Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
–

4185 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.5)0.43%—Canonical ApportCanonical Ubuntu Linux6/8/202017/6/2026
An unhandled exception in check_ignored() in apport/report.py can be exploited by a local attacker to cause a denial of service. If the mtime attribute is a string value in apport-ignore.xml, it will trigger an unhandled exception, resulting in a crash. Fixed in 2.20.1-0ubuntu2.24, 2.20.9-0ubuntu7.16,…
ModificadaMedia (5.5)0.39%—X.org X ServerDebian LinuxCanonical Ubuntu Linux5/8/202017/6/2026
A flaw was found in the way xserver memory was not properly initialized. This could leak parts of server memory to the X client. In cases where Xorg server runs with elevated privileges, this could result in possible ASLR bypass. Xorg-server before version 1.20.9 is vulnerable.
ModificadaMedia (6.7)0.46%—X.org Libx11Fedoraproject FedoraCanonical Ubuntu LinuxOpensuse Leap5/8/202017/6/2026
An integer overflow leading to a heap-buffer overflow was found in The X Input Method (XIM) client was implemented in libX11 before version 1.6.10. As per upstream this is security relevant when setuid programs call XIM client functions while running with elevated privileges. No such programs are shipped with Red Hat…
ModificadaBaja (3.3)1.7%—KDE ARKDebian LinuxFedoraproject FedoraOpensuse Leap+13/8/202017/6/2026
In kerfuffle/jobs.cpp in KDE Ark before 20.08.0, a crafted archive can install files outside the extraction directory via ../ directory traversal.
ModificadaMedia (6)0.46%—GNU Grub2Redhat Enterprise LinuxRedhat Enterprise Linux EUSRedhat Enterprise Linux Server AUS+331/7/202017/6/2026
There is an issue with grub2 before version 2.06 while handling symlink on ext filesystems. A filesystem containing a symbolic link with an inode size of UINT32_MAX causes an arithmetic overflow leading to a zero-sized memory allocation with subsequent heap-based buffer overflow.
ModificadaMedia (6)0.48%—GNU Grub2Redhat Enterprise LinuxRedhat Enterprise Linux EUSRedhat Enterprise Linux Server AUS+331/7/202017/6/2026
There is an issue on grub2 before version 2.06 at function read_section_as_string(). It expects a font name to be at max UINT32_MAX - 1 length in bytes but it doesn't verify it before proceed with buffer allocation to read the value from the font value. An attacker may leverage that by crafting a malicious font file…
ModificadaBaja (3.7)5.3%—Linux KernelOpensuse LeapFedoraproject FedoraDebian Linux+1130/7/202017/6/2026
The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c.
ModificadaMedia (5.9)4.1%—LibsshDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux+129/7/202017/6/2026
libssh 0.9.4 has a NULL pointer dereference in tftpserver.c if ssh_buffer_new returns NULL.
ModificadaMedia (6.4)1.6%—GNU Grub2Redhat Enterprise Linux Atomic HostRedhat Openshift Container PlatformRedhat Enterprise Linux+1129/7/202017/6/2026
Integer overflows were discovered in the functions grub_cmd_initrd and grub_initrd_init in the efilinux component of GRUB2, as shipped in Debian, Red Hat, and Ubuntu (the functionality is not included in GRUB2 upstream), leading to a heap-based buffer overflow. These could be triggered by an extremely large number of…
ModificadaMedia (6.4)0.98%—GNU Grub2Redhat Enterprise Linux Atomic HostRedhat Openshift Container PlatformCanonical Ubuntu Linux+1029/7/202017/6/2026
GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing, leading to arbitrary code execution and secure boot restriction bypass. This issue affects GRUB2 version 2.04 and…
ModificadaMedia (6.4)1.4%—GNU Grub2Redhat Enterprise Linux Atomic HostRedhat Openshift Container PlatformCanonical Ubuntu Linux+1029/7/202017/6/2026
GRUB2 fails to validate kernel signature when booted directly without shim, allowing secure boot to be bypassed. This only affects systems where the kernel signing certificate has been imported directly into the secure boot database and the GRUB image is booted directly without the use of shim. This issue affects…
ModificadaMedia (5.9)0.36%—Canonical Ubuntu Linux29/7/202017/6/2026
It was discovered that snapctl user-open allowed altering the $XDG_DATA_DIRS environment variable when calling the system xdg-open. OpenURL() in usersession/userd/launcher.go would alter $XDG_DATA_DIRS to append a path to a directory controlled by the calling snap. A malicious snap could exploit this to bypass…
ModificadaMedia (6.8)0.22%—Canonical SnapdCanonical Ubuntu Linux29/7/202017/6/2026
cloud-init as managed by snapd on Ubuntu Core 16 and Ubuntu Core 18 devices was run without restrictions on every boot, which a physical attacker could exploit by crafting cloud-init user-data/meta-data via external media to perform arbitrary changes on the device to bypass intended security mechanisms such as full…
ModificadaCrítica (9.8)5.2%—Artifex GhostscriptCanonical Ubuntu LinuxOpensuse Leap28/7/202017/6/2026
A memory corruption issue was found in Artifex Ghostscript 9.50 and 9.52. Use of a non-standard PostScript operator can allow overriding of file access controls. The 'rsearch' calculation for the 'post' size resulted in a size that was too large, and could underflow to max uint32_t. This was fixed in commit…
ModificadaMedia (5.3)0.48%—QemuDebian LinuxCanonical Ubuntu Linux28/7/202017/6/2026
hw/net/xgmac.c in the XGMAC Ethernet controller in QEMU before 07-20-2020 has a buffer overflow. This occurs during packet transmission and affects the highbank and midway emulated machines. A guest user or process could use this flaw to crash the QEMU process on the host, resulting in a denial of service or potential…
ModificadaBaja (3.5)1.5%—FreerdpFedoraproject FedoraOpensuse LeapCanonical Ubuntu Linux+127/7/202017/6/2026
In FreeRDP less than or equal to 2.1.2, an integer overflow exists due to missing input sanitation in rdpegfx channel. All FreeRDP clients are affected. The input rectangles from the server are not checked against local surface coordinates and blindly accepted. A malicious server can send data that will crash the…
ModificadaMedia (6.5)7.8%💥 PoCGoogle ChromeOpensuse Backports SLEOpensuse LeapFedoraproject Fedora+722/7/202017/6/2026
Inappropriate implementation in WebRTC in Google Chrome prior to 84.0.4147.89 allowed an attacker in a privileged network position to potentially exploit heap corruption via a crafted SCTP stream.
ModificadaAlta (7.5)3.2%—LuajitDebian LinuxCanonical Ubuntu Linux21/7/202017/6/2026
LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled.
ModificadaAlta (7.5)3.2%—ClamavCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora20/7/202017/6/2026
A vulnerability in the EGG archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.0 - 0.102.3 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a null pointer dereference. An attacker could exploit this…
ModificadaMedia (5.9)2.8%—Gnome Evolution-data-serverDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux17/7/202017/6/2026
evolution-data-server (eds) through 3.36.3 has a STARTTLS buffering issue that affects SMTP and POP3. When a server sends a "begin TLS" response, eds reads additional data and evaluates it in a TLS context, aka "response injection."
ModificadaCrítica (9.8)4.6%—Kramdown Project KramdownDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux17/7/202017/6/2026
The kramdown gem before 2.3.0 for Ruby processes the template option inside Kramdown documents by default, which allows unintended read access (such as template="/etc/passwd") or unintended embedded Ruby code execution (such as a string that begins with template="string://<%= `). NOTE: kramdown is used in Jekyll,…
ModificadaMedia (6.7)1.4%💥 PoCLinux KernelOpensuse LeapCanonical Ubuntu Linux15/7/202017/6/2026
An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel before 5.7.7. Injection of malicious ACPI tables via configfs could be used by attackers to bypass lockdown and secure boot restrictions, aka CID-75b0cea7bf30.
ModificadaMedia (6.7)0.51%—Linux KernelOpensuse LeapCanonical Ubuntu Linux15/7/202017/6/2026
An issue was discovered in drivers/firmware/efi/efi.c in the Linux kernel before 5.4. Incorrect access permissions for the efivar_ssdt ACPI variable could be used by attackers to bypass lockdown or secure boot restrictions, aka CID-1957a85b0032.
ModificadaMedia (4.9)2.0%—Netapp Active IQ Unified ManagerNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter+215/7/202017/6/2026
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of…
ModificadaAlta (7.2)2.0%—Oracle MysqlNetapp Active IQ Unified ManagerNetapp Oncommand InsightNetapp Oncommand Workflow Automation+215/7/202017/6/2026
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of…