Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
3277 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 2.4% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 24/8/2021 | 17/6/2026 | A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-005 Catalina, iOS 14.8 and iPadOS 14.8, iOS 15 and iPadOS 15, watchOS 8, macOS Big Sur 11.6. An application may be able to access restricted files. | |
| Modificada | Media (5.3) | 4.9% | — | Haxx CurlFedoraproject FedoraNetapp Cloud BackupNetapp Clustered Data Ontap+16 | 5/8/2021 | 17/6/2026 | curl supports the `-t` command line option, known as `CURLOPT_TELNETOPTIONS`in libcurl. This rarely used option is used to send variable=content pairs toTELNET servers.Due to flaw in the option parser for sending `NEW_ENV` variables, libcurlcould be made to pass on uninitialized data from a stack based buffer to… | |
| Modificada | Alta (7.5) | 2.9% | — | OpenldapDebian LinuxApple MAC OS XApple Macos+1 | 18/5/2021 | 17/6/2026 | A flaw was found in OpenLDAP. This flaw allows an attacker who can send a malicious packet to be processed by OpenLDAP’s slapd server, to trigger an assertion failure. The highest threat from this vulnerability is to system availability. | |
| Analizada | Crítica (9.8) | 7.0% | ⚠ Explotación activa | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been… | |
| Analizada | Crítica (9.8) | 7.7% | ⚠ Explotación activa | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been… | |
| Modificada | Crítica (9.8) | 2.9% | — | Apple Ipad OSApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause unexpected application termination or arbitrary code… | |
| Modificada | Alta (7) | 0.90% | — | Apple MAC OS XApple Macos | 2/4/2021 | 17/6/2026 | A race condition was addressed with additional validation. This issue is fixed in macOS Big Sur 11.2.1, macOS Catalina 10.15.7 Supplemental Update, macOS Mojave 10.14.6 Security Update 2021-002. An application may be able to execute arbitrary code with kernel privileges. | |
| Modificada | Alta (7.8) | 1.1% | — | Apple MAC OS XApple Macos | 2/4/2021 | 17/6/2026 | An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2.1, macOS Catalina 10.15.7 Supplemental Update, macOS Mojave 10.14.6 Security Update 2021-002. An application may be able to execute arbitrary code with kernel privileges. | |
| Modificada | Alta (7.8) | 0.23% | — | Apple MAC OS XApple Macos | 2/4/2021 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave. A local attacker may be able to elevate their privileges. | |
| Modificada | Media (5.5) | 0.29% | — | Apple Ipad OSApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | The issue was addressed with improved permissions logic. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A local user may be able to read arbitrary files. | |
| Modificada | Alta (7.8) | 0.96% | — | Apple Ipad OSApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.0% | — | Apple MAC OS XApple Macos | 2/4/2021 | 17/6/2026 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave. Processing a maliciously crafted font may lead to arbitrary code execution. | |
| Modificada | Alta (7.5) | 2.1% | — | Apple Ipad OSApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause a denial of service. | |
| Modificada | Alta (7.8) | 0.92% | — | Apple Ipad OSApple Iphone OSApple MAC OS XApple Macos | 2/4/2021 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 1.9% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution. | |
| Modificada | Media (5.5) | 1.2% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A malicious application… | |
| Analizada | Alta (8.8) | 14% | ⚠ Explotación activa | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+4 | 2/4/2021 | 17/6/2026 | A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, tvOS 14.4, watchOS 7.3, iOS 14.4 and iPadOS 14.4, Safari 14.0.3. Processing maliciously crafted web content may lead to arbitrary code… | |
| Modificada | Alta (8.8) | 1.7% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+5 | 2/4/2021 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, tvOS 14.4, watchOS 7.3, iOS 14.4 and iPadOS 14.4, Safari 14.0.3. Processing maliciously crafted web content may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 0.25% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | Multiple issues were addressed with improved logic. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A local attacker may be able to elevate their privileges. | |
| Modificada | Media (5.5) | 0.29% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A local user may be able to create or modify system files. | |
| Modificada | Alta (7.8) | 1.0% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.0% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | An access issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution. | |
| Analizada | Alta (7) | 2.2% | ⚠ Explotación activa💥 PoC | Apple IpadosApple Iphone OSApple MAC OS XApple Macos+2 | 2/4/2021 | 17/6/2026 | A race condition was addressed with improved locking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A malicious application may be able to elevate privileges. Apple is aware of a report that this issue… | |
| Modificada | Media (5.5) | 0.71% | — | Apple IpadosApple Iphone OSApple MAC OS XApple Macos | 2/4/2021 | 17/6/2026 | A privacy issue existed in the handling of Contact cards. This was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. A malicious application may be able to leak sensitive user information. | |
| Modificada | Alta (7.8) | 1.2% | — | Apple MAC OS XApple Macos | 2/4/2021 | 17/6/2026 | A logic error in kext loading was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave. An application may be able to execute arbitrary code with system privileges. |