Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
10.164 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.16% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: md/md-bitmap: fix GPF in bitmap_get_stats() The commit message of commit 6ec1f0239485 ("md/md-bitmap: fix stats collection for external bitmaps") states: But, the code does not adhere to the above, as it does only check for a valid super-block for… | |
| Analizada | Media (4.7) | 0.12% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: u_serial: Fix race condition in TTY wakeup A race condition occurs when gs_start_io() calls either gs_start_rx() or gs_start_tx(), as those functions briefly drop the port_lock for usb_ep_queue(). This allows gs_close() and… | |
| Analizada | Alta (7.1) | 0.18% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: md/raid1: Fix stack memory use after return in raid1_reshape In the raid1_reshape function, newpool is allocated on the stack and assigned to conf->r1bio_pool. This results in conf->r1bio_pool.wait.head pointing to a stack address. Accessing this… | |
| Analizada | Media (5.5) | 0.16% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: raid10: cleanup memleak at raid10_make_request If raid10_read_request or raid10_write_request registers a new request and the REQ_NOWAIT flag is set, the code does not free the malloc from the mempool. V4: changing backing tree to see if CKI tests… | |
| Analizada | Alta (7.8) | 0.16% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: nbd: fix uaf in nbd_genl_connect() error path There is a use-after-free issue in nbd: block nbd6: Receive control failed (result -104) block nbd6: shutting down sockets ================================================================== BUG: KASAN:… | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: account for Ethernet header in nf_flow_pppoe_proto() syzbot found a potential access to uninit-value in nf_flow_pppoe_proto() Blamed commit forgot the Ethernet header. | |
| Modificada | Media (5.5) | 0.51% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Set DMA unmap len correctly for XDP_REDIRECT When transmitting an XDP_REDIRECT packet, call dma_unmap_len_set() with the proper length instead of 0. This bug triggers this warning on a system with IOMMU enabled: | |
| Modificada | Alta (7.8) | 0.39% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potential use-after-free in oplock/lease break ack If ksmbd_iov_pin_rsp return error, use-after-free can happen by accessing opinfo->state and opinfo_put and ksmbd_fd_put could called twice. | |
| Modificada | Media (5.5) | 0.52% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: nfsd: nfsd4_spo_must_allow() must check this is a v4 compound request If the request being processed is not a v4 compound request, then examining the cstate can have undefined results. This patch adds a check that the rpc procedure being executed… | |
| Analizada | Alta (7.8) | 0.19% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - check record size in ims_pcu_flash_firmware() The "len" variable comes from the firmware and we generally do trust firmware, but it's always better to double check. If the "len" is too large it could result in memory corruption when… | |
| Modificada | Alta (7.8) | 0.18% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: i2c: tegra: check msg length in SMBUS block read For SMBUS block read, do not continue to read if the message length passed from the device is '0' or greater than the maximum allowed bytes. | |
| Modificada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: perf: Fix sample vs do_exit() Baisheng Gao reported an ARM64 crash, which Mark decoded as being a synchronous external abort -- most likely due to trying to access MMIO in bad ways. The crash further shows perf trying to do a user stack sample while… | |
| Modificada | Alta (7.8) | 0.18% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net: lan743x: Modify the EEPROM and OTP size for PCI1xxxx devices Maximum OTP and EEPROM size for hearthstone PCI1xxxx devices are 8 Kb and 64 Kb respectively. Adjust max size definitions and return correct EEPROM length based on device. Also prevent… | |
| Analizada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: carl9170: do not ping device which has failed to load firmware Syzkaller reports [1, 2] crashes caused by an attempts to ping the device which has failed to load firmware. Since such a device doesn't pass 'ieee80211_register_hw()', an internal… | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: remoteproc: core: Cleanup acquired resources when rproc_handle_resources() fails in rproc_attach() When rproc->state = RPROC_DETACHED and rproc_attach() is used to attach to the remote processor, if rproc_handle_resources() returns a failure, the… | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: remoteproc: core: Release rproc->clean_table after rproc_attach() fails When rproc->state = RPROC_DETACHED is attached to remote processor through rproc_attach(), if rproc_handle_resources() returns failure, then the clean table should be released,… | |
| Modificada | Alta (7.8) | 0.21% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: NFC: nci: uart: Set tty->disc_data only in success path Setting tty->disc_data before opening the NCI device means we need to clean it up on error paths. This also opens some short window if device starts sending data, even before NCIUARTSETDRIVER… | |
| Analizada | Alta (7.8) | 0.19% | — | Linux KernelDebian Linux | 25/7/2025 | 18/6/2026 | In the Linux kernel, the following vulnerability has been resolved: Squashfs: check return result of sb_min_blocksize Syzkaller reports an "UBSAN: shift-out-of-bounds in squashfs_bio_read" bug. Syzkaller forks multiple processes which after mounting the Squashfs filesystem, issues an ioctl("/dev/loop0",… | |
| Modificada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Fix WMI data block retrieval in sysfs callbacks After retrieving WMI data blocks in sysfs callbacks, check for the validity of them before dereferencing their content. | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix a fence leak in submit error path In error paths, we could unref the submit without calling drm_sched_entity_push_job(), so msm_job_free() will never get called. Since drm_sched_job_cleanup() will NULL out the s_fence, we can use that to… | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix another leak in the submit error path put_unused_fd() doesn't free the installed file, if we've already done fd_install(). So we need to also free the sync_file. Patchwork: https://patchwork.freedesktop.org/patch/653583/ | |
| Analizada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: remove WARN on bad firmware input If the firmware gives bad input, that's nothing to do with the driver's stack at this point etc., so the WARN_ON() doesn't add any value. Additionally, this is one of the top syzbot reports now. Just… | |
| Analizada | Media (5.5) | 0.14% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: displayport: Fix potential deadlock The deadlock can occur due to a recursive lock acquisition of `cros_typec_altmode_data::mutex`. The call chain is as follows: 1. cros_typec_altmode_work() acquires the mutex 2. typec_altmode_vdm() ->… | |
| Analizada | Alta (7.8) | 0.19% | — | Linux KernelDebian Linux | 25/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: vsock/vmci: Clear the vmci transport packet properly when initializing it In vmci_transport_packet_init memset the vmci_transport_packet before populating the fields to avoid any uninitialised data being left in the structure. | |
| Modificada | Alta (7.8) | 0.18% | — | Linux KernelDebian Linux | 25/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: mtk-sd: Prevent memory corruption from DMA map failure If msdc_prepare_data() fails to map the DMA region, the request is not prepared for data receiving, but msdc_start_data() proceeds the DMA with previous setting. Since this will lead a memory… |