Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
10.164 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.1) | 0.20% | — | Linux KernelDebian Linux | 10/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: at91: Fix possible out-of-boundary access at91_gpio_probe() doesn't check that given OF alias is not available or something went wrong when trying to get it. This might have consequences when accessing gpio_chips array with that value as an… | |
| Modificada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 10/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix WARN() in get_bpf_raw_tp_regs syzkaller reported an issue: Tracepoint like trace_mmap_lock_acquire_returned may cause nested call as the corner case show above, which will be resolved with more general method in the future. As a result,… | |
| Analizada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 10/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: kernfs: Relax constraint in draining guard The active reference lifecycle provides the break/unbreak mechanism but the active reference is not truly active after unbreak -- callers don't use it afterwards but it's important for proper pairing of… | |
| Modificada | Alta (7.8) | 0.20% | — | Linux KernelDebian Linux | 10/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Avoid __bpf_prog_ret0_warn when jit fails syzkaller reported an issue: When creating bpf program, 'fp->jit_requested' depends on bpf_jit_enable. This issue is triggered because of CONFIG_BPF_JIT_ALWAYS_ON is not set and bpf_jit_enable is set to… | |
| Analizada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 10/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: mtd: nand: ecc-mxic: Fix use of uninitialized variable ret If ctx->steps is zero, the loop processing ECC steps is skipped, and the variable ret remains uninitialized. It is later checked and returned, which leads to undefined behavior and may cause… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 10/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: phy: qcom-qmp-usb: Fix an NULL vs IS_ERR() bug The qmp_usb_iomap() helper function currently returns the raw result of devm_ioremap() for non-exclusive mappings. Since devm_ioremap() may return a NULL pointer and the caller only checks error pointers… | |
| Modificada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 10/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net: tipc: fix refcount warning in tipc_aead_encrypt syzbot reported a refcount warning [1] caused by calling get_net() on a network namespace that is being destroyed (refcount=0). This happens when a TIPC discovery timer fires during network… | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 9/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: bcache: fix NULL pointer in cache_set_flush() 1. LINE#1794 - LINE#1887 is some codes about function of bch_cache_set_alloc(). 2. LINE#2078 - LINE#2142 is some codes about function of register_cache_set(). 3. register_cache_set() will call… | |
| Modificada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 9/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: tty: serial: uartlite: register uart driver in init When two instances of uart devices are probing, a concurrency race can occur. If one thread calls uart_register_driver function, which first allocates and assigns memory to 'uart_state' member of… | |
| Analizada | Media (5.5) | 0.15% | — | Linux KernelDebian Linux | 9/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: handle csum tree error with rescue=ibadroots correctly [BUG] There is syzbot based reproducer that can crash the kernel, with the following call trace: (With some debug output added) [CAUSE] Firstly the fs has a corrupted csum tree root, thus… | |
| Analizada | Alta (7.8) | 0.16% | — | Linux KernelDebian Linux | 9/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: wcd9335: Fix missing free of regulator supplies Driver gets and enables all regulator supplies in probe path (wcd9335_parse_dt() and wcd9335_power_on_reset()), but does not cleanup in final error paths and in unbind (missing remove()… | |
| Modificada | Alta (7.8) | 0.17% | — | Linux KernelDebian Linux | 9/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Prevent overflow in size calculation for memdup_user() Number of apqn target list entries contained in 'nr_apqns' variable is determined by userspace via an ioctl call so the result of the product in calculation of size passed to… | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 9/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: atm: clip: prevent NULL deref in clip_push() Blamed commit missed that vcc_destroy_socket() calls clip_push() with a NULL skb. If clip_devs is NULL, clip_push() then crashes when reading skb->truesize. | |
| Analizada | Alta (7.1) | 0.17% | — | Linux KernelDebian Linux | 9/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3() In snd_usb_get_audioformat_uac3(), the length value returned from snd_usb_ctl_msg() is used directly for memory allocation without validation. This length is controlled by the… | |
| Analizada | Alta (7.8) | 0.18% | — | Linux KernelDebian Linux | 9/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: atm: Release atm_dev_mutex after removing procfs in atm_dev_deregister(). syzbot reported a warning below during atm_dev_register(). [0] Before creating a new device and procfs/sysfs for it, atm_dev_register() looks up a duplicated device by… | |
| Modificada | Alta (7.8) | 0.16% | — | Linux KernelDebian Linux | 9/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: megaraid_sas: Fix invalid node index On a system with DRAM interleave enabled, out-of-bound access is detected: Fix it accordingly. | |
| Analizada | Alta (8) | 4.2% | ⚠ Explotación activa💥 PoC | Git-scm GITDebian LinuxApple Xcode | 8/7/2025 | 24/9/2026 | Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. When reading a config value, Git strips any trailing carriage return and line feed (CRLF). When writing a config entry, values with a trailing CR are… | |
| Modificada | Media (5.5) | 0.16% | — | Linux KernelDebian Linux | 8/7/2025 | 2/9/2026 | In the Linux kernel, the following vulnerability has been resolved: media: platform: exynos4-is: Add hardware sync wait to fimc_is_hw_change_mode() In fimc_is_hw_change_mode(), the function changes camera modes without waiting for hardware completion, risking corrupted data or system hangs if subsequent operations… | |
| Modificada | Alta (7.8) | 0.29% | — | Linux KernelDebian Linux | 8/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't leave consecutive consumed OOB skbs. Jann Horn reported a use-after-free in unix_stream_read_generic(). The following sequences reproduce the issue: Even though a user reads OOB data, the skb holding the data stays on the recv queue to… | |
| Modificada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 4/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: nfsd: Initialize ssc before laundromat_work to prevent NULL dereference In nfs4_state_start_net(), laundromat_work may access nfsd_ssc through nfs4_laundromat -> nfsd4_ssc_expire_umount. If nfsd_ssc isn't initialized, this can cause NULL pointer… | |
| Modificada | Alta (7.8) | 0.19% | — | Linux KernelDebian Linux | 4/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: jfs: validate AG parameters in dbMount() to prevent crashes Validate db_agheight, db_agwidth, and db_agstart in dbMount to catch corrupted metadata early and avoid undefined behavior in dbAllocAG. Limits are derived from L2LPERCTL, LPERCTL/MAXAG, and… | |
| Analizada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 4/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: media: cxusb: no longer judge rbuf when the write fails syzbot reported a uninit-value in cxusb_i2c_xfer. [1] Only when the write operation of usb_bulk_msg() in dvb_usb_generic_rw() succeeds and rlen is greater than 0, the read operation of… | |
| Modificada | Alta (7.8) | 0.18% | — | Linux KernelDebian Linux | 4/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: media: vidtv: Terminating the subsequent process of initialization failure syzbot reported a slab-use-after-free Read in vidtv_mux_init. [1] After PSI initialization fails, the si member is accessed again, resulting in this uaf. After si… | |
| Modificada | Alta (7.8) | 0.19% | — | Linux KernelDebian Linux | 4/7/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: media: vivid: Change the siize of the composing syzkaller found a bug: The composition size cannot be larger than the size of fmt_cap_rect. So execute v4l2_rect_map_inside() even if has_compose_cap == 0. | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 4/7/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: media: imx-jpeg: Cleanup after an allocation error When allocation failures are not cleaned up by the driver, further allocation errors will be false-positives, which will cause buffers to remain uninitialized and cause NULL pointer dereferences.… |