Debian
Debian Linux: vulnerabilidades y CVE
Debian Linux tiene 10.007 vulnerabilidades publicadas, 34 de ellas en los últimos 12 meses. 1001 son críticas y 122 figuran en el catálogo de explotación activa de CISA.
CVE10.007
Últimos 12 meses34
Críticas1001
Explotadas activamente122
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-39682 | Crítica (9.8) | 2.9% | ⚠ Explotación activa | 5 sept 2025 | In the Linux kernel, the following vulnerability has been resolved: tls: fix handling of zero-length records on the rx_list Each recvmsg() call must process either - only contiguous DATA records (any number of them) -… |
| CVE-2022-0492 | Alta (7.8) | 5.5% | ⚠ Explotación activa | 3 mar 2022 | A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to… |
| CVE-2026-31431 | Alta (7.8) | 3.4% | ⚠ Explotación activa | 22 abr 2026 | In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is… |
| CVE-2021-30952 | Alta (7.8) | 7.0% | ⚠ Explotación activa | 24 ago 2021 | An integer overflow was addressed with improved input validation. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously crafted web content may… |
| CVE-2025-49113 | Alta (8.8) | 99% | ⚠ Explotación activa | 2 jun 2025 | Roundcube Webmail before 1.5.10 and 1.6.x before 1.6.11 allows remote code execution by authenticated users because the _from parameter in a URL is not validated in program/actions/settings/upload.php, leading to PHP… |
| CVE-2026-24061 | Crítica (9.8) | 99% | ⚠ Explotación activa | 21 ene 2026 | telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable. |
| CVE-2025-41244 | Alta (7.8) | 8.4% | ⚠ Explotación activa | 29 sept 2025 | VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by… |
| CVE-2021-21311 | Alta (7.2) | 98% | ⚠ Explotación activa | 11 feb 2021 | Adminer is an open-source database management in a single PHP file. In adminer from version 4.0.0 and before 4.7.9 there is a server-side request forgery vulnerability. Users of Adminer versions bundling all drivers… |
| CVE-2025-32463 | Alta (7.8) | 61% | ⚠ Explotación activa | 30 jun 2025 | Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option. |
| CVE-2025-38352 | Alta (7.8) | 1.3% | ⚠ Explotación activa | 22 jul 2025 | In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() If an exiting non-autoreaping task has already passed… |
| CVE-2025-48384 | Alta (8) | 4.2% | ⚠ Explotación activa | 8 jul 2025 | Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. When reading a config value, Git strips any trailing… |
| CVE-2025-6558 | Alta (8.8) | 9.6% | ⚠ Explotación activa | 15 jul 2025 | Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security… |
| CVE-2019-5418 | Alta (7.5) | 99% | ⚠ Explotación activa | 27 mar 2019 | There is a File Content Disclosure vulnerability in Action View <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 and v3 where specially crafted accept headers can cause contents of arbitrary files on the target system's… |
| CVE-2023-0386 | Alta (7.8) | 7.9% | ⚠ Explotación activa | 22 mar 2023 | A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid… |
| CVE-2025-32433 | Crítica (10) | 99% | ⚠ Explotación activa | 16 abr 2025 | Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and OTP-25.3.2.20, a SSH server may allow an attacker to perform unauthenticated remote code execution… |
| CVE-2025-27363 | Alta (8.1) | 28% | ⚠ Explotación activa | 11 mar 2025 | An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font subglyph structures related to TrueType GX and variable font files. The… |
| CVE-2024-53197 | Alta (7.8) | 3.6% | ⚠ Explotación activa | 27 dic 2024 | In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devices A bogus device can provide a bNumConfigurations value that exceeds the… |
| CVE-2024-53150 | Alta (7.1) | 1.4% | ⚠ Explotación activa | 24 dic 2024 | In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out of bounds reads when finding clock sources The current USB-audio driver code doesn't check bLength of each descriptor at… |
| CVE-2025-24813 | Crítica (9.8) | 100% | ⚠ Explotación activa | 10 mar 2025 | Path Equivalence: 'file.Name' (Internal Dot) leading to Remote Code Execution and/or Information disclosure and/or malicious content added to uploaded files via write enabled Default Servlet in Apache Tomcat. This issue… |
| CVE-2025-24201 | Crítica (10) | 3.8% | ⚠ Explotación activa | 11 mar 2025 | An out-of-bounds write issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in Safari 18.3.1, iOS 15.8.4 and iPadOS 15.8.4, iOS 16.7.11 and iPadOS 16.7.11, iOS 18.3.2 and iPadOS… |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-12996 | Media (6) | 0.81% | — | 30 jul 2026 | A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to potentially cause a denial of service or leak memory via crafted packets during TLS session promotion or… |
| CVE-2026-14355 | Media (5.3) | 0.28% | — | 3 jul 2026 | In PHP versions 8.2.* before 8.2.32, 8.3.* before 8.3.32, 8.4.* before 8.4.23, 8.5.* before 8.5.8, the AES-WRAP-PAD algorithm implementation in OpenSSL extension contains a buffer allocation flaw. The output buffer for… |
| CVE-2026-56968 | Media (5.3) | 0.41% | — | 23 jun 2026 | GNU SASL before 2.2.4 lacks sanitization of a short challenge in _gsasl_ntlm_client_step in the NTLM client, which could result in memory disclosure via a crafted server. |
| CVE-2026-49975 | Alta (7.5) | 4.2% | — | 8 jun 2026 | Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service via malicious HTTP requests. This issue affects Apache HTTP Server: from 2.4.17 through 2.4.67. |
| CVE-2026-9256 | Crítica (9.2) | 2.7% | — | 22 may 2026 | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_module module. This vulnerability exists when a rewrite directive uses a regex pattern with distinct, overlapping Perl-Compatible Regular… |
| CVE-2026-46333 | Alta (7.1) | 0.51% | — | 15 may 2026 | In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fundamentally about the memory image of the task - the concept comes from… |
| CVE-2026-31431 | Alta (7.8) | 3.4% | ⚠ Explotación activa | 22 abr 2026 | In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is… |
| CVE-2026-41082 | Alta (7.8) | 0.22% | — | 16 abr 2026 | In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory. |
| CVE-2026-34757 | Media (4.4) | 0.16% | — | 9 abr 2026 | LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. From 1.0.9 to before 1.6.57, passing a pointer obtained from png_get_PLTE,… |
| CVE-2026-4775 | Alta (7.8) | 0.38% | — | 24 mar 2026 | A flaw was found in the libtiff library. A remote attacker could exploit a signed integer overflow vulnerability in the putcontig8bitYCbCr44tile function by providing a specially crafted TIFF file. This flaw can lead to… |
| CVE-2026-1940 | Alta (7.5) | 0.22% | — | 23 mar 2026 | An incomplete fix for CVE-2024-47778 allows an out-of-bounds read in gst_wavparse_adtl_chunk() function. The patch added a size validation check lsize + 8 > size, but it does not account for the GST_ROUND_UP_2(lsize)… |
| CVE-2025-63261 | Alta (7.8) | 1.0% | — | 20 mar 2026 | AWStats 8.0 is vulnerable to Command Injection via the open function |
| CVE-2026-3497 | Media (6.9) | 1.3% | — | 12 mar 2026 | Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH upstream project… |
| CVE-2026-25506 | Alta (7.8) | 0.28% | — | 10 feb 2026 | MUNGE is an authentication service for creating and validating user credentials. From 0.5 to 0.5.17, local attacker can exploit a buffer overflow vulnerability in munged (the MUNGE authentication daemon) to leak… |
| CVE-2025-64098 | Baja (1.7) | 0.46% | — | 3 feb 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). Prior to versions 3.4.1, 3.3.1, and 2.6.11, when the security mode is enabled, modifying the DATA… |
| CVE-2025-62799 | Alta (7.2) | 0.51% | — | 3 feb 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). Prior to versions 3.4.1, 3.3.1, and 2.6.11, a heap buffer overflow exists in the Fast-DDS DATA_FRAG… |
| CVE-2025-62603 | Baja (1.7) | 0.53% | — | 3 feb 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ParticipantGenericMessage is the DDS Security control-message container that carries not only the… |
| CVE-2025-62602 | Baja (1.7) | 0.52% | — | 3 feb 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). Prior to versions 3.4.1, 3.3.1, and 2.6.11, when the security mode is enabled, modifying the DATA… |
| CVE-2025-62600 | Alta (7.5) | 0.44% | — | 3 feb 2026 | eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Prior to 2.6.11, 2.14.6, 3.2.4, 3.3.1, and 3.4.1, when the security mode is enabled,… |
| CVE-2025-62599 | Alta (7.5) | 0.38% | — | 3 feb 2026 | eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Prior to 2.6.11, 2.14.6, 3.2.4, 3.3.1, and 3.4.1, when the security mode is enabled,… |
| CVE-2026-25061 | Media (5.5) | 0.59% | — | 29 ene 2026 | tcpflow is a TCP/IP packet demultiplexer. In versions up to and including 1.61, wifipcap parses 802.11 management frame elements and performs a length check on the wrong field when handling the TIM element. A crafted… |
| CVE-2026-24765 | Alta (7.8) | 0.39% | — | 27 ene 2026 | PHPUnit is a testing framework for PHP. A vulnerability has been discovered in versions prior to 12.5.8, 11.5.50, 10.5.62, 9.6.33, and 8.5.52 involving unsafe deserialization of code coverage data in PHPT test… |
| CVE-2025-68670 | Crítica (9.8) | 1.4% | — | 27 ene 2026 | xrdp is an open source RDP server. xrdp before v0.10.5 contains an unauthenticated stack-based buffer overflow vulnerability. The issue stems from improper bounds checking when processing user domain information during… |
| CVE-2026-24061 | Crítica (9.8) | 99% | ⚠ Explotación activa | 21 ene 2026 | telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable. |
| CVE-2026-23490 | Alta (7.5) | 0.77% | — | 16 ene 2026 | pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability… |
| CVE-2025-68615 | Crítica (9.8) | 42% | — | 23 dic 2025 | net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue… |
| CVE-2025-6966 | Media (6.9) | 0.14% | — | 5 dic 2025 | NULL pointer dereference in TagSection.keys() in python-apt on APT-based Linux systems allows a local attacker to cause a denial of service (process crash) via a crafted deb822 file with a malformed non-UTF-8 key. |
| CVE-2025-63498 | Media (6.1) | 0.29% | — | 24 nov 2025 | alinto SOGo 5.12.3 is vulnerable to Cross Site Scripting (XSS) via the "userName" parameter. |
| CVE-2025-64512 | Alta (7.8) | 0.31% | — | 10 nov 2025 | Pdfminer.six is a community maintained fork of the original PDFMiner, a tool for extracting information from PDF documents. Prior to version 20251107, pdfminer.six will execute arbitrary code from a malicious pickle… |
| CVE-2025-62230 | Alta (7.3) | 0.28% | — | 30 oct 2025 | A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup. The software frees certain data structures without properly detaching related resources, leading to a… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.