Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2736▼ 485 respecto a la semana anterior
Críticas / altas1304▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
304 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.51% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 2/10/2023 | 17/6/2026 | In wlan firmware, there is a possible firmware assertion due to improper input handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07932637; Issue ID: ALPS07932637. | |
| Modificada | Crítica (9.8) | 0.68% | — | Mediatek Lr11Mediatek Lr12aMediatek Lr13Mediatek Nr15+2 | 2/10/2023 | 17/6/2026 | In CDMA PPP protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: MOLY01068234; Issue ID: ALPS08010003. | |
| Modificada | Media (6.7) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle Android | 4/9/2023 | 17/6/2026 | In connectivity system driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07929848; Issue ID: ALPS07929848. | |
| Modificada | Media (4.4) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle Android | 4/9/2023 | 17/6/2026 | In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588360; Issue ID: ALPS07588360. | |
| Modificada | Media (6.7) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidOpenwrt | 4/9/2023 | 17/6/2026 | In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441589; Issue ID: ALPS07441589. | |
| Modificada | Media (6.5) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340381. | |
| Modificada | Media (6.5) | 0.11% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys_cmdq, there is a possible use after free due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340350. | |
| Modificada | Media (6.5) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340433. | |
| Modificada | Media (4.2) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local denial of service with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354025; Issue ID: ALPS07340108. | |
| Modificada | Media (4.2) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354023; Issue ID: ALPS07340098. | |
| Modificada | Media (4.2) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07197795; Issue ID: ALPS07340357. | |
| Modificada | Media (4.2) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354058; Issue ID: ALPS07340121. | |
| Modificada | Media (4.2) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340119; Issue ID: ALPS07340119. | |
| Modificada | Media (6.5) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354259; Issue ID: ALPS07340477. | |
| Modificada | Media (6.5) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326455; Issue ID: ALPS07326441. | |
| Modificada | Media (6.5) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys, there is a possible out of bounds read and write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326430; Issue ID: ALPS07326430. | |
| Modificada | Media (4.2) | 0.10% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel | 4/9/2023 | 17/6/2026 | In imgsys, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326455; Issue ID: ALPS07326409. | |
| Modificada | Media (6.4) | 0.07% | — | Linuxfoundation YoctoMediatek IOT YoctoGoogle Android | 4/9/2023 | 17/6/2026 | In camsys, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07341261; Issue ID: ALPS07326570. | |
| Modificada | Media (4.4) | 0.09% | — | Mediatek IOT YoctoGoogle Android | 7/8/2023 | 17/6/2026 | In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07944987; Issue ID: ALPS07944987. | |
| Modificada | Alta (7.5) | 0.99% | — | Linuxfoundation YoctoMediatek Mt7603 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+8 | 4/7/2023 | 17/6/2026 | In Wi-Fi, there is a possible low throughput due to misrepresentation of critical information. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220829014; Issue ID: GN20220829014. | |
| Modificada | Media (6.7) | 0.10% | — | Mediatek IOT YoctoGoogle Android | 15/5/2023 | 17/6/2026 | In vcu, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07519103; Issue ID: ALPS07519103. | |
| Modificada | Crítica (9.8) | 1.3% | — | Mediatek En7580 FirmwareMediatek En7528 Firmware | 6/2/2023 | 17/6/2026 | In Boa, there is a possible escalation of privilege due to a stack buffer overflow. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210008; Issue ID: OSBNB00123241. | |
| Modificada | Crítica (9.8) | 1.1% | — | Mediatek En7580 FirmwareMediatek En7528 Firmware | 6/2/2023 | 17/6/2026 | In Boa, there is a possible escalation of privilege due to a missing permission check. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210008; Issue ID: OSBNB00123241. | |
| Modificada | Alta (7.5) | 1.0% | — | Mediatek En7580 FirmwareMediatek En7528 Firmware | 6/2/2023 | 17/6/2026 | In Boa, there is a possible information disclosure due to a missing permission check. This could lead to remote information disclosure to a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210008; Issue ID: OSBNB00123241. | |
| Modificada | Crítica (9.8) | 1.7% | — | Mediatek En7580 FirmwareMediatek En7528 Firmware | 6/2/2023 | 17/6/2026 | In Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210009; Issue ID: OSBNB00123234. |