Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Debian Number Of NVD 8836 CRITICAL 973 HIGH 3882 MEDIUM 3638 LOW 343
URL https://www.debian.org/
Explanation It will be supported for about 5 years after release, including the LTS period.
After 5 years, you will need to use a company that provides paid support or update to a newer version.
Tag
  • Linux

Add Information URL
No Type Name URL
1 https://www.debian.org/releases/index.en.html
2 https://wiki.debian.org/LTS
3 https://www.debian.org/lts/security/
4 https://wiki.debian.org/DebianReleases
5 https://wiki.debian.org/LTS/Extended
6 https://www.debian.org/security/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
41 Debian 12 12.7 Aug. 31, 2024 Jan. 1, 2023 7 149 115 10
42 Debian 11 11.11 Aug. 31, 2024 Aug. 14, 2021 124 640 478 23
43 Debian 10 10.13 Sept. 10, 2022 July 6, 2019 Aug. 31, 2022 326 1404 1210 111
44 Debian 9 9.13 July 18, 2020 June 17, 2017 June 30, 2022 569 1739 1553 134
45 Debian 8 8.0 April 25, 2015 June 17, 2018 June 30, 2020 498 1437 1431 106
46 Debian 7 7.1 May 4, 2013 April 25, 2016 May 31, 2018 112 494 587 62
47 Debian 5 5.0.9 Feb. 14, 2009 Feb. 6, 2012 5 70 85 25
48 Debian 4 4.0 April 8, 2007 Feb. 15, 2010 5 92 72 10
49 Debian 3 3.0.23 July 19, 2002 March 31, 2008 7 86 74 24
50 Debian 2 2.5.3-3 July 24, 1998 June 30, 2003 0 48 27 15
51 Debian 1 1.3.1 May 17, 1996 Jan. 1, 2000 365 1655 1387 115
52 Debian 0 0.93 Jan. 1, 1900 Jan. 1, 2000 0 8 1 1
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
41 5.5
-
MEDIUM
Local
In the Linux kernel, the following vulnerability has been resolved: llc: Drop support for ETH_P_TR_802_2. syzbot reported an uninit-value bug below. [0] llc supports ETH_P_802_2 (0x0004) and used … CWE-909
 Missing Initialization of Resource
CVE-2024-26635 cpe:2.3:o:debian:debian_linux:10.0:* 2025-03-11 01:58
2024-03-18
Show GitHub Exploit DB Packet Storm
42 5.5
-
MEDIUM
Local
In the Linux kernel, the following vulnerability has been resolved: crypto: lib/mpi - Fix unexpected pointer access in mpi_ec_init When the mpi_ec_ctx structure is initialized, some fields are not … NVD-CWE-noinfo
CVE-2023-52616 cpe:2.3:o:debian:debian_linux:10.0:* 2025-03-11 00:41
2024-03-18
Show GitHub Exploit DB Packet Storm
43 5.5
-
MEDIUM
Local
In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() syzbot found __ip6_tnl_rcv() could access unitiliazed data [1]. Ca… CWE-908
 Use of Uninitialized Resource
CVE-2024-26641 cpe:2.3:o:debian:debian_linux:10.0:* 2025-03-11 01:58
2024-03-18
Show GitHub Exploit DB Packet Storm
44 4.7
-
MEDIUM
Local
In the Linux kernel, the following vulnerability has been resolved: binder: fix race between mmput() and do_exit() Task A calls binder_update_page_range() to allocate and insert pages on a remote a… CWE-362
Race Condition
CVE-2023-52609 cpe:2.3:o:debian:debian_linux:10.0:* 2025-03-11 00:10
2024-03-18
Show GitHub Exploit DB Packet Storm
45 5.5
-
MEDIUM
Local
In the Linux kernel, the following vulnerability has been resolved: llc: make llc_ui_sendmsg() more robust against bonding changes syzbot was able to trick llc_ui_sendmsg(), allocating an skb with … NVD-CWE-noinfo
CVE-2024-26636 cpe:2.3:o:debian:debian_linux:10.0:* 2025-03-11 01:58
2024-03-18
Show GitHub Exploit DB Packet Storm
46 7.5
-
HIGH
Network
A stack-based buffer overflow vulnerability in gross 0.9.3 through 1.x before 1.0.4 allows remote attackers to trigger a denial of service (grossd daemon crash) or potentially execute arbitrary code … CWE-787
 Out-of-bounds Write
CVE-2023-52159 cpe:2.3:o:debian:debian_linux:10.0:* 2025-02-27 12:34
2024-03-18
Show GitHub Exploit DB Packet Storm
47 7.8
-
HIGH
Local
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic-its: Avoid potential UAF in LPI translation cache There is a potential UAF scenario in the case of an LPI transl… CWE-416
 Use After Free
CVE-2024-26598 cpe:2.3:o:debian:debian_linux:10.0:* 2024-11-21 18:02
2024-02-24
Show GitHub Exploit DB Packet Storm
48 6.5
-
MEDIUM
Network
The implementation of PEAP in wpa_supplicant through 2.10 allows authentication bypass. For a successful attack, wpa_supplicant must be configured to not verify the network's TLS certificate during P… CWE-287
Improper Authentication
CVE-2023-52160 cpe:2.3:o:debian:debian_linux:10.0:* 2024-11-21 17:39
2024-02-23
Show GitHub Exploit DB Packet Storm
49 7.5
-
HIGH
Network
mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. In affected versions mi… NVD-CWE-noinfo
CVE-2024-24814 cpe:2.3:o:debian:debian_linux:10.0:* 2024-11-21 17:59
2024-02-14
Show GitHub Exploit DB Packet Storm
50 5.5
-
MEDIUM
Local
A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursively calls into the code block. The OVS module does … CWE-787
 Out-of-bounds Write
CVE-2024-1151 cpe:2.3:o:debian:debian_linux:10.0:* 2024-11-21 17:49
2024-02-12
Show GitHub Exploit DB Packet Storm