Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2736▼ 485 respecto a la semana anterior
Críticas / altas1304▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
–

304 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)0.51%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel2/10/202317/6/2026
In wlan firmware, there is a possible firmware assertion due to improper input handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07932637; Issue ID: ALPS07932637.
ModificadaCrítica (9.8)0.68%—Mediatek Lr11Mediatek Lr12aMediatek Lr13Mediatek Nr15+22/10/202317/6/2026
In CDMA PPP protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privilege needed. User interaction is not needed for exploitation. Patch ID: MOLY01068234; Issue ID: ALPS08010003.
ModificadaMedia (6.7)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle Android4/9/202317/6/2026
In connectivity system driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07929848; Issue ID: ALPS07929848.
ModificadaMedia (4.4)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle Android4/9/202317/6/2026
In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07588360; Issue ID: ALPS07588360.
ModificadaMedia (6.7)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidOpenwrt4/9/202317/6/2026
In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441589; Issue ID: ALPS07441589.
ModificadaMedia (6.5)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340381.
ModificadaMedia (6.5)0.11%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys_cmdq, there is a possible use after free due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340350.
ModificadaMedia (6.5)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340433; Issue ID: ALPS07340433.
ModificadaMedia (4.2)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local denial of service with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354025; Issue ID: ALPS07340108.
ModificadaMedia (4.2)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354023; Issue ID: ALPS07340098.
ModificadaMedia (4.2)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07197795; Issue ID: ALPS07340357.
ModificadaMedia (4.2)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354058; Issue ID: ALPS07340121.
ModificadaMedia (4.2)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340119; Issue ID: ALPS07340119.
ModificadaMedia (6.5)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354259; Issue ID: ALPS07340477.
ModificadaMedia (6.5)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326455; Issue ID: ALPS07326441.
ModificadaMedia (6.5)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys, there is a possible out of bounds read and write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326430; Issue ID: ALPS07326430.
ModificadaMedia (4.2)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidLinux Kernel4/9/202317/6/2026
In imgsys, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326455; Issue ID: ALPS07326409.
ModificadaMedia (6.4)0.07%—Linuxfoundation YoctoMediatek IOT YoctoGoogle Android4/9/202317/6/2026
In camsys, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07341261; Issue ID: ALPS07326570.
ModificadaMedia (4.4)0.09%—Mediatek IOT YoctoGoogle Android7/8/202317/6/2026
In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07944987; Issue ID: ALPS07944987.
ModificadaAlta (7.5)0.99%—Linuxfoundation YoctoMediatek Mt7603 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+84/7/202317/6/2026
In Wi-Fi, there is a possible low throughput due to misrepresentation of critical information. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220829014; Issue ID: GN20220829014.
ModificadaMedia (6.7)0.10%—Mediatek IOT YoctoGoogle Android15/5/202317/6/2026
In vcu, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07519103; Issue ID: ALPS07519103.
ModificadaCrítica (9.8)1.3%—Mediatek En7580 FirmwareMediatek En7528 Firmware6/2/202317/6/2026
In Boa, there is a possible escalation of privilege due to a stack buffer overflow. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210008; Issue ID: OSBNB00123241.
ModificadaCrítica (9.8)1.1%—Mediatek En7580 FirmwareMediatek En7528 Firmware6/2/202317/6/2026
In Boa, there is a possible escalation of privilege due to a missing permission check. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210008; Issue ID: OSBNB00123241.
ModificadaAlta (7.5)1.0%—Mediatek En7580 FirmwareMediatek En7528 Firmware6/2/202317/6/2026
In Boa, there is a possible information disclosure due to a missing permission check. This could lead to remote information disclosure to a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210008; Issue ID: OSBNB00123241.
ModificadaCrítica (9.8)1.7%—Mediatek En7580 FirmwareMediatek En7528 Firmware6/2/202317/6/2026
In Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210009; Issue ID: OSBNB00123234.
Orbitaley — Vulnerabilidades