Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
363 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 3.5% | 💥 PoC | Linux KernelNetapp Active IQ Unified ManagerNetapp Cloud BackupNetapp Data Availability Services+3 | 8/12/2019 | 17/6/2026 | In the Linux kernel 5.0.21, mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use-after-free in ext4_put_super in fs/ext4/super.c, related to dump_orphan_list in fs/ext4/super.c. | |
| Modificada | Crítica (9.8) | 4.3% | — | SqliteNetapp Cloud BackupNetapp Ontap Select Deploy Administration UtilityOracle Mysql Workbench+1 | 5/12/2019 | 17/6/2026 | lookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which allows attackers to cause a denial of service or possibly have unspecified other impact. | |
| Modificada | Alta (7.8) | 3.4% | — | Linux KernelNetapp Active IQ Unified ManagerNetapp Cloud BackupNetapp Steelstore Cloud Integrated Storage+1 | 29/11/2019 | 17/6/2026 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and unmounting can lead to a use-after-free in btrfs_queue_work in fs/btrfs/async-thread.c. | |
| Modificada | Media (4.6) | 0.90% | — | Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxFedoraproject Fedora+14 | 18/11/2019 | 17/6/2026 | Two memory leaks in the rtl_usb_probe() function in drivers/net/wireless/realtek/rtlwifi/usb.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption), aka CID-3f9361695113. | |
| Modificada | Alta (7.5) | 3.4% | — | Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management Controller+11 | 18/11/2019 | 17/6/2026 | A memory leak in the adis_update_scan_mode_burst() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-9c0530e898f3. | |
| Modificada | Alta (7.5) | 3.6% | — | Linux KernelNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management ControllerNetapp Cloud Backup+12 | 18/11/2019 | 17/6/2026 | A memory leak in the adis_update_scan_mode() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-ab612b1daf41. | |
| Modificada | Baja (3.3) | 0.79% | — | Linux KernelCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+14 | 18/11/2019 | 17/6/2026 | Two memory leaks in the mwifiex_pcie_init_evt_ring() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering mwifiex_map_pci_memory() failures, aka CID-d10dcb615c8e. | |
| Modificada | Media (4.7) | 0.45% | — | Linux KernelCanonical Ubuntu LinuxFedoraproject FedoraOpensuse Leap+13 | 18/11/2019 | 17/6/2026 | A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CID-a7b2df76b42b. | |
| Modificada | Alta (7.5) | 3.3% | — | Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management Controller+11 | 18/11/2019 | 17/6/2026 | A memory leak in the rpmsg_eptdev_write_iter() function in drivers/rpmsg/rpmsg_char.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy_from_iter_full() failures, aka CID-bbe692e349e2. | |
| Modificada | Alta (7.5) | 5.4% | — | Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxDebian Linux+14 | 18/11/2019 | 17/6/2026 | A memory leak in the gs_can_open() function in drivers/net/can/usb/gs_usb.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() failures, aka CID-fb5be6a7b486. | |
| Modificada | Alta (7.5) | 4.0% | — | Linux KernelNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management ControllerNetapp Cloud Backup+11 | 18/11/2019 | 17/6/2026 | Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering kcalloc() or v3d_job_init() failures, aka CID-29cd13cfd762. | |
| Modificada | Media (5.5) | 0.28% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Improper input validation in the API for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Media (5.5) | 0.28% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Improper access control in the API for the Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.30% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Out of bounds read in a subsystem for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Media (4.4) | 0.35% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 (DCH) or 21.20.x.5077 (aka15.45.5077) may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Alta (7.8) | 0.35% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Pointer corruption in the Unified Shader Compiler in Intel(R) Graphics Drivers before 10.18.14.5074 (aka 15.36.x.5074) may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (5.5) | 0.31% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Insufficient input validation in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6519 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Alta (7.8) | 0.36% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage | 14/11/2019 | 17/6/2026 | Memory corruption in Kernel Mode Driver in Intel(R) Graphics Driver before 26.20.100.6813 (DCH) or 26.20.100.6812 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7) | 0.99% | 💥 PoC | Linux KernelCanonical Ubuntu LinuxOpensuse LeapNetapp Active IQ Unified Manager+14 | 4/11/2019 | 17/6/2026 | An issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is exploitable for privilege escalation on some Linux distributions where local users have /dev/video0 access, but only if the driver happens to be loaded. There are multiple race conditions during streaming stopping in this… | |
| Analizada | Alta (7.8) | 72% | ⚠ Explotación activa💥 Exploit | Google AndroidDebian LinuxCanonical Ubuntu LinuxNetapp Cloud Backup+73 | 11/10/2019 | 17/6/2026 | A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing… | |
| Modificada | Alta (7.8) | 2.2% | — | Openbsd OpensshNetapp Cloud BackupNetapp Steelstore Cloud Integrated StorageSiemens Scalance X204rna Firmware+1 | 9/10/2019 | 17/6/2026 | OpenSSH 7.7 through 7.9 and 8.x before 8.1, when compiled with an experimental key type, has a pre-authentication integer overflow if a client or server is configured to use a crafted XMSS key. This leads to memory corruption and local code execution because of an error in the XMSS key parsing algorithm. NOTE: the… | |
| Modificada | Alta (7.5) | 5.0% | 💥 PoC | TcpdumpApple MAC OS XDebian LinuxFedoraproject Fedora+6 | 3/10/2019 | 17/6/2026 | lmp_print_data_link_subobjs() in print-lmp.c in tcpdump before 4.9.3 lacks certain bounds checks. | |
| Modificada | Crítica (9.8) | 18% | — | Haxx CurlFedoraproject FedoraOpensuse LeapNetapp Cloud Backup+13 | 16/9/2019 | 17/6/2026 | Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3. | |
| Modificada | Crítica (9.8) | 7.5% | — | Haxx CurlFedoraproject FedoraNetapp Cloud BackupNetapp Steelstore+8 | 16/9/2019 | 17/6/2026 | Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3. | |
| Modificada | Media (4.8) | 0.83% | — | Intel 6138 FirmwareIntel 6130t FirmwareIntel 6130 FirmwareIntel 6126t Firmware+238 | 16/9/2019 | 17/6/2026 | A race condition in specific microprocessors using Intel (R) DDIO cache allocation and RDMA may allow an authenticated user to potentially enable partial information disclosure via adjacent access. |