-add-null-check-in-raspberrypi-clk-register.patch
- From: 6.1.147-1
- CVE-2025-38285
- Description:
bpf: Fix WARN() in get_bpf_raw_tp_regs
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38285
- Patch: debian12/6.1.147-1/CVE-2025-38285-bpf-fix-warn-in-get-bpf-raw-tp-regs.patch
- From: 6.1.147-1
- CVE-2025-38159
- Description:
wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38159
- Patch: debian12/6.1.147-1/CVE-2025-38159-wifi-rtw88-fix-the-para-buffer-size-to-avoid-reading-out-of-bounds.patch
- From: 6.1.147-1
- CVE-2025-38157
- Description:
wifi: ath9k_htc: Abort software beacon handling if disabled
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38157
- Patch: debian12/6.1.147-1/CVE-2025-38157-wifi-ath9k-htc-abort-software-beacon-handling-if-disabled.patch
- From: 6.1.147-1
- CVE-2025-38154
- Description:
bpf, sockmap: Avoid using sk_socket after free when sending
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38154
- Patch: debian12/6.1.147-1/CVE-2025-38154-bpf-sockmap-avoid-using-sk-socket-after-free-when-sending.patch
- From: 6.1.147-1
- CVE-2025-38280
- Description:
bpf: Avoid __bpf_prog_ret0_warn when jit fails
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38280
- Patch: debian12/6.1.147-1/CVE-2025-38280-bpf-avoid-bpf-prog-ret0-warn-when-jit-fails.patch
- From: 6.1.147-1
- CVE-2025-38147
- Description:
calipso: Don't call calipso functions for AF_INET sk.
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38147
- Patch: debian12/6.1.147-1/CVE-2025-38147-calipso-don-t-call-calipso-functions-for-af-inet-sk.patch
- From: 6.1.147-1
- CVE-2025-38147
- Description:
calipso: unlock rcu before returning -EAFNOSUPPORT
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38147
- Patch: debian12/6.1.147-1/CVE-2025-38147-0001-calipso-unlock-rcu-before-returning-EAFNOSUPPORT.patch
- From: 6.1.147-1
- CVE-2025-38146
- Description:
net: openvswitch: Fix the dead loop of MPLS parse
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38146
- Patch: debian12/6.1.147-1/CVE-2025-38146-net-openvswitch-fix-the-dead-loop-of-mpls-parse.patch
- From: 6.1.147-1
- CVE-2025-38415
- Description:
Squashfs: check return result of sb_min_blocksize
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38415
- Patch: debian12/6.1.147-1/CVE-2025-38415-squashfs-check-return-result-of-sb-min-blocksize.patch
- From: 6.1.147-1
- CVE-2025-38313
- Description:
bus: fsl-mc: fix double-free on mc_dev
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38313
- Patch: debian12/6.1.147-1/CVE-2025-38313-bus-fsl-mc-fix-double-free-on-mc-dev.patch
- From: 6.1.147-1
- CVE-2025-38312
- Description:
fbdev: core: fbcvt: avoid division by 0 in fb_cvt_hperiod()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38312
- Patch: debian12/6.1.147-1/CVE-2025-38312-fbdev-core-fbcvt-avoid-division-by-0-in-fb-cvt-hperiod.patch
- From: 6.1.147-1
- CVE-2025-38138
- Description:
dmaengine: ti: Add NULL check in udma_probe()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38138
- Patch: debian12/6.1.147-1/CVE-2025-38138-dmaengine-ti-add-null-check-in-udma-probe.patch
- From: 6.1.147-1
- CVE-2025-38126
- Description:
net: stmmac: make sure that ptp_rate is not 0 before configuring timestamping
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38126
- Patch: debian12/6.1.147-1/CVE-2025-38126-net-stmmac-make-sure-that-ptp-rate-is-not-0-before-configuring-timestamping.patch
- From: 6.1.147-1
- CVE-2025-38124
- Description:
net: fix udp gso skb_segment after pull from frag_list
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38124
- Patch: debian12/6.1.147-1/CVE-2025-38124-net-fix-udp-gso-skb-segment-after-pull-from-frag-list.patch
- From: 6.1.147-1
- CVE-2025-38498
- Description:
do_change_type(): refuse to operate on unmounted/not ours mounts
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38498
- Patch: debian12/6.1.147-1/CVE-2025-38498-do-change-type-refuse-to-operate-on-unmounted-not-ours-mounts.patch
- From: 6.1.147-1
- CVE-2025-38119
- Description:
scsi: core: ufs: Fix a hang in the error handler
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38119
- Patch: debian12/6.1.147-1/CVE-2025-38119-scsi-core-ufs-fix-a-hang-in-the-error-handler.patch
- From: 6.1.147-1
- CVE-2025-38115
- Description:
net_sched: sch_sfq: fix a potential crash on gso_skb handling
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38115
- Patch: debian12/6.1.147-1/CVE-2025-38115-net-sched-sch-sfq-fix-a-potential-crash-on-gso-skb-handling.patch
- From: 6.1.147-1
- CVE-2025-38113
- Description:
ACPI: CPPC: Fix NULL pointer dereference when nosmp is used
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38113
- Patch: debian12/6.1.147-1/CVE-2025-38113-acpi-cppc-fix-null-pointer-dereference-when-nosmp-is-used.patch
- From: 6.1.147-1
- CVE-2025-38112
- Description:
net: Fix TOCTOU issue in sk_is_readable()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38112
- Patch: debian12/6.1.147-1/CVE-2025-38112-net-fix-toctou-issue-in-sk-is-readable.patch
- From: 6.1.147-1
- CVE-2025-38111
- Description:
net/mdiobus: Fix potential out-of-bounds read/write access
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38111
- Patch: debian12/6.1.147-1/CVE-2025-38111-net-mdiobus-fix-potential-out-of-bounds-read-write-access.patch
- From: 6.1.147-1
- CVE-2025-38304
- Description:
Bluetooth: Fix NULL pointer deference on eir_get_service_data
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38304
- Patch: debian12/6.1.147-1/CVE-2025-38304-bluetooth-fix-null-pointer-deference-on-eir-get-service-data.patch
- From: 6.1.147-1
- CVE-2025-38083
- Description:
net_sched: prio: fix a race in prio_tune()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38083
- Patch: debian12/6.1.147-1/CVE-2025-38083-net-sched-prio-fix-a-race-in-prio-tune.patch
- From: 6.1.147-1
- CVE-2025-38108
- Description:
net_sched: red: fix a race in __red_change()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38108
- Patch: debian12/6.1.147-1/CVE-2025-38108-net-sched-red-fix-a-race-in-red-change.patch
- From: 6.1.147-1
- CVE-2025-38107
- Description:
net_sched: ets: fix a race in ets_qdisc_change()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38107
- Patch: debian12/6.1.147-1/CVE-2025-38107-net-sched-ets-fix-a-race-in-ets-qdisc-change-6.1.137-1.patch
- From: 6.1.147-1
- CVE-2025-38352
- Description:
posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38352
- Patch: debian12/6.1.147-1/CVE-2025-38352-posix-cpu-timers-fix-race-between-handle-posix-cpu-timers-and-posix-cpu-timer-del.patch
- From: 6.1.147-1
- CVE-2025-38100
- Description:
x86/iopl: Cure TIF_IO_BITMAP inconsistencies
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38100
- Patch: debian12/6.1.147-1/CVE-2025-38100-x86-iopl-cure-tif-io-bitmap-inconsistencies.patch
- From: 6.1.147-1
- CVE-2025-38430
- Description:
nfsd: nfsd4_spo_must_allow() must check this is a v4 compound request
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38430
- Patch: debian12/6.1.147-1/CVE-2025-38430-nfsd-nfsd4-spo-must-allow-must-check-this-is-a-v4-compound-request.patch
- From: 6.1.147-1
- CVE-2025-38231
- Description:
nfsd: Initialize ssc before laundromat_work to prevent NULL dereference
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38231
- Patch: debian12/6.1.147-1/CVE-2025-38231-nfsd-initialize-ssc-before-laundromat-work-to-prevent-null-dereference.patch
- From: 6.1.147-1
- CVE-2025-38337
- Description:
jbd2: fix data-race and null-ptr-deref in jbd2_journal_dirty_metadata()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38337
- Patch: debian12/6.1.147-1/CVE-2025-38337-jbd2-fix-data-race-and-null-ptr-deref-in-jbd2-journal-dirty-metadata.patch
- From: 6.1.147-1
- CVE-2025-38229
- Description:
media: cxusb: no longer judge rbuf when the write fails
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38229
- Patch: debian12/6.1.147-1/CVE-2025-38229-media-cxusb-no-longer-judge-rbuf-when-the-write-fails.patch
- From: 6.1.147-1
- CVE-2025-38336
- Description:
ata: pata_via: Force PIO for ATAPI devices on VT6415/VT6330
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38336
- Patch: debian12/6.1.147-1/CVE-2025-38336-ata-pata-via-force-pio-for-atapi-devices-on-vt6415-vt6330.patch
- From: 6.1.147-1
- CVE-2025-38214
- Description:
fbdev: Fix fb_set_var to prevent null-ptr-deref in fb_videomode_to_var
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38214
- Patch: debian12/6.1.147-1/CVE-2025-38214-fbdev-fix-fb-set-var-to-prevent-null-ptr-deref-in-fb-videomode-to-var.patch
- From: 6.1.147-1
- CVE-2025-38212
- Description:
ipc: fix to protect IPCS lookups using RCU
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38212
- Patch: debian12/6.1.147-1/CVE-2025-38212-ipc-fix-to-protect-ipcs-lookups-using-rcu.patch
- From: 6.1.147-1
- CVE-2025-38422
- Description:
net: lan743x: Modify the EEPROM and OTP size for PCI1xxxx devices
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38422
- Patch: debian12/6.1.147-1/CVE-2025-38422-net-lan743x-modify-the-eeprom-and-otp-size-for-pci1xxxx-devices.patch
- From: 6.1.147-1
- CVE-2025-38425
- Description:
i2c: tegra: check msg length in SMBUS block read
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38425
- Patch: debian12/6.1.147-1/CVE-2025-38425-i2c-tegra-check-msg-length-in-smbus-block-read.patch
- From: 6.1.147-1
- CVE-2025-38334
- Description:
x86/sgx: Prevent attempts to reclaim poisoned pages
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38334
- Patch: debian12/6.1.147-1/CVE-2025-38334-x86-sgx-prevent-attempts-to-reclaim-poisoned-pages.patch
- From: 6.1.147-1
- CVE-2025-38342
- Description:
software node: Correct a OOB check in software_node_get_reference_args()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38342
- Patch: debian12/6.1.147-1/CVE-2025-38342-software-node-correct-a-oob-check-in-software-node-get-reference-args.patch
- From: 6.1.147-1
- CVE-2025-38332
- Description:
scsi: lpfc: Use memcpy() for BIOS version
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38332
- Patch: debian12/6.1.147-1/CVE-2025-38332-scsi-lpfc-use-memcpy-for-bios-version.patch
- From: 6.1.147-1
- CVE-2025-38200
- Description:
i40e: fix MMIO write access to an invalid page in i40e_clear_hw
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38200
- Patch: debian12/6.1.147-1/CVE-2025-38200-i40e-fix-mmio-write-access-to-an-invalid-page-in-i40e-clear-hw.patch
- From: 6.1.147-1
- CVE-2025-38197
- Description:
platform/x86: dell_rbu: Fix list usage
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38197
- Patch: debian12/6.1.147-1/CVE-2025-38197-platform-x86-dell-rbu-fix-list-usage.patch
- From: 6.1.147-1
- CVE-2025-38090
- Description:
drivers/rapidio/rio_cm.c: prevent possible heap overwrite
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38090
- Patch: debian12/6.1.147-1/CVE-2025-38090-drivers-rapidio-rio-cm-c-prevent-possible-heap-overwrite.patch
- From: 6.1.147-1
- CVE-2025-38194
- Description:
jffs2: check that raw node were preallocated before writing summary
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38194
- Patch: debian12/6.1.147-1/CVE-2025-38194-jffs2-check-that-raw-node-were-preallocated-before-writing-summary.patch
- From: 6.1.147-1
- CVE-2025-38328
- Description:
jffs2: check jffs2_prealloc_raw_node_refs() result in few other places
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38328
- Patch: debian12/6.1.147-1/CVE-2025-38328-jffs2-check-jffs2-prealloc-raw-node-refs-result-in-few-other-places.patch
- From: 6.1.147-1
- CVE-2025-38193
- Description:
net_sched: sch_sfq: reject invalid perturb period
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38193
- Patch: debian12/6.1.147-1/CVE-2025-38193-net-sched-sch-sfq-reject-invalid-perturb-period-128.patch
- From: 6.1.147-1
- CVE-2025-38190
- Description:
atm: Revert atm_account_tx() if copy_from_iter_full() fails.
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38190
- Patch: debian12/6.1.147-1/CVE-2025-38190-atm-revert-atm-account-tx-if-copy-from-iter-full-fails.patch
- From: 6.1.147-1
- CVE-2024-57883
- Description:
Complex adaptation required
- CVE:
- Patch: skipped/CVE-2024-57883.patch
- From:
- CVE-2025-38084
- Description:
mm/hugetlb: unshare page tables during VMA split, not before
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38084
- Patch: debian12/6.1.147-1/CVE-2025-38084-mm-hugetlb-unshare-page-tables-during-vma-split-not-before.patch
- From: 6.1.147-1
- CVE-2025-38085
- Description:
mm/hugetlb: fix huge_pmd_unshare() vs GUP-fast race
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38085
- Patch: debian12/6.1.147-1/CVE-2025-38085-mm-hugetlb-fix-huge-pmd-unshare-vs-gup-fast-race.patch
- From: 6.1.147-1
- CVE-2025-37958
- Description:
mm/huge_memory: fix dereferencing invalid pmd migration entry
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37958
- Patch: debian12/6.1.147-1/CVE-2025-37958-mm-huge-memory-fix-dereferencing-invalid-pmd-migration-entry.patch
- From: 6.1.147-1
- CVE-2025-38420
- Description:
wifi: carl9170: do not ping device which has failed to load firmware
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38420
- Patch: debian12/6.1.147-1/CVE-2025-38420-wifi-carl9170-do-not-ping-device-which-has-failed-to-load-firmware.patch
- From: 6.1.147-1
- CVE-2025-38324
- Description:
mpls: Use rcu_dereference_rtnl() in mpls_route_input_rcu().
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38324
- Patch: debian12/6.1.147-1/CVE-2025-38324-mpls-use-rcu-dereference-rtnl-in-mpls-route-input-rcu.patch
- From: 6.1.147-1
- CVE-2025-38184
- Description:
tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38184
- Patch: debian12/6.1.147-1/CVE-2025-38184-tipc-fix-null-ptr-deref-when-acquiring-remote-ip-of-ethernet-bearer.patch
- From: 6.1.147-1
- CVE-2025-38183
- Description:
net: lan743x: fix potential out-of-bounds write in lan743x_ptp_io_event_clock_get()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38183
- Patch: debian12/6.1.147-1/CVE-2025-38183-net-lan743x-fix-potential-out-of-bounds-write-in-lan743x-ptp-io-event-clock-get.patch
- From: 6.1.147-1
- CVE-2025-38183
- Description:
net: lan743x: fix potential out-of-bounds write in lan743x_ptp_io_event_clock_get()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38183
- Patch: debian12/6.1.147-1/CVE-2025-38183-net-lan743x-fix-potential-out-of-bounds-write-in-lan743x-ptp-io-event-clock-get-kpatch.patch
- From: 6.1.147-1
- CVE-2025-38181
- Description:
calipso: Fix null-ptr-deref in calipso_req_{set,del}attr().
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38181
- Patch: debian12/6.1.147-1/CVE-2025-38181-calipso-fix-null-ptr-deref-in-calipso-req-set-del-attr.patch
- From: 6.1.147-1
- CVE-2025-38323
- Description:
net: atm: add lec_mutex
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38323
- Patch: debian12/6.1.147-1/CVE-2025-38323-net-atm-add-lec-mutex.patch
- From: 6.1.147-1
- CVE-2025-38180
- Description:
net: atm: fix /proc/net/atm/lec handling
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38180
- Patch: debian12/6.1.147-1/CVE-2025-38180-net-atm-fix-proc-net-atm-lec-handling.patch
- From: 6.1.147-1
- CVE-2025-38424
- Description:
perf: Fix sample vs do_exit()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38424
- Patch: debian12/6.1.147-1/CVE-2025-38424-perf-fix-sample-vs-do-exit.patch
- From: 6.1.147-1
- CVE-2025-38320
- Description:
arm64/ptrace: Fix stack-out-of-bounds read in regs_get_kernel_stack_nth()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38320
- Patch: debian12/6.1.147-1/CVE-2025-38320-arm64-ptrace-fix-stack-out-of-bounds-read-in-regs-get-kernel-stack-nth.patch
- From: 6.1.147-1
- CVE-2025-38230
- Description:
jfs: add sanity check for agwidth in dbMount
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38230
- Patch: debian12/6.1.147-1/CVE-2025-38230-jfs-add-sanity-check-for-agwidth-in-dbMount.patch
- From: 6.1.147-1
- CVE-2025-38230
- Description:
jfs: validate AG parameters in dbMount() to prevent crashes
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38230
- Patch: debian12/6.1.147-1/CVE-2025-38230-jfs-validate-ag-parameters-in-dbmount-to-prevent-crashes.patch
- From: 6.1.147-1
- CVE-2025-38215
- Description:
fbdev: Fix do_register_framebuffer to prevent null-ptr-deref in fb_videomode_to_var
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38215
- Patch: debian12/6.1.147-1/CVE-2025-38215-fbdev-fix-do-register-framebuffer-to-prevent-null-ptr-deref-in-fb-videomode-to-var.patch
- From: 6.1.147-1
- CVE-2024-36913
- Description:
Drivers: hv: vmbus: Leak pages if set_memory_encrypted() fails
- CVE: https://security-tracker.debian.org/tracker/CVE-2024-36913
- Patch: debian12/6.1.147-1/CVE-2024-36913-drivers-hv-vmbus-leak-pages-if-set-memory-encrypted-fails-6.1.140-1.patch
- From: 6.1.147-1
- CVE-2025-38236
- Description:
Complex adaptation required. Livepatching of this vulnerability can harm the network subsystem..
- CVE:
- Patch: skipped/CVE-2025-38236.patch
- From:
- CVE-2025-38251
- Description:
atm: clip: prevent NULL deref in clip_push()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38251
- Patch: debian12/6.1.147-1/CVE-2025-38251-atm-clip-prevent-null-deref-in-clip-push.patch
- From: 6.1.147-1
- CVE-2025-38363
- Description:
drm/tegra: Fix a possible null pointer dereference
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38363
- Patch: debian12/6.1.147-1/CVE-2025-38363-drm-tegra-fix-a-possible-null-pointer-dereference.patch
- From: 6.1.147-1
- CVE-2025-38403
- Description:
vsock/vmci: Clear the vmci transport packet properly when initializing it
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38403
- Patch: debian12/6.1.147-1/CVE-2025-38403-vsock-vmci-clear-the-vmci-transport-packet-properly-when-initializing-it.patch
- From: 6.1.147-1
- CVE-2025-38387
- Description:
RDMA/mlx5: Initialize obj_event->obj_sub_list before xa_insert
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38387
- Patch: debian12/6.1.147-1/CVE-2025-38387-rdma-mlx5-initialize-obj-event-obj-sub-list-before-xa-insert.patch
- From: 6.1.147-1
- CVE-2025-38412
- Description:
platform/x86: dell-wmi-sysman: Fix WMI data block retrieval in sysfs callbacks
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38412
- Patch: debian12/6.1.147-1/CVE-2025-38412-platform-x86-dell-wmi-sysman-fix-wmi-data-block-retrieval-in-sysfs-callbacks.patch
- From: 6.1.147-1
- CVE-2025-38350
- Description:
net/sched: Always pass notifications when child class becomes empty
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38350
- Patch: debian12/6.1.147-1/CVE-2025-38350-net-sched-always-pass-notifications-when-child-class-becomes-empty.patch
- From: 6.1.147-1
- CVE-2025-38399
- Description:
scsi: target: Fix NULL pointer dereference in core_scsi3_decode_spec_i_port()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38399
- Patch: debian12/6.1.147-1/CVE-2025-38399-scsi-target-fix-null-pointer-dereference-in-core-scsi3-decode-spec-i-port.patch
- From: 6.1.147-1
- CVE-2025-38386
- Description:
ACPICA: Refuse to evaluate a method if arguments are missing
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38386
- Patch: debian12/6.1.147-1/CVE-2025-38386-acpica-refuse-to-evaluate-a-method-if-arguments-are-missing.patch
- From: 6.1.147-1
- CVE-2025-38375
- Description:
virtio-net: ensure the received length does not exceed allocated size
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38375
- Patch: debian12/6.1.147-1/CVE-2025-38375-virtio-net-ensure-the-received-length-does-not-exceed-allocated-size.patch
- From: 6.1.147-1
- CVE-2025-38385
- Description:
net: usb: lan78xx: fix WARN in __netif_napi_del_locked on disconnect
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38385
- Patch: debian12/6.1.147-1/CVE-2025-38385-net-usb-lan78xx-fix-warn-in-netif-napi-del-locked-on-disconnect.patch
- From: 6.1.147-1
- CVE-2025-38380
- Description:
i2c/designware: Fix an initialization issue
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38380
- Patch: debian12/6.1.147-1/CVE-2025-38380-i2c-designware-fix-an-initialization-issue.patch
- From: 6.1.147-1
- CVE-2025-38466
- Description:
perf: Revert to requiring CAP_SYS_ADMIN for uprobes
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38466
- Patch: debian12/6.1.147-1/CVE-2025-38466-perf-revert-to-requiring-cap-sys-admin-for-uprobes.patch
- From: 6.1.147-1
- CVE-2025-38464
- Description:
tipc: Fix use-after-free in tipc_conn_close().
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38464
- Patch: debian12/6.1.147-1/CVE-2025-38464-tipc-fix-use-after-free-in-tipc-conn-close.patch
- From: 6.1.147-1
- CVE-2025-38462
- Description:
vsock: Fix transport_{g2h,h2g} TOCTOU
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38462
- Patch: debian12/6.1.147-1/CVE-2025-38462-vsock-fix-transport-g2h-h2g-toctou.patch
- From: 6.1.147-1
- CVE-2025-38461
- Description:
vsock: Fix transport_* TOCTOU
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38461
- Patch: debian12/6.1.147-1/CVE-2025-38461-vsock-fix-transport-toctou.patch
- From: 6.1.147-1
- CVE-2025-38460
- Description:
atm: clip: Fix potential null-ptr-deref in to_atmarpd().
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38460
- Patch: debian12/6.1.147-1/CVE-2025-38460-atm-clip-fix-potential-null-ptr-deref-in-to-atmarpd.patch
- From: 6.1.147-1
- CVE-2025-38459
- Description:
atm: clip: Fix infinite recursive call of clip_push().
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38459
- Patch: debian12/6.1.147-1/CVE-2025-38459-atm-clip-fix-infinite-recursive-call-of-clip-push.patch
- From: 6.1.147-1
- CVE-2025-38458
- Description:
atm: clip: Fix NULL pointer dereference in vcc_sendmsg()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38458
- Patch: debian12/6.1.147-1/CVE-2025-38458-atm-clip-fix-null-pointer-dereference-in-vcc-sendmsg.patch
- From: 6.1.147-1
- CVE-2025-38458 CVE-2025-38460
- Description:
atm: clip: Fix NULL pointer dereference in vcc_sendmsg() kpatch
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38460
- Patch: debian12/6.1.147-1/CVE-2025-38458-CVE-2025-38460-atm-clip-fix-null-pointer-dereference-in-vcc-sendmsg-kpatch.patch
- From: 6.1.147-1
- CVE-2025-38457
- Description:
net/sched: Abort __tc_modify_qdisc if parent class does not exist
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38457
- Patch: debian12/6.1.147-1/CVE-2025-38457-net-sched-abort-tc-modify-qdisc-if-parent-class-does-not-exist.patch
- From: 6.1.147-1
- CVE-2025-38455
- Description:
KVM: SVM: Reject SEV{-ES} intra host migration if vCPU creation is in-flight
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38455
- Patch: debian12/6.1.147-1/CVE-2025-38455-kvm-svm-reject-sev-es-intra-host-migration-if-vcpu-creation-is-in-flight.patch
- From: 6.1.147-1
- CVE-2025-27558
- Description:
wifi: prevent A-MSDU attacks in mesh networks
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-27558
- Patch: debian12/6.1.147-1/CVE-2025-27558-wifi-prevent-a-msdu-attacks-in-mesh-networks.patch
- From: 6.1.147-1
- CVE-2025-38445
- Description:
md/raid1: Fix stack memory use after return in raid1_reshape
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38445
- Patch: debian12/6.1.147-1/CVE-2025-38445-md-raid1-fix-stack-memory-use-after-return-in-raid1_reshape.patch
- From: 6.1.147-1
- CVE-2025-38443
- Description:
nbd: fix uaf in nbd_genl_connect() error path
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38443
- Patch: debian12/6.1.147-1/CVE-2025-38443-nbd-fix-uaf-in-nbd-genl-connect-error-path.patch
- From: 6.1.147-1
- CVE-2025-38439
- Description:
bnxt_en: Set DMA unmap len correctly for XDP_REDIRECT
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38439
- Patch: debian12/6.1.147-1/CVE-2025-38439-bnxt-en-set-dma-unmap-len-correctly-for-xdp-redirect.patch
- From: 6.1.147-1
- CVE-2025-38074
- Description:
vhost-scsi: protect vq->log_used with vq->mutex
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38074
- Patch: debian12/6.1.147-1/CVE-2025-38074-vhost-scsi-protect-vq-log-used-with-vq-mutex.patch
- From: 6.1.147-1
- CVE-2025-38497
- Description:
usb: gadget: configfs: Fix OOB read on empty string write
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38497
- Patch: debian12/6.1.147-1/CVE-2025-38497-usb-gadget-configfs-fix-oob-read-on-empty-string-write.patch
- From: 6.1.147-1
- CVE-2025-38495
- Description:
HID: core: ensure the allocated report buffer can contain the reserved report ID
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38495
- Patch: debian12/6.1.147-1/CVE-2025-38495-hid-core-ensure-the-allocated-report-buffer-can-contain-the-reserved-report-id.patch
- From: 6.1.147-1
- CVE-2025-38494
- Description:
HID: core: do not bypass hid_hw_raw_request
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38494
- Patch: debian12/6.1.147-1/CVE-2025-38494-hid-core-do-not-bypass-hid-hw-raw-request.patch
- From: 6.1.147-1
- CVE-2025-38477
- Description:
net/sched: sch_qfq: Fix race condition on qfq_aggregate
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38477
- Patch: debian12/6.1.147-1/CVE-2025-38477-net-sched-sch-qfq-fix-race-condition-on-qfq-aggregate.patch
- From: 6.1.147-1
- CVE-2025-38477
- Description:
net/sched: sch_qfq: Avoid triggering might_sleep in atomic context in qfq_delete_class
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38477
- Patch: debian12/6.1.147-1/CVE-2025-38477-net-sched-sch_qfq-Avoid-triggering-might_sleep-in-atomic-context-in-qfq_delete_class.patch
- From: 6.1.147-1
- CVE-2025-38474
- Description:
usb: net: sierra: check for no status endpoint
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38474
- Patch: debian12/6.1.147-1/CVE-2025-38474-usb-net-sierra-check-for-no-status-endpoint.patch
- From: 6.1.147-1
- CVE-2025-38473
- Description:
Bluetooth: Fix null-ptr-deref in l2cap_sock_resume_cb()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38473
- Patch: debian12/6.1.147-1/CVE-2025-38473-bluetooth-fix-null-ptr-deref-in-l2cap-sock-resume-cb.patch
- From: 6.1.147-1
- CVE-2025-38471
- Description:
tls: always refresh the queue when reading sock
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38471
- Patch: debian12/6.1.147-1/CVE-2025-38471-tls-always-refresh-the-queue-when-reading-sock.patch
- From: 6.1.147-1
- CVE-2025-38468
- Description:
net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38468
- Patch: debian12/6.1.147-1/CVE-2025-38468-net-sched-return-null-when-htb-lookup-leaf-encounters-an-empty-rbtree.patch
- From: 6.1.147-1
- CVE-2025-38499
- Description:
clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38499
- Patch: debian12/6.1.147-1/CVE-2025-38499-clone-private-mnt-make-sure-that-caller-has-cap-sys-admin-in-the-right-userns.patch
- From: 6.1.147-1
- CVE-2025-38086
- Description:
net: ch9200: fix uninitialised access during mii_nway_restart
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38086
- Patch: debian12/6.1.147-1/CVE-2025-38086-net-ch9200-fix-uninitialised-access-during-mii-nway-restart.patch
- From: 6.1.147-1
- CVE-2025-38335
- Description:
PEEMPT_RT config isn't enabled
- CVE:
- Patch: skipped/CVE-2025-38335.patch
- From:
- CVE-2025-38668
- Description:
regulator: core: fix NULL dereference on unbind due to stale coupling data
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38668
- Patch: debian12/6.1.148-1/CVE-2025-38668-regulator-core-fix-null-dereference-on-unbind-due-to-stale-coupling-data.patch
- From: 6.1.148-1
- CVE-2025-38500
- Description:
xfrm: interface: fix use-after-free after changing collect_md xfrm interface
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38500
- Patch: debian12/6.1.148-1/CVE-2025-38500-xfrm-interface-fix-use-after-free-after-changing-collect-md-xfrm-interface.patch
- From: 6.1.148-1
- CVE-2025-38500
- Description:
xfrm: interface: fix use-after-free after changing collect_md xfrm interface
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38500
- Patch: debian12/6.1.148-1/CVE-2025-38500-xfrm-interface-fix-use-after-free-after-changing-collect-md-xfrm-interface-kpatch.patch
- From: 6.1.148-1
- CVE-2025-38664
- Description:
ice: Fix a null pointer dereference in ice_copy_and_init_pkg()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38664
- Patch: debian12/6.1.148-1/CVE-2025-38664-ice-fix-a-null-pointer-dereference-in-ice-copy-and-init-pkg.patch
- From: 6.1.148-1
- CVE-2025-38650
- Description:
hfsplus: remove mutex_lock check in hfsplus_free_extents
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38650
- Patch: debian12/6.1.148-1/CVE-2025-38650-hfsplus-remove-mutex-lock-check-in-hfsplus-free-extents.patch
- From: 6.1.148-1
- CVE-2025-38609
- Description:
PM / devfreq: Check governor before using governor->name
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38609
- Patch: debian12/6.1.148-1/CVE-2025-38609-pm-devfreq-check-governor-before-using-governor-name.patch
- From: 6.1.148-1
- CVE-2025-38604
- Description:
wifi: rtl818x: Kill URBs before clearing tx status queue
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38604
- Patch: debian12/6.1.148-1/CVE-2025-38604-wifi-rtl818x-kill-urbs-before-clearing-tx-status-queue.patch
- From: 6.1.148-1
- CVE-2025-38602
- Description:
iwlwifi: Add missing check for alloc_ordered_workqueue
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38602
- Patch: debian12/6.1.148-1/CVE-2025-38602-iwlwifi-add-missing-check-for-alloc-ordered-workqueue.patch
- From: 6.1.148-1
- CVE-2025-39730
- Description:
NFS: Fix filehandle bounds checking in nfs_fh_to_dentry()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39730
- Patch: debian12/6.1.148-1/CVE-2025-39730-nfs-fix-filehandle-bounds-checking-in-nfs-fh-to-dentry.patch
- From: 6.1.148-1
- CVE-2025-38572
- Description:
ipv6: reject malicious packets in ipv6_gso_segment()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38572
- Patch: debian12/6.1.148-1/CVE-2025-38572-ipv6-reject-malicious-packets-in-ipv6-gso-segment.patch
- From: 6.1.148-1
- CVE-2025-38665
- Description:
can: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_mode
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38665
- Patch: debian12/6.1.148-1/CVE-2025-38665-can-netlink-can-changelink-fix-null-pointer-deref-of-struct-can-priv-do-set-mode.patch
- From: 6.1.148-1
- CVE-2025-38611
- Description:
vmci: Prevent the dispatching of uninitialized payloads
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38611
- Patch: debian12/6.1.148-1/CVE-2025-38611-vmci-prevent-the-dispatching-of-uninitialized-payloads.patch
- From: 6.1.148-1
- CVE-2025-38623
- Description:
Out of scope: powerpc: PowerNV PCI Hotplug: not supported
- CVE:
- Patch: skipped/CVE-2025-38623.patch
- From:
- CVE-2025-38624
- Description:
Out of scope: powerpc: PowerNV PCI Hotplug: not supported
- CVE:
- Patch: skipped/CVE-2025-38624.patch
- From:
- CVE-2025-38576
- Description:
Out of scope: PowerPC architecture isn't supported for current kernel
- CVE:
- Patch: skipped/CVE-2025-38576.patch
- From:
- CVE-2025-38562
- Description:
ksmbd: fix null pointer dereference error in generate_encryptionkey
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38562
- Patch: debian12/6.1.148-1/CVE-2025-38562-ksmbd-fix-null-pointer-dereference-error-in-generate-encryptionkey-6.1.140-1.patch
- From: 6.1.148-1
- CVE-2025-38561
- Description:
ksmbd: fix Preauh_HashValue race condition
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38561
- Patch: debian12/6.1.148-1/CVE-2025-38561-ksmbd-fix-preauh-hashvalue-race-condition.patch
- From: 6.1.148-1
- CVE-2025-38729
- Description:
ALSA: usb-audio: Validate UAC3 power domain descriptors, too
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38729
- Patch: debian12/6.1.153-1/CVE-2025-38729-alsa-usb-audio-validate-uac3-power-domain-descriptors-too.patch
- From: 6.1.153-1
- CVE-2025-38729
- Description:
ALSA: usb-audio: Validate UAC3 power domain descriptors, too
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38729
- Patch: debian12/6.1.153-1/CVE-2025-38729-alsa-usb-audio-validate-uac3-power-domain-descriptors-too-kpatch.patch
- From: 6.1.153-1
- CVE-2025-38713
- Description:
hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38713
- Patch: debian12/6.1.153-1/CVE-2025-38713-hfsplus-fix-slab-out-of-bounds-read-in-hfsplus-uni2asc.patch
- From: 6.1.153-1
- CVE-2025-38706
- Description:
ASoC: core: Check for rtd == NULL in snd_soc_remove_pcm_runtime()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38706
- Patch: debian12/6.1.153-1/CVE-2025-38706-asoc-core-check-for-rtd-null-in-snd-soc-remove-pcm-runtime.patch
- From: 6.1.153-1
- CVE-2025-39751
- Description:
ALSA: hda/ca0132: Fix buffer overflow in add_tuning_control
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39751
- Patch: debian12/6.1.153-1/CVE-2025-39751-alsa-hda-ca0132-fix-buffer-overflow-in-add-tuning-control.patch
- From: 6.1.153-1
- CVE-2025-38702
- Description:
fbdev: fix potential buffer overflow in do_register_framebuffer()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38702
- Patch: debian12/6.1.153-1/CVE-2025-38702-fbdev-fix-potential-buffer-overflow-in-do-register-framebuffer.patch
- From: 6.1.153-1
- CVE-2025-38701
- Description:
ext4: do not BUG when INLINE_DATA_FL lacks system.data xattr
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38701
- Patch: debian12/6.1.153-1/CVE-2025-38701-ext4-do-not-bug-when-inline-data-fl-lacks-system-data-xattr.patch
- From: 6.1.153-1
- CVE-2025-38700
- Description:
scsi: libiscsi: Initialize iscsi_conn->dd_data only if memory is allocated
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38700
- Patch: debian12/6.1.153-1/CVE-2025-38700-scsi-libiscsi-initialize-iscsi-conn-dd-data-only-if-memory-is-allocated.patch
- From: 6.1.153-1
- CVE-2025-38699
- Description:
scsi: bfa: Double-free fix
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38699
- Patch: debian12/6.1.153-1/CVE-2025-38699-scsi-bfa-double-free-fix.patch
- From: 6.1.153-1
- CVE-2025-38698
- Description:
jfs: Regular file corruption check
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38698
- Patch: debian12/6.1.153-1/CVE-2025-38698-jfs-regular-file-corruption-check.patch
- From: 6.1.153-1
- CVE-2025-38697
- Description:
jfs: upper bound check of tree index in dbAllocAG
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38697
- Patch: debian12/6.1.153-1/CVE-2025-38697-jfs-upper-bound-check-of-tree-index-in-dballocag.patch
- From: 6.1.153-1
- CVE-2025-39742
- Description:
RDMA: hfi1: fix possible divide-by-zero in find_hw_thread_mask()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39742
- Patch: debian12/6.1.153-1/CVE-2025-39742-rdma-hfi1-fix-possible-divide-by-zero-in-find-hw-thread-mask.patch
- From: 6.1.153-1
- CVE-2025-38695
- Description:
scsi: lpfc: Check for hdwq null ptr when cleaning up lpfc_vport structure
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38695
- Patch: debian12/6.1.153-1/CVE-2025-38695-scsi-lpfc-check-for-hdwq-null-ptr-when-cleaning-up-lpfc-vport-structure.patch
- From: 6.1.153-1
- CVE-2025-38691
- Description:
pNFS: Fix uninited ptr deref in block/scsi layout
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38691
- Patch: debian12/6.1.153-1/CVE-2025-38691-pnfs-fix-uninited-ptr-deref-in-block-scsi-layout.patch
- From: 6.1.153-1
- CVE-2025-38685
- Description:
fbdev: Fix vmalloc out-of-bounds write in fast_imageblit
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38685
- Patch: debian12/6.1.153-1/CVE-2025-38685-fbdev-fix-vmalloc-out-of-bounds-write-in-fast-imageblit.patch
- From: 6.1.153-1
- CVE-2025-39783
- Description:
PCI: endpoint: Fix configfs group list head handling
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39783
- Patch: debian12/6.1.153-1/CVE-2025-39783-pci-endpoint-fix-configfs-group-list-head-handling.patch
- From: 6.1.153-1
- CVE-2025-39713
- Description:
media: rainshadow-cec: fix TOCTOU race condition in rain_interrupt()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39713
- Patch: debian12/6.1.153-1/CVE-2025-39713-media-rainshadow-cec-fix-toctou-race-condition-in-rain-interrupt.patch
- From: 6.1.153-1
- CVE-2025-39703
- Description:
net, hsr: reject HSR frame if skb can't hold tag
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39703
- Patch: debian12/6.1.153-1/CVE-2025-39703-net-hsr-reject-hsr-frame-if-skb-can-t-hold-tag.patch
- From: 6.1.153-1
- CVE-2025-38681
- Description:
mm/ptdump: take the memory hotplug lock inside ptdump_walk_pgd()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38681
- Patch: debian12/6.1.153-1/CVE-2025-38681-mm-ptdump-take-the-memory-hotplug-lock-inside-ptdump-walk-pgd.patch
- From: 6.1.153-1
- CVE-2025-39691
- Description:
fs/buffer: fix use-after-free when call bh_read() helper
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39691
- Patch: debian12/6.1.153-1/CVE-2025-39691-fs-buffer-fix-use-after-free-when-call-bh-read-helper.patch
- From: 6.1.153-1
- CVE-2025-39770
- Description:
net: gso: Forbid IPv6 TSO with extensions on devices with only IPV6_CSUM
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39770
- Patch: debian12/6.1.153-1/CVE-2025-39770-net-gso-forbid-ipv6-tso-with-extensions-on-devices-with-only-ipv6-csum.patch
- From: 6.1.153-1
- CVE-2025-38735
- Description:
gve: prevent ethtool ops after shutdown
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38735
- Patch: debian12/6.1.153-1/CVE-2025-38735-gve-prevent-ethtool-ops-after-shutdown.patch
- From: 6.1.153-1
- CVE-2025-39817
- Description:
efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39817
- Patch: debian12/6.1.153-1/CVE-2025-39817-efivarfs-fix-slab-out-of-bounds-in-efivarfs-d-compare.patch
- From: 6.1.153-1
- CVE-2025-39824
- Description:
HID: asus: fix UAF via HID_CLAIMED_INPUT validation
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39824
- Patch: debian12/6.1.153-1/CVE-2025-39824-hid-asus-fix-uaf-via-hid-claimed-input-validation.patch
- From: 6.1.153-1
- CVE-2025-37968
- Description:
iio: light: opt3001: fix deadlock due to concurrent flag access
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-37968
- Patch: debian12/6.1.153-1/CVE-2025-37968-iio-light-opt3001-fix-deadlock-due-to-concurrent-flag-access.patch
- From: 6.1.153-1
- CVE-2025-38680
- Description:
media: uvcvideo: Fix 1-byte out-of-bounds read in uvc_parse_format()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38680
- Patch: debian12/6.1.153-1/CVE-2025-38680-media-uvcvideo-fix-1-byte-out-of-bounds-read-in-uvc-parse-format.patch
- From: 6.1.153-1
- CVE-2025-39743
- Description:
jfs: truncate good inode pages when hard link is 0
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39743
- Patch: debian12/6.1.153-1/CVE-2025-39743-jfs-truncate-good-inode-pages-when-hard-link-is-0.patch
- From: 6.1.153-1
- CVE-2025-39865
- Description:
tee: fix NULL pointer dereference in tee_shm_put
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39865
- Patch: debian12/6.1.153-1/CVE-2025-39865-tee-fix-null-pointer-dereference-in-tee-shm-put.patch
- From: 6.1.153-1
- CVE-2025-39866
- Description:
fs: writeback: fix use-after-free in __mark_inode_dirty()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-39866
- Patch: debian12/6.1.153-1/CVE-2025-39866-fs-writeback-fix-use-after-free-in-mark-inode-dirty.patch
- From: 6.1.153-1
- CVE-2025-39844
- Description:
Out of scope: boot time issue
- CVE:
- Patch: skipped/CVE-2025-39844.patch
- From:
- CVE-2025-39845
- Description:
Out of scope: boot time issue
- CVE:
- Patch: skipped/CVE-2025-39845.patch
- From:
- CVE-2025-38601
- Description:
wifi: ath11k: clear initialized flag for deinit-ed srng lists
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38601
- Patch: debian12/6.1.148-1/CVE-2025-38601-wifi-ath11k-clear-initialized-flag-for-deinit-ed-srng-lists.patch
- From: 6.1.148-1
- CVE-2025-38645
- Description:
net/mlx5: Check device memory pointer before usage
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38645
- Patch: debian12/6.1.148-1/CVE-2025-38645-net-mlx5-check-device-memory-pointer-before-usage.patch
- From: 6.1.148-1
- CVE-2025-38553
- Description:
net/sched: Restrict conditions for adding duplicating netems to qdisc tree
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38553
- Patch: debian12/6.1.148-1/CVE-2025-38553-net-sched-restrict-conditions-for-adding-duplicating-netems-to-qdisc-tree.patch
- From: 6.1.148-1
- CVE-2025-38644
- Description:
wifi: mac80211: reject TDLS operations when station is not associated
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38644
- Patch: debian12/6.1.148-1/CVE-2025-38644-wifi-mac80211-reject-tdls-operations-when-station-is-not-associated.patch
- From: 6.1.148-1
- CVE-2025-38581
- Description:
crypto: ccp - Fix crash when rebind ccp device for ccp.ko
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38581
- Patch: debian12/6.1.148-1/CVE-2025-38581-crypto-ccp-fix-crash-when-rebind-ccp-device-for-ccp-ko.patch
- From: 6.1.148-1
- CVE-2025-38574
- Description:
pptp: ensure minimal skb length in pptp_xmit()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38574
- Patch: debian12/6.1.148-1/CVE-2025-38574-pptp-ensure-minimal-skb-length-in-pptp-xmit.patch
- From: 6.1.148-1
- CVE-2025-38574
- Description:
pptp: ensure minimal skb length in pptp_xmit()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38574
- Patch: debian12/6.1.148-1/CVE-2025-38574-pptp-fix-pptp_xmit-error-path.patch
- From: 6.1.148-1
- CVE-2025-38617
- Description:
net/packet: fix a race in packet_set_ring() and packet_notifier()
- CVE: https://security-tracker.debian.org/tracker/CVE-2025-38617
- Patch: debian12/6.1.148-1/CVE-2025-38617-net-packet-fix-a-race-in-packet-set-ring-and-packet-notifier.patch
- From: 6.1.148-1