[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index] [SECURITY] [DSA 6274-1] linux security update To: debian-security-announce@lists.debian.org Subject: [SECURITY] [DSA 6274-1] linux security update From: Salvatore Bonaccorso <carnil@debian.org> Date: Fri, 15 May 2026 17:53:16 +0000 Message-id: <[🔎] E1wNwiq-0000000CeyI-2MBC@seger.debian.org> Reply-to: debian-security-announce-request@lists.debian.org -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6274-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso May 15, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : linux CVE ID : CVE-2026-31499 CVE-2026-43088 CVE-2026-43109 CVE-2026-43220 CVE-2026-43490 CVE-2026-46333 Debian Bug : 1119093 1131025 1135313 Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks. For the stable distribution (trixie), these problems have been fixed in version 6.12.88-1. We recommend that you upgrade your linux packages. For the detailed security status of linux please refer to its security tracker page at: https://security-tracker.debian.org/tracker/linux Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmoHXGBfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQACgkQBUy48xND z0QSCRAAlp+Kpnw1+Mmb3FugYQoCWR44Xquf+rizlJUJjf4qYkyuC/yWW8PsYtRP px5z1WERfRQDLU6WfU/XECUvlPxIKgBj0RXJBMNQXxtNt8OTfw1ZH3UuQbkRF6kb 0dSLaGC3Q3TIufzjjNqGZRVyW58DPiAVvy1u37TzK1vnpl8uQdTFAsaujBOTE9sm vkSbVZVowcy0JxCsekYlFGC0s+zvy+bsvA8Fg4HlkaRMyoVofxkoPdx26Ta/wrlW HL6e0rzJxpWhnJ2yZ7wrqzQytg3W+ProjltwbNddHj01jkdUnKVhjda9wUiVqMMR +T4vkQYbp95Gl+EdOt6L5NG58+UMDNHEFud3iaxgQgekraHy1l1C9GHwfHD9UJ+5 Rar9a071vgLmm+WnnsQ3jXUqQPFtwO2mInNI7flSN+VAVODyq1RAeRbL412oQ192 wehqVACJk6QAT3zDtjOvp702IcB5JjZTrsfLLcVS0mw6Jj1cNXC70UYVVUcBNRLX ClZn8bK+qgpy17SbuiJM2HunLb7yF6NJX/VFDp0bzBzM9T+fDz4rGkPm2OD56oMh vFtrAN/38IReOY00O7fqDoO/VSv7f5Fgh5t0GW4woasaGDsaqZw8lLqDYnGZarTX Lx9zj6TJn8TfF6m46kNkqCkvDBuFxEg5B+WLK5l9QCefsBAOplU= =Dp0J -----END PGP SIGNATURE----- Reply to: debian-security-announce@lists.debian.org Salvatore Bonaccorso (on-list) Salvatore Bonaccorso (off-list) Prev by Date: [SECURITY] [DSA 6273-1] chromium security update Next by Date: [SECURITY] [DSA 6275-1] linux security update Previous by thread: [SECURITY] [DSA 6273-1] chromium security update Next by thread: [SECURITY] [DSA 6275-1] linux security update Index(es): Date Thread
This Debian Security Advisory addresses multiple vulnerabilities (CVE-2026-31499, CVE-2026-43088, CVE-2026-43109, CVE-2026-43220, CVE-2026-43490, CVE-2026-46333) in the Linux kernel that could lead to privilege escalation, denial of service, or information leaks. For the Debian stable distribution (trixie), these issues are fixed in linux kernel version 6.12.88-1. The NVD data indicates specific affected upstream kernel version ranges, such as CVE-2026-31499 affecting Linux kernels from 6.6.84 to before 6.7, from 6.12.20 to before 6.13, from 6.13.8 to before 6.14, from 6.14.1 to before 6.18.21, and from 6.19 to before 6.19.11.