Debian Linux Kernel Multiple Vulnerabilities
RISK: High Risk
TYPE: Operating Systems - Linux

Multiple vulnerabilities were identified in Debian Linux Kernel. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege and sensitive information disclosure on the targeted system.
Note:
Exploit in the wild has been detected for CVE-2024-36971. The vulnerability potentially allows an attacker with System execution privileges to perform remote code execution in kernel. The risk level is rated to High Risk.
Exploit in the wild has been detected for CVE-2023-0386. Unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. The vulnerability potentially allows a local attacker to escalate the privileges on the targeted system.
[Updated on 2024-07-16]
Updated System / Technologies affected, Solutions, Vulnerability Identifier and Related Links.
[Updated on 2024-07-17]
Updated System / Technologies affected, Solutions, Vulnerability Identifier and Related Links.
[Updated on 2024-08-12]
Updated Risk Level
[Updated on 2024-08-13]
Updated System / Technologies affected, Solutions, Vulnerability Identifier and Related Links.
[Updated on 2025-06-18]
Updated Description and Related Links.
Impact
- Elevation of Privilege
- Information Disclosure
- Denial of Service
System / Technologies affected
- Debian 10 buster versions prior to 5.10.218-1
- Debian 10 buster versions prior to 4.19.316-1
- Debian 11 bullseye versions prior to 5.10.223-1
- Debian 12 bookworm versions prior to 6.1.99-1
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://lists.debian.org/debian-lts-announce/2024/06/msg00019.html
- https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html
- https://lists.debian.org/debian-security-announce/2024/msg00141.html
- https://lists.debian.org/debian-security-announce/2024/msg00142.html
- https://lists.debian.org/debian-security-announce/2024/msg00159.html
Vulnerability Identifier
- CVE-2021-33630
- CVE-2022-43945
- CVE-2022-48627
- CVE-2022-48666
- CVE-2022-48772
- CVE-2023-0386
- CVE-2023-6040
- CVE-2023-6270
- CVE-2023-7042
- CVE-2023-46838
- CVE-2023-47233
- CVE-2023-52340
- CVE-2023-52429
- CVE-2023-52436
- CVE-2023-52439
- CVE-2023-52443
- CVE-2023-52444
- CVE-2023-52445
- CVE-2023-52449
- CVE-2023-52464
- CVE-2023-52469
- CVE-2023-52470
- CVE-2023-52486
- CVE-2023-52583
- CVE-2023-52587
- CVE-2023-52594
- CVE-2023-52599
- CVE-2023-52600
- CVE-2023-52601
- CVE-2023-52602
- CVE-2023-52603
- CVE-2023-52604
- CVE-2023-52609
- CVE-2023-52612
- CVE-2023-52615
- CVE-2023-52619
- CVE-2023-52620
- CVE-2023-52622
- CVE-2023-52623
- CVE-2023-52628
- CVE-2023-52644
- CVE-2023-52650
- CVE-2023-52670
- CVE-2023-52679
- CVE-2023-52683
- CVE-2023-52691
- CVE-2023-52693
- CVE-2023-52698
- CVE-2023-52699
- CVE-2023-52760
- CVE-2023-52880
- CVE-2024-0340
- CVE-2024-0607
- CVE-2024-1086
- CVE-2024-22099
- CVE-2024-23849
- CVE-2024-23851
- CVE-2024-24857
- CVE-2024-24858
- CVE-2024-24861
- CVE-2024-25739
- CVE-2024-25741
- CVE-2024-26597
- CVE-2024-26600
- CVE-2024-26602
- CVE-2024-26606
- CVE-2024-26615
- CVE-2024-26625
- CVE-2024-26629
- CVE-2024-26633
- CVE-2024-26635
- CVE-2024-26636
- CVE-2024-26642
- CVE-2024-26645
- CVE-2024-26651
- CVE-2024-26663
- CVE-2024-26664
- CVE-2024-26671
- CVE-2024-26675
- CVE-2024-26679
- CVE-2024-26685
- CVE-2024-26696
- CVE-2024-26697
- CVE-2024-26704
- CVE-2024-26720
- CVE-2024-26722
- CVE-2024-26735
- CVE-2024-26744
- CVE-2024-26752
- CVE-2024-26754
- CVE-2024-26763
- CVE-2024-26764
- CVE-2024-26766
- CVE-2024-26772
- CVE-2024-26773
- CVE-2024-26777
- CVE-2024-26778
- CVE-2024-26779
- CVE-2024-26791
- CVE-2024-26793
- CVE-2024-26801
- CVE-2024-26805
- CVE-2024-26816
- CVE-2024-26817
- CVE-2024-26820
- CVE-2024-26825
- CVE-2024-26839
- CVE-2024-26840
- CVE-2024-26845
- CVE-2024-26851
- CVE-2024-26852
- CVE-2024-26857
- CVE-2024-26859
- CVE-2024-26863
- CVE-2024-26874
- CVE-2024-26875
- CVE-2024-26878
- CVE-2024-26880
- CVE-2024-26883
- CVE-2024-26884
- CVE-2024-26889
- CVE-2024-26894
- CVE-2024-26898
- CVE-2024-26901
- CVE-2024-26903
- CVE-2024-26917
- CVE-2024-26922
- CVE-2024-26923
- CVE-2024-26931
- CVE-2024-26934
- CVE-2024-26955
- CVE-2024-26956
- CVE-2024-26965
- CVE-2024-26966
- CVE-2024-26969
- CVE-2024-26973
- CVE-2024-26974
- CVE-2024-26976
- CVE-2024-26981
- CVE-2024-26984
- CVE-2024-26993
- CVE-2024-26994
- CVE-2024-26997
- CVE-2024-27001
- CVE-2024-27008
- CVE-2024-27013
- CVE-2024-27019
- CVE-2024-27020
- CVE-2024-27024
- CVE-2024-27028
- CVE-2024-27043
- CVE-2024-27046
- CVE-2024-27059
- CVE-2024-27074
- CVE-2024-27075
- CVE-2024-27077
- CVE-2024-27078
- CVE-2024-27388
- CVE-2024-27395
- CVE-2024-27396
- CVE-2024-27397
- CVE-2024-27398
- CVE-2024-27399
- CVE-2024-27401
- CVE-2024-27405
- CVE-2024-27410
- CVE-2024-27412
- CVE-2024-27413
- CVE-2024-27416
- CVE-2024-27419
- CVE-2024-27436
- CVE-2024-31076
- CVE-2024-33621
- CVE-2024-33847
- CVE-2024-34027
- CVE-2024-35247
- CVE-2024-35789
- CVE-2024-35806
- CVE-2024-35807
- CVE-2024-35809
- CVE-2024-35811
- CVE-2024-35815
- CVE-2024-35819
- CVE-2024-35821
- CVE-2024-35822
- CVE-2024-35823
- CVE-2024-35825
- CVE-2024-35828
- CVE-2024-35830
- CVE-2024-35835
- CVE-2024-35847
- CVE-2024-35849
- CVE-2024-35877
- CVE-2024-35886
- CVE-2024-35888
- CVE-2024-35893
- CVE-2024-35898
- CVE-2024-35902
- CVE-2024-35910
- CVE-2024-35915
- CVE-2024-35922
- CVE-2024-35925
- CVE-2024-35930
- CVE-2024-35933
- CVE-2024-35935
- CVE-2024-35936
- CVE-2024-35944
- CVE-2024-35947
- CVE-2024-35955
- CVE-2024-35960
- CVE-2024-35969
- CVE-2024-35973
- CVE-2024-35978
- CVE-2024-35982
- CVE-2024-35984
- CVE-2024-35997
- CVE-2024-36004
- CVE-2024-36014
- CVE-2024-36015
- CVE-2024-36016
- CVE-2024-36017
- CVE-2024-36020
- CVE-2024-36270
- CVE-2024-36286
- CVE-2024-36288
- CVE-2024-36484
- CVE-2024-36489
- CVE-2024-36883
- CVE-2024-36886
- CVE-2024-36894
- CVE-2024-36901
- CVE-2024-36902
- CVE-2024-36904
- CVE-2024-36905
- CVE-2024-36919
- CVE-2024-36933
- CVE-2024-36934
- CVE-2024-36938
- CVE-2024-36940
- CVE-2024-36941
- CVE-2024-36946
- CVE-2024-36950
- CVE-2024-36954
- CVE-2024-36959
- CVE-2024-36960
- CVE-2024-36964
- CVE-2024-36971
- CVE-2024-36973
- CVE-2024-36974
- CVE-2024-36978
- CVE-2024-37078
- CVE-2024-37353
- CVE-2024-37356
- CVE-2024-38381
- CVE-2024-38546
- CVE-2024-38547
- CVE-2024-38548
- CVE-2024-38549
- CVE-2024-38552
- CVE-2024-38555
- CVE-2024-38558
- CVE-2024-38559
- CVE-2024-38560
- CVE-2024-38565
- CVE-2024-38567
- CVE-2024-38578
- CVE-2024-38579
- CVE-2024-38582
- CVE-2024-38583
- CVE-2024-38586
- CVE-2024-38587
- CVE-2024-38589
- CVE-2024-38590
- CVE-2024-38596
- CVE-2024-38597
- CVE-2024-38598
- CVE-2024-38599
- CVE-2024-38601
- CVE-2024-38605
- CVE-2024-38607
- CVE-2024-38612
- CVE-2024-38613
- CVE-2024-38615
- CVE-2024-38618
- CVE-2024-38619
- CVE-2024-38621
- CVE-2024-38627
- CVE-2024-38633
- CVE-2024-38634
- CVE-2024-38635
- CVE-2024-38637
- CVE-2024-38659
- CVE-2024-38661
- CVE-2024-38662
- CVE-2024-38780
- CVE-2024-39276
- CVE-2024-39292
- CVE-2024-39298
- CVE-2024-39301
- CVE-2024-39371
- CVE-2024-39467
- CVE-2024-39468
- CVE-2024-39469
- CVE-2024-39471
- CVE-2024-39474
- CVE-2024-39475
- CVE-2024-39476
- CVE-2024-39480
- CVE-2024-39482
- CVE-2024-39484
- CVE-2024-39487
- CVE-2024-39488
- CVE-2024-39489
- CVE-2024-39493
- CVE-2024-39494
- CVE-2024-39495
- CVE-2024-39496
- CVE-2024-39499
- CVE-2024-39500
- CVE-2024-39501
- CVE-2024-39502
- CVE-2024-39503
- CVE-2024-39505
- CVE-2024-39506
- CVE-2024-39507
- CVE-2024-39509
- CVE-2024-39510
- CVE-2024-40899
- CVE-2024-40900
- CVE-2024-40901
- CVE-2024-40902
- CVE-2024-40903
- CVE-2024-40904
- CVE-2024-40905
- CVE-2024-40906
- CVE-2024-40908
- CVE-2024-40910
- CVE-2024-40911
- CVE-2024-40912
- CVE-2024-40913
- CVE-2024-40914
- CVE-2024-40915
- CVE-2024-40916
- CVE-2024-40919
- CVE-2024-40920
- CVE-2024-40921
- CVE-2024-40924
- CVE-2024-40927
- CVE-2024-40929
- CVE-2024-40931
- CVE-2024-40932
- CVE-2024-40934
- CVE-2024-40935
- CVE-2024-40937
- CVE-2024-40938
- CVE-2024-40939
- CVE-2024-40940
- CVE-2024-40941
- CVE-2024-40942
- CVE-2024-40943
- CVE-2024-40945
- CVE-2024-40947
- CVE-2024-40948
- CVE-2024-40953
- CVE-2024-40954
- CVE-2024-40956
- CVE-2024-40957
- CVE-2024-40958
- CVE-2024-40959
- CVE-2024-40960
- CVE-2024-40961
- CVE-2024-40963
- CVE-2024-40966
- CVE-2024-40967
- CVE-2024-40968
- CVE-2024-40970
- CVE-2024-40971
- CVE-2024-40974
- CVE-2024-40976
- CVE-2024-40977
- CVE-2024-40978
- CVE-2024-40980
- CVE-2024-40981
- CVE-2024-40983
- CVE-2024-40984
- CVE-2024-40987
- CVE-2024-40988
- CVE-2024-40989
- CVE-2024-40990
- CVE-2024-40993
- CVE-2024-40994
- CVE-2024-40995
- CVE-2024-40996
- CVE-2024-41000
- CVE-2024-41001
- CVE-2024-41002
- CVE-2024-41004
- CVE-2024-41005
- CVE-2024-41006
- CVE-2024-41007
- CVE-2024-41009
- CVE-2024-41012
- CVE-2024-41015
- CVE-2024-41017
- CVE-2024-41020
- CVE-2024-41022
- CVE-2024-41034
- CVE-2024-41035
- CVE-2024-41040
- CVE-2024-41041
- CVE-2024-41044
- CVE-2024-41046
- CVE-2024-41049
- CVE-2024-41055
- CVE-2024-41059
- CVE-2024-41063
- CVE-2024-41064
- CVE-2024-41065
- CVE-2024-41068
- CVE-2024-41070
- CVE-2024-41072
- CVE-2024-41077
- CVE-2024-41078
- CVE-2024-41081
- CVE-2024-41090
- CVE-2024-41091
- CVE-2024-42101
- CVE-2024-42102
- CVE-2024-42104
- CVE-2024-42105
- CVE-2024-42106
- CVE-2024-42115
- CVE-2024-42119
- CVE-2024-42120
- CVE-2024-42121
- CVE-2024-42124
- CVE-2024-42127
- CVE-2024-42131
- CVE-2024-42137
- CVE-2024-42143
- CVE-2024-42145
- CVE-2024-42148
- CVE-2024-42152
- CVE-2024-42153
- CVE-2024-42154
- CVE-2024-42157
- CVE-2024-42161
- CVE-2024-42223
- CVE-2024-42224
- CVE-2024-42229
- CVE-2024-42232
- CVE-2024-42236
- CVE-2024-42244
- CVE-2024-42247
Source
Related Link
- https://lists.debian.org/debian-lts-announce/2024/06/msg00019.html
- https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html
- https://lists.debian.org/debian-security-announce/2024/msg00141.html
- https://lists.debian.org/debian-security-announce/2024/msg00142.html
- https://lists.debian.org/debian-security-announce/2024/msg00159.html
- https://www.cisa.gov/news-events/alerts/2025/06/17/cisa-adds-one-known-exploited-vulnerability-catalog
Related Tags
Share with
