Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2678▼ 660 respecto a la semana anterior
Críticas / altas1266▼ 293 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
–

4419 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9.8)3.4%—YawsCanonical Ubuntu LinuxDebian Linux9/9/202017/6/2026
WebDAV implementation in Yaws web server versions 1.81 to 2.0.7 is vulnerable to XXE injection.
ModificadaAlta (7)0.27%—Linux KernelDebian LinuxOpensuse LeapCanonical Ubuntu Linux9/9/202017/6/2026
A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c, aka CID-b4487b935452.
ModificadaBaja (3.7)4.9%—OpensslCanonical Ubuntu LinuxDebian LinuxOracle JD Edwards World Security+119/9/202017/6/2026
The Raccoon attack exploits a flaw in the TLS specification which can lead to an attacker being able to compute the pre-master secret in connections which have used a Diffie-Hellman (DH) based ciphersuite. In such a case this would result in the attacker being able to eavesdrop on all encrypted communications sent…
ModificadaMedia (5.5)0.31%—Canonical Add-apt-repository5/9/202017/6/2026
Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20.10, and 0.92.37.8ubuntu0.1~esm1, printed a PPA (personal package archive) description to the terminal as-is, which allowed PPA owners to provide ANSI terminal escapes to modify terminal contents in unexpected ways.
ModificadaAlta (7.5)3.7%—GnutlsFedoraproject FedoraOpensuse LeapCanonical Ubuntu Linux4/9/202017/6/2026
An issue was discovered in GnuTLS before 3.6.15. A server can trigger a NULL pointer dereference in a TLS 1.3 client if a no_renegotiation alert is sent with unexpected timing, and then an invalid second handshake occurs. The crash happens in the application's error handling path, where the gnutls_deinit function is…
ModificadaAlta (7.1)2.3%—Gruntjs GruntDebian LinuxCanonical Ubuntu Linux3/9/202017/6/2026
The package grunt before 1.3.0 are vulnerable to Arbitrary Code Execution due to the default usage of the function load() instead of its secure replacement safeLoad() of the package js-yaml inside grunt.file.readYAML.
ModificadaBaja (3.3)1.5%—KDE ARKCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+12/9/202017/6/2026
In KDE Ark before 20.08.1, a crafted TAR archive with symlinks can install files outside the extraction directory, as demonstrated by a write operation to a user's home directory.
ModificadaMedia (6.5)4.1%—Squid-cache SquidCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+12/9/202017/6/2026
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Splitting attacks may succeed against HTTP and HTTPS traffic. This leads to cache poisoning. This allows any client, including browser scripts, to bypass local security and poison the browser cache and any…
ModificadaMedia (6.5)2.4%—Squid-cache SquidCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+12/9/202017/6/2026
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Smuggling attacks may succeed against HTTP and HTTPS traffic. This leads to cache poisoning. This allows any client, including browser scripts, to bypass local security and poison the proxy cache and any…
ModificadaAlta (7.5)3.3%—Djangoproject DjangoCanonical Ubuntu LinuxFedoraproject FedoraOracle ZFS Storage Appliance KIT1/9/202017/6/2026
An issue was discovered in Django 2.2 before 2.2.16, 3.0 before 3.0.10, and 3.1 before 3.1.1 (when Python 3.7+ is used). The intermediate-level directories of the filesystem cache had the system's standard umask rather than 0o077.
ModificadaAlta (7.5)4.0%—Djangoproject DjangoCanonical Ubuntu LinuxFedoraproject FedoraOracle ZFS Storage Appliance KIT1/9/202017/6/2026
An issue was discovered in Django 2.2 before 2.2.16, 3.0 before 3.0.10, and 3.1 before 3.1.1 (when Python 3.7+ is used). FILE_UPLOAD_DIRECTORY_PERMISSIONS mode was not applied to intermediate-level directories created in the process of uploading files. It was also not applied to intermediate-level collected static…
ModificadaMedia (5.5)0.36%—Canonical PPP1/9/202017/6/2026
The modprobe child process in the ./debian/patches/load_ppp_generic_if_needed patch file incorrectly handled module loading. A local non-root attacker could exploit the MODPROBE_OPTIONS environment variable to read arbitrary root files. Fixed in 2.4.5-5ubuntu1.4, 2.4.5-5.1ubuntu2.3+esm2, 2.4.7-1+2ubuntu1.16.04.3,…
ModificadaMedia (5)5.4%💥 PoCQemuRedhat OpenstackRedhat Enterprise LinuxFedoraproject Fedora+331/8/202017/6/2026
An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice 'setup_len' exceeds its 'data_buf[4096]' in the do_token_in, do_token_out routines. This flaw allows a guest user to crash the QEMU…
ModificadaBaja (3.8)0.37%—QemuCanonical Ubuntu LinuxDebian Linux31/8/202017/6/2026
In QEMU through 5.0.0, an integer overflow was found in the SM501 display driver implementation. This flaw occurs in the COPY_AREA macro while handling MMIO write operations through the sm501_2d_engine_write() callback. A local attacker could abuse this flaw to crash the QEMU process in sm501_2d_operation() in…
ModificadaAlta (7.8)0.54%—Canonical Checkinstall31/8/202017/6/2026
checkinstall 1.6.2, when used to create a package that contains a symlink, may trigger the creation of a mode 0777 executable file.
ModificadaBaja (3.3)0.45%—QemuCanonical Ubuntu Linux27/8/202017/6/2026
oss_write in audio/ossaudio.c in QEMU before 5.0.0 mishandles a buffer position.
ModificadaAlta (7.5)5.0%—Squid-cache SquidCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+124/8/202017/6/2026
Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU cycles during handling of a crafted Cache Digest response message. This only occurs when cache_peer is used with the cache digests feature. The problem exists because peerDigestHandleReply()…
ModificadaMedia (6)0.48%—Tuxfamily ChronyFedoraproject FedoraCanonical Ubuntu Linux24/8/202017/6/2026
A flaw was found in chrony versions before 3.5.1 when creating the PID file under the /var/run/chrony folder. The file is created during chronyd startup while still running as the root user, and when it's opened for writing, chronyd does not check for an existing symbolic link with the same file name. This flaw allows…
ModificadaAlta (7.3)0.53%—PostgresqlDebian LinuxOpensuse LeapCanonical Ubuntu Linux24/8/202017/6/2026
It was found that some PostgreSQL extensions did not use search_path safely in their installation script. An attacker with sufficient privileges could use this flaw to trick an administrator into executing a specially crafted script, during the installation or update of such extension. This affects PostgreSQL versions…
ModificadaMedia (4.3)3.7%—ISC BindNetapp Steelstore Cloud Integrated StorageCanonical Ubuntu LinuxDebian Linux+221/8/202017/6/2026
In BIND 9.9.12 -> 9.9.13, 9.10.7 -> 9.10.8, 9.11.3 -> 9.11.21, 9.12.1 -> 9.16.5, 9.17.0 -> 9.17.3, also affects 9.9.12-S1 -> 9.9.13-S1, 9.11.3-S1 -> 9.11.21-S1 of the BIND 9 Supported Preview Edition, An attacker who has been granted privileges to change a specific subset of the zone's content could abuse these…
ModificadaAlta (7.5)6.4%—ISC BindFedoraproject FedoraOpensuse LeapDebian Linux+321/8/202017/6/2026
In BIND 9.10.0 -> 9.11.21, 9.12.0 -> 9.16.5, 9.17.0 -> 9.17.3, also affects 9.10.5-S1 -> 9.11.21-S1 of the BIND 9 Supported Preview Edition, An attacker that can reach a vulnerable system with a specially crafted query packet can trigger a crash. To be vulnerable, the system must: * be running BIND that was built with…
ModificadaMedia (6.5)5.6%—ISC BindFedoraproject FedoraDebian LinuxCanonical Ubuntu Linux+421/8/202017/6/2026
In BIND 9.0.0 -> 9.11.21, 9.12.0 -> 9.16.5, 9.17.0 -> 9.17.3, also affects 9.9.3-S1 -> 9.11.21-S1 of the BIND 9 Supported Preview Edition, An attacker on the network path for a TSIG-signed request, or operating the server receiving the TSIG-signed request, could send a truncated response to that request, triggering an…
ModificadaAlta (7.5)3.0%—ISC BindOpensuse LeapCanonical Ubuntu LinuxSynology DNS Server+121/8/202017/6/2026
In BIND 9.14.0 -> 9.16.5, 9.17.0 -> 9.17.3, If a server is configured with both QNAME minimization and 'forward first' then an attacker who can send queries to it may be able to trigger the condition that will cause the server to crash. Servers that 'forward only' are not affected.
ModificadaAlta (7.5)3.7%—ISC BindOpensuse LeapNetapp Steelstore Cloud Integrated StorageCanonical Ubuntu Linux21/8/202017/6/2026
In BIND 9.15.6 -> 9.16.5, 9.17.0 -> 9.17.3, An attacker who can establish a TCP connection with the server and send data on that connection can exploit this to trigger the assertion failure, causing the server to exit.
ModificadaAlta (7.8)0.38%—Net-snmpCanonical Ubuntu LinuxNetapp Cloud BackupNetapp HCI Management Node+220/8/202017/6/2026
Net-SNMP through 5.8 has Improper Privilege Management because SNMP WRITE access to the EXTEND MIB provides the ability to run arbitrary commands as root.