2025-03-14 21:59:59 -06:00
|
|
|
# debsecan
|
|
|
|
|
|
|
|
|
|
> Debian Security Analyzer, a tool to list vulnerabilities on a particular Debian installation.
|
2025-05-08 12:26:01 -06:00
|
|
|
> More information: <https://manned.org/debsecan>.
|
2025-03-14 21:59:59 -06:00
|
|
|
|
|
|
|
|
- List vulnerable installed packages on the current host:
|
|
|
|
|
|
|
|
|
|
`debsecan`
|
|
|
|
|
|
|
|
|
|
- List vulnerable installed packages of a specific suite:
|
|
|
|
|
|
|
|
|
|
`debsecan --suite {{release_code_name}}`
|
|
|
|
|
|
|
|
|
|
- List only fixed vulnerabilities:
|
|
|
|
|
|
|
|
|
|
`debsecan --suite {{release_code_name}} --only-fixed`
|
|
|
|
|
|
|
|
|
|
- List only fixed vulnerabilities of unstable ("sid") and mail to root:
|
|
|
|
|
|
|
|
|
|
`debsecan --suite {{sid}} --only-fixed --format {{report}} --mailto {{root}} --update-history`
|
|
|
|
|
|
|
|
|
|
- Upgrade vulnerable installed packages:
|
|
|
|
|
|
|
|
|
|
`sudo apt upgrade $(debsecan --only-fixed --format {{packages}})`
|