Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2722▼ 518 respecto a la semana anterior
Críticas / altas1296▼ 206 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
1059 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 5.0% | — | Mozilla FirefoxMozilla ThunderbirdDebian LinuxCanonical Ubuntu Linux+6 | 28/2/2019 | 17/6/2026 | A buffer overflow can occur in the Skia library during buffer offset calculations with hardware accelerated canvas 2D actions due to the use of 32-bit calculations instead of 64-bit. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.4, Firefox ESR < 60.4, and Firefox < 64. | |
| Modificada | Crítica (9.8) | 9.6% | — | Mozilla FirefoxMozilla ThunderbirdDebian LinuxCanonical Ubuntu Linux+6 | 28/2/2019 | 17/6/2026 | A use-after-free vulnerability can occur after deleting a selection element due to a weak reference to the select element in the options collection. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.4, Firefox ESR < 60.4, and Firefox < 64. | |
| Modificada | Crítica (9.8) | 3.2% | — | Mozilla FirefoxMozilla ThunderbirdCanonical Ubuntu LinuxDebian Linux+6 | 28/2/2019 | 17/6/2026 | Mozilla developers and community members reported memory safety bugs present in Firefox 63 and Firefox ESR 60.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 60.4,… | |
| Modificada | Media (6.5) | 2.3% | — | Mozilla FirefoxMozilla Firefox ESRDebian LinuxCanonical Ubuntu Linux+6 | 28/2/2019 | 17/6/2026 | A vulnerability where a WebExtension can run content scripts in disallowed contexts following navigation or other events. This allows for potential privilege escalation by the WebExtension on sites where content scripts should not be run. This vulnerability affects Firefox ESR < 60.3 and Firefox < 63. | |
| Modificada | Alta (7.5) | 3.9% | — | Mozilla FirefoxMozilla Firefox ESRMozilla ThunderbirdDebian Linux+7 | 28/2/2019 | 17/6/2026 | A potential vulnerability was found in 32-bit builds where an integer overflow during the conversion of scripts to an internal UTF-16 representation could result in allocating a buffer too small for the conversion. This leads to a possible out-of-bounds write. *Note: 64-bit builds are not vulnerable to this issue.*.… | |
| Modificada | Crítica (9.8) | 3.4% | — | Mozilla FirefoxMozilla ThunderbirdDebian LinuxCanonical Ubuntu Linux+6 | 28/2/2019 | 17/6/2026 | When manipulating user events in nested loops while opening a document through script, it is possible to trigger a potentially exploitable crash due to poor event handling. This vulnerability affects Firefox < 63, Firefox ESR < 60.3, and Thunderbird < 60.3. | |
| Modificada | Crítica (9.8) | 3.2% | — | Mozilla FirefoxMozilla ThunderbirdDebian LinuxCanonical Ubuntu Linux+6 | 28/2/2019 | 17/6/2026 | Mozilla developers and community members reported memory safety bugs present in Firefox 62 and Firefox ESR 60.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 63, Firefox… | |
| Modificada | Alta (8.8) | 2.3% | — | Mozilla FirefoxMozilla ThunderbirdDebian LinuxCanonical Ubuntu Linux+6 | 28/2/2019 | 17/6/2026 | Mozilla developers and community members reported memory safety bugs present in Firefox ESR 60.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 60.3 and Thunderbird <… | |
| Modificada | Crítica (9.8) | 3.5% | — | SqlalchemyDebian LinuxOpensuse Backports SLEOpensuse Leap+5 | 20/2/2019 | 17/6/2026 | SQLAlchemy through 1.2.17 and 1.3.x through 1.3.0b2 allows SQL Injection via the order_by parameter. | |
| Modificada | Alta (8.1) | 17% | 💥 Exploit | Linux KernelDebian LinuxCanonical Ubuntu LinuxF5 Big-ip Access Policy Manager+20 | 15/2/2019 | 17/6/2026 | In the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles reference counting because of a race condition, leading to a use-after-free. | |
| Modificada | Alta (8.2) | 0.47% | — | FlatpakDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+4 | 12/2/2019 | 17/6/2026 | Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc in the apply_extra script sandbox, which allows attackers to modify a host-side executable file. | |
| Modificada | Media (5.5) | 1.3% | — | Elfutils Project ElfutilsDebian LinuxCanonical Ubuntu LinuxOpensuse Leap+7 | 9/2/2019 | 17/6/2026 | In elfutils 0.175, a heap-based buffer over-read was discovered in the function elf32_xlatetom in elf32_xlatetom.c in libelf. A crafted ELF input can cause a segmentation fault leading to denial of service (program crash) because ebl_core_note does not reject malformed core file notes. | |
| Modificada | Media (5.5) | 1.0% | — | Elfutils Project ElfutilsRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux EUS+4 | 9/2/2019 | 17/6/2026 | In elfutils 0.175, a negative-sized memcpy is attempted in elf_cvt_note in libelf/note_xlate.h because of an incorrect overflow check. Crafted elf input causes a segmentation fault, leading to denial of service (program crash). | |
| Modificada | Alta (7.8) | 1.8% | — | SqlalchemyDebian LinuxOpensuse Backports SLEOpensuse Leap+5 | 6/2/2019 | 17/6/2026 | SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled. | |
| Modificada | Media (5.9) | 2.2% | — | Mozilla FirefoxCanonical Ubuntu LinuxDebian LinuxRedhat Enterprise Linux+8 | 5/2/2019 | 17/6/2026 | When proxy auto-detection is enabled, if a web server serves a Proxy Auto-Configuration (PAC) file or if a PAC file is loaded locally, this PAC file can specify that requests to the localhost are to be sent through the proxy to another server. This behavior is disallowed by default when a proxy is manually configured,… | |
| Modificada | Crítica (10) | 4.4% | — | Mozilla FirefoxMozilla ThunderbirdCanonical Ubuntu LinuxDebian Linux+6 | 5/2/2019 | 17/6/2026 | An earlier fix for an Inter-process Communication (IPC) vulnerability, CVE-2011-3079, added authentication to communication between IPC endpoints and server parents during IPC process creation. This authentication is insufficient for channels created after the IPC process is started, leading to the authentication not… | |
| Modificada | Crítica (9.8) | 3.4% | — | Mozilla FirefoxMozilla Firefox ESRMozilla ThunderbirdCanonical Ubuntu Linux+6 | 5/2/2019 | 17/6/2026 | Mozilla developers and community members reported memory safety bugs present in Firefox 64 and Firefox ESR 60.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 60.5,… | |
| Modificada | Crítica (9.8) | 13% | 💥 PoC | Mozilla FirefoxMozilla Firefox ESRMozilla ThunderbirdCanonical Ubuntu Linux+7 | 5/2/2019 | 17/6/2026 | A use-after-free vulnerability can occur while parsing an HTML5 stream in concert with custom HTML elements. This results in the stream parser object being freed while still in use, leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 60.5, Firefox ESR < 60.5, and Firefox < 65. | |
| Modificada | Alta (7.5) | 1.2% | — | Spice Project SpiceRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Server AUS+5 | 4/2/2019 | 17/6/2026 | Spice, versions 0.5.2 through 0.14.1, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_virt. This may lead to a denial of service, or, in the worst case, code-execution by unauthenticated attackers. | |
| Modificada | Alta (7.8) | 2.1% | — | Freedesktop PopplerCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+7 | 3/2/2019 | 17/6/2026 | In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in XRef.cc) allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document, as demonstrated by pdftocairo. | |
| Modificada | Media (5.9) | 58% | 💥 Exploit | Openbsd OpensshWinscpCanonical Ubuntu LinuxDebian Linux+15 | 31/1/2019 | 17/6/2026 | An issue was discovered in OpenSSH 7.9. Due to the scp implementation being derived from 1983 rcp, the server chooses which files/directories are sent to the client. However, the scp client only performs cursory validation of the object name returned (only directory traversal attacks are prevented). A malicious scp… | |
| Modificada | Media (6.8) | 3.8% | — | Openbsd OpensshWinscpCanonical Ubuntu LinuxDebian Linux+16 | 31/1/2019 | 17/6/2026 | An issue was discovered in OpenSSH 7.9. Due to missing character encoding in the progress display, a malicious server (or Man-in-The-Middle attacker) can employ crafted object names to manipulate the client output, e.g., by using ANSI control codes to hide additional files being transferred. This affects… | |
| Modificada | Media (5.5) | 1.4% | — | Elfutils Project ElfutilsDebian LinuxCanonical Ubuntu LinuxOpensuse Leap+7 | 29/1/2019 | 17/6/2026 | An issue was discovered in elfutils 0.175. A segmentation fault can occur in the function elf64_xlatetom in libelf/elf32_xlatetom.c, due to dwfl_segment_report_module not checking whether the dyn data read from a core file is truncated. A crafted input can cause a program crash, leading to denial-of-service, as… | |
| Modificada | Baja (3.3) | 0.40% | — | Redhat Openshift Container PlatformRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Server AUS+3 | 28/1/2019 | 17/6/2026 | A memory leak was discovered in the backport of fixes for CVE-2018-16864 in Red Hat Enterprise Linux. Function dispatch_message_real() in journald-server.c does not free the memory allocated by set_iovec_field_free() to store the `_CMDLINE=` entry. A local attacker may use this flaw to make systemd-journald crash.… | |
| Modificada | Alta (7.5) | 60% | 💥 PoC | ISC BindRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Server AUS+7 | 16/1/2019 | 17/6/2026 | "deny-answer-aliases" is a little-used feature intended to help recursive server operators protect end users against DNS rebinding attacks, a potential method of circumventing the security model used by client browsers. However, a defect in this feature makes it easy, when the feature is in use, to experience an… |