Debian 12 Linux 6.12 Update Addresses 414 Kernel CVEs

P1 — VALIDATE AND UPDATECVSS: NOT PROVIDEDEXPLOITATION: NOT STATED

Quick Answer

Debian published DLA-4788-1 for the linux-6.12 package in Debian 12 bookworm, addressing 414 CVEs and additional stable-series fixes. Debian states that the security issues may lead to privilege escalation, denial of service, or information leaks and fixes them in 6.12.107-1~deb12u1.

Match The Debian Release And Kernel Package

What to do now: Identify Debian 12 bookworm systems using the linux-6.12 package, record installed and running kernel versions, apply Debian's supported update to 6.12.107-1~deb12u1, and complete the required runtime or reboot validation.

Open the authoritative advisory

Last verified: 2026-09-20 UTC. Recheck the Debian LTS advisory and package repository before changing production.

Scope And Authority

Product scopeDebian 12 bookworm linux-6.12 package
AdvisoryDLA-4788-1
CVE count414
Authoritative release date2026-09-19 20:44:54 UTC
Authority revision date2026-09-19
Fixed version6.12.107-1~deb12u1
Authority severityNot provided by the authority
CVSS base scoreNot provided by the authority
CVSS severityNot provided by the authority
Exploitation statusNot stated by Debian; no exploitation claim is inferred.

What Debian Changed

Debian's update covers kernel vulnerabilities that may result in privilege escalation, denial of service, or information leaks. It also incorporates stable updates 6.12.102 through 6.12.107 and adds drivers for Alcor card readers. The breadth of the advisory does not establish that every system, kernel configuration, device, or workload is affected by every listed CVE.

What To Validate Now

  1. Inventory. Identify Debian 12 bookworm systems, the installed linux-6.12 package, running kernel, architecture, enabled modules, and workload owner.
  2. Match. Use Debian package and security-tracker data to establish applicability; do not transfer upstream or other-distribution version assumptions to Debian builds.
  3. Remediate. Apply the Debian-supported package update to 6.12.107-1~deb12u1 through approved repositories and change control.
  4. Activate. Determine whether reboot or other runtime action is required, then verify the running kernel rather than relying only on package-manager success.
  5. Validate. Test boot, networking, storage, virtualization, security controls, monitoring, and representative workloads; account for the additional stable fixes and driver changes.

Operational Cautions

A kernel package can be installed while an older kernel remains active. Coordinate reboot windows and rollback media, validate out-of-band access where appropriate, and do not remove the prior known-good kernel until service health is established under the updated kernel.

CVEs Listed In DLA-4788-1

Show all 414 CVE identifiers
  • CVE-2025-38525
  • CVE-2025-40054
  • CVE-2025-40074
  • CVE-2026-43197
  • CVE-2026-53092
  • CVE-2026-64017
  • CVE-2026-64216
  • CVE-2026-64581
  • CVE-2026-64586
  • CVE-2026-68082
  • CVE-2026-68118
  • CVE-2026-68132
  • CVE-2026-68138
  • CVE-2026-68159
  • CVE-2026-68166
  • CVE-2026-68169
  • CVE-2026-68198
  • CVE-2026-68253
  • CVE-2026-68254
  • CVE-2026-68264
  • CVE-2026-68266
  • CVE-2026-68267
  • CVE-2026-68273
  • CVE-2026-68276
  • CVE-2026-68322
  • CVE-2026-68367
  • CVE-2026-68431
  • CVE-2026-68451
  • CVE-2026-68452
  • CVE-2026-68480
  • CVE-2026-72111
  • CVE-2026-74440
  • CVE-2026-74441
  • CVE-2026-74442
  • CVE-2026-74443
  • CVE-2026-74444
  • CVE-2026-74445
  • CVE-2026-74446
  • CVE-2026-74447
  • CVE-2026-74448
  • CVE-2026-74450
  • CVE-2026-74451
  • CVE-2026-74452
  • CVE-2026-74453
  • CVE-2026-74454
  • CVE-2026-74455
  • CVE-2026-74456
  • CVE-2026-74457
  • CVE-2026-74458
  • CVE-2026-74459
  • CVE-2026-74460
  • CVE-2026-74461
  • CVE-2026-74463
  • CVE-2026-74464
  • CVE-2026-74465
  • CVE-2026-74467
  • CVE-2026-74468
  • CVE-2026-74469
  • CVE-2026-74470
  • CVE-2026-74471
  • CVE-2026-74472
  • CVE-2026-74473
  • CVE-2026-74474
  • CVE-2026-74475
  • CVE-2026-74476
  • CVE-2026-74478
  • CVE-2026-74479
  • CVE-2026-74480
  • CVE-2026-74481
  • CVE-2026-74482
  • CVE-2026-74483
  • CVE-2026-74484
  • CVE-2026-74485
  • CVE-2026-74487
  • CVE-2026-74488
  • CVE-2026-74490
  • CVE-2026-74492
  • CVE-2026-74493
  • CVE-2026-74494
  • CVE-2026-74495
  • CVE-2026-74497
  • CVE-2026-74498
  • CVE-2026-74499
  • CVE-2026-74500
  • CVE-2026-74501
  • CVE-2026-74502
  • CVE-2026-74503
  • CVE-2026-74504
  • CVE-2026-74505
  • CVE-2026-74507
  • CVE-2026-74508
  • CVE-2026-74509
  • CVE-2026-74510
  • CVE-2026-74512
  • CVE-2026-74514
  • CVE-2026-74515
  • CVE-2026-74516
  • CVE-2026-74517
  • CVE-2026-74518
  • CVE-2026-74519
  • CVE-2026-74522
  • CVE-2026-74523
  • CVE-2026-74524
  • CVE-2026-74525
  • CVE-2026-74531
  • CVE-2026-74532
  • CVE-2026-74535
  • CVE-2026-74536
  • CVE-2026-74540
  • CVE-2026-74541
  • CVE-2026-74543
  • CVE-2026-74545
  • CVE-2026-74546
  • CVE-2026-74547
  • CVE-2026-74548
  • CVE-2026-74549
  • CVE-2026-74550
  • CVE-2026-74551
  • CVE-2026-74552
  • CVE-2026-74553
  • CVE-2026-74555
  • CVE-2026-74556
  • CVE-2026-74557
  • CVE-2026-74563
  • CVE-2026-74564
  • CVE-2026-74565
  • CVE-2026-74566
  • CVE-2026-74567
  • CVE-2026-74569
  • CVE-2026-74572
  • CVE-2026-74574
  • CVE-2026-74575
  • CVE-2026-74576
  • CVE-2026-74577
  • CVE-2026-74579
  • CVE-2026-74580
  • CVE-2026-74581
  • CVE-2026-74582
  • CVE-2026-74583
  • CVE-2026-74585
  • CVE-2026-74586
  • CVE-2026-74587
  • CVE-2026-74588
  • CVE-2026-74589
  • CVE-2026-74590
  • CVE-2026-74592
  • CVE-2026-74594
  • CVE-2026-74595
  • CVE-2026-74597
  • CVE-2026-74598
  • CVE-2026-74599
  • CVE-2026-74601
  • CVE-2026-74602
  • CVE-2026-74603
  • CVE-2026-74604
  • CVE-2026-74606
  • CVE-2026-74607
  • CVE-2026-74608
  • CVE-2026-74609
  • CVE-2026-74610
  • CVE-2026-74612
  • CVE-2026-74613
  • CVE-2026-74614
  • CVE-2026-74615
  • CVE-2026-74616
  • CVE-2026-74618
  • CVE-2026-74619
  • CVE-2026-74620
  • CVE-2026-74621
  • CVE-2026-74622
  • CVE-2026-74623
  • CVE-2026-74624
  • CVE-2026-74625
  • CVE-2026-74626
  • CVE-2026-74628
  • CVE-2026-74630
  • CVE-2026-74631
  • CVE-2026-74632
  • CVE-2026-74634
  • CVE-2026-74635
  • CVE-2026-74636
  • CVE-2026-74637
  • CVE-2026-74641
  • CVE-2026-74644
  • CVE-2026-74646
  • CVE-2026-74647
  • CVE-2026-74648
  • CVE-2026-74649
  • CVE-2026-74650
  • CVE-2026-74651
  • CVE-2026-74653
  • CVE-2026-74654
  • CVE-2026-74655
  • CVE-2026-74656
  • CVE-2026-74657
  • CVE-2026-74658
  • CVE-2026-74659
  • CVE-2026-74660
  • CVE-2026-74661
  • CVE-2026-74662
  • CVE-2026-74663
  • CVE-2026-74664
  • CVE-2026-74665
  • CVE-2026-74666
  • CVE-2026-74667
  • CVE-2026-74668
  • CVE-2026-74669
  • CVE-2026-74670
  • CVE-2026-74671
  • CVE-2026-74672
  • CVE-2026-74673
  • CVE-2026-74675
  • CVE-2026-74676
  • CVE-2026-74677
  • CVE-2026-74678
  • CVE-2026-74679
  • CVE-2026-74680
  • CVE-2026-74682
  • CVE-2026-74683
  • CVE-2026-74684
  • CVE-2026-74685
  • CVE-2026-74688
  • CVE-2026-74689
  • CVE-2026-74691
  • CVE-2026-74692
  • CVE-2026-74693
  • CVE-2026-74694
  • CVE-2026-74696
  • CVE-2026-74700
  • CVE-2026-74701
  • CVE-2026-74704
  • CVE-2026-74705
  • CVE-2026-74710
  • CVE-2026-74712
  • CVE-2026-74714
  • CVE-2026-74717
  • CVE-2026-74718
  • CVE-2026-74719
  • CVE-2026-74720
  • CVE-2026-74722
  • CVE-2026-74724
  • CVE-2026-74725
  • CVE-2026-74726
  • CVE-2026-74730
  • CVE-2026-74732
  • CVE-2026-74736
  • CVE-2026-74737
  • CVE-2026-74739
  • CVE-2026-74740
  • CVE-2026-74742
  • CVE-2026-74743
  • CVE-2026-74744
  • CVE-2026-74746
  • CVE-2026-74748
  • CVE-2026-80522
  • CVE-2026-80525
  • CVE-2026-80526
  • CVE-2026-80527
  • CVE-2026-80528
  • CVE-2026-80529
  • CVE-2026-80530
  • CVE-2026-80531
  • CVE-2026-80532
  • CVE-2026-80533
  • CVE-2026-80534
  • CVE-2026-80535
  • CVE-2026-80536
  • CVE-2026-80539
  • CVE-2026-80540
  • CVE-2026-80541
  • CVE-2026-80547
  • CVE-2026-80548
  • CVE-2026-80549
  • CVE-2026-80550
  • CVE-2026-80551
  • CVE-2026-80552
  • CVE-2026-80553
  • CVE-2026-80554
  • CVE-2026-80555
  • CVE-2026-80556
  • CVE-2026-80557
  • CVE-2026-80558
  • CVE-2026-80559
  • CVE-2026-80560
  • CVE-2026-80561
  • CVE-2026-80562
  • CVE-2026-80563
  • CVE-2026-80565
  • CVE-2026-80566
  • CVE-2026-80567
  • CVE-2026-80568
  • CVE-2026-80569
  • CVE-2026-80570
  • CVE-2026-80572
  • CVE-2026-80573
  • CVE-2026-80574
  • CVE-2026-80575
  • CVE-2026-80576
  • CVE-2026-80577
  • CVE-2026-80578
  • CVE-2026-80583
  • CVE-2026-80584
  • CVE-2026-80585
  • CVE-2026-80586
  • CVE-2026-80587
  • CVE-2026-80589
  • CVE-2026-80590
  • CVE-2026-80678
  • CVE-2026-80679
  • CVE-2026-80680
  • CVE-2026-80681
  • CVE-2026-80684
  • CVE-2026-80686
  • CVE-2026-80689
  • CVE-2026-80691
  • CVE-2026-80694
  • CVE-2026-80695
  • CVE-2026-80696
  • CVE-2026-80700
  • CVE-2026-80702
  • CVE-2026-80703
  • CVE-2026-80704
  • CVE-2026-80706
  • CVE-2026-80707
  • CVE-2026-80708
  • CVE-2026-80709
  • CVE-2026-80710
  • CVE-2026-80711
  • CVE-2026-80714
  • CVE-2026-80715
  • CVE-2026-80716
  • CVE-2026-80717
  • CVE-2026-80718
  • CVE-2026-80722
  • CVE-2026-80723
  • CVE-2026-80725
  • CVE-2026-80726
  • CVE-2026-80727
  • CVE-2026-80728
  • CVE-2026-80730
  • CVE-2026-80731
  • CVE-2026-80732
  • CVE-2026-80733
  • CVE-2026-80736
  • CVE-2026-80737
  • CVE-2026-80739
  • CVE-2026-80742
  • CVE-2026-80743
  • CVE-2026-80744
  • CVE-2026-80749
  • CVE-2026-80752
  • CVE-2026-80754
  • CVE-2026-80756
  • CVE-2026-80757
  • CVE-2026-80759
  • CVE-2026-80763
  • CVE-2026-80764
  • CVE-2026-80765
  • CVE-2026-80767
  • CVE-2026-80770
  • CVE-2026-80771
  • CVE-2026-80772
  • CVE-2026-80779
  • CVE-2026-80781
  • CVE-2026-80782
  • CVE-2026-80784
  • CVE-2026-80788
  • CVE-2026-80789
  • CVE-2026-80790
  • CVE-2026-80791
  • CVE-2026-80792
  • CVE-2026-80793
  • CVE-2026-80794
  • CVE-2026-80795
  • CVE-2026-80797
  • CVE-2026-80798
  • CVE-2026-80799
  • CVE-2026-80800
  • CVE-2026-80801
  • CVE-2026-80802
  • CVE-2026-80803
  • CVE-2026-80805
  • CVE-2026-80808
  • CVE-2026-80809
  • CVE-2026-80812
  • CVE-2026-80814
  • CVE-2026-80815
  • CVE-2026-80819
  • CVE-2026-80820
  • CVE-2026-80823
  • CVE-2026-80887
  • CVE-2026-80888
  • CVE-2026-80889
  • CVE-2026-80890
  • CVE-2026-80891
  • CVE-2026-80892
  • CVE-2026-80893
  • CVE-2026-80894
  • CVE-2026-80901
  • CVE-2026-80902
  • CVE-2026-80903
  • CVE-2026-80904
  • CVE-2026-80906
  • CVE-2026-80907
  • CVE-2026-80908
  • CVE-2026-80909
  • CVE-2026-80910
  • CVE-2026-80911
  • CVE-2026-80912
  • CVE-2026-80913
  • CVE-2026-80915
  • CVE-2026-80916
  • CVE-2026-80917
  • CVE-2026-80918

Evidence To Retain

  • Asset, service, environment, and owner identifiers used for the applicability decision.
  • UTC timestamps and before-and-after package or dependency versions.
  • Change approval, package-manager or build output, validation results, and any exception or rollback record.
  • The authoritative advisory and security-tracker evidence used at the time of the decision.

Related TechGeeks Resources

Authoritative References

Correction policy: If Debian changes affected versions, fixed versions, severity, exploitation information, mitigations, or required action, TechGeeks will update this notice and its verification date.