Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
519 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 3.6% | — | Mpg123Suse Linux | 11/1/2005 | 16/6/2026 | Buffer overflow in mpg123 before 0.59s-r9 allows remote attackers to execute arbitrary code via frame headers in MP2 or MP3 files. | |
| Modificada | Baja (1.2) | 0.32% | — | Suse Linux | 10/1/2005 | 16/6/2026 | Race condition in SuSE Linux 8.1 through 9.2, when run on SMP systems that have more than 4GB of memory, could allow local users to read unauthorized memory from "foreign memory pages." | |
| Modificada | Media (5) | 3.7% | — | Oracle MysqlSuse LinuxUbuntu Linux | 10/1/2005 | 16/6/2026 | MySQL before 4.0.20 allows remote attackers to cause a denial of service (application crash) via a MATCH AGAINST query with an opening double quote but no closing double quote. | |
| Modificada | Baja (2.1) | 0.81% | 💥 Exploit | Linux KernelRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Fedora Core+4 | 10/1/2005 | 16/6/2026 | The open_exec function in the execve functionality (exec.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, allows local users to read non-readable ELF binaries by using the interpreter (PT_INTERP) functionality. | |
| Modificada | Alta (10) | 13% | — | SambaRedhat Fedora CoreSuse LinuxTrustix Secure Linux | 10/1/2005 | 16/6/2026 | Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a Samba request with a large number of security descriptors that triggers a heap-based buffer overflow. | |
| Modificada | Baja (2.1) | 0.40% | — | Suse Linux | 10/1/2005 | 16/6/2026 | SUSE Linux before 9.1 and SUSE Linux Enterprise Server before 9 do not properly check commands sent to CD devices that have been opened read-only, which could allow local users to conduct unauthorized write activities to modify the firmware of associated SCSI devices. | |
| Modificada | Alta (7.2) | 0.56% | — | Linux KernelRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Fedora Core+4 | 10/1/2005 | 16/6/2026 | The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, may create an interpreter name string that is not NULL terminated, which could cause strings longer than PATH_MAX to be used, leading to buffer overflows that allow local users to cause a denial of service (hang) and… | |
| Modificada | Alta (7.5) | 19% | 💥 Exploit | Broadcom Brightstor Arcserve BackupBroadcom Etrust AntivirusBroadcom Etrust Antivirus GatewayBroadcom Etrust EZ Antivirus+18 | 10/1/2005 | 16/6/2026 | Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. | |
| Modificada | Alta (7.2) | 0.51% | — | Linux KernelRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Fedora Core+4 | 10/1/2005 | 16/6/2026 | The load_elf_binary function in the binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly check return values from calls to the kernel_read function, which may allow local users to modify sensitive memory in a setuid program and execute arbitrary code. | |
| Modificada | Alta (10) | 16% | 💥 Exploit | GNU A2psSUN Java Desktop SystemSuse Linux | 10/1/2005 | 16/6/2026 | a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename. | |
| Modificada | Alta (7.2) | 0.51% | — | Linux KernelRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Fedora Core+4 | 10/1/2005 | 16/6/2026 | The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly handle a failed call to the mmap function, which causes an incorrect mapped image and may allow local users to execute arbitrary code. | |
| Modificada | Media (6.4) | 4.2% | — | Linux KernelRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Fedora Core+4 | 10/1/2005 | 16/6/2026 | Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause a denial of service (crash) or gain sensitive information from kernel memory via a samba server (1) returning more data than requested to the smb_proc_read function, (2) returning a data offset from… | |
| Modificada | Media (6.4) | 2.6% | — | Linux KernelRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Fedora Core+4 | 10/1/2005 | 16/6/2026 | The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the… | |
| Modificada | Alta (10) | 8.7% | — | LesstifX.org X11r6Xfree86 Project X11r6Gentoo Linux+2 | 10/1/2005 | 16/6/2026 | Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple integer overflows, (2) out-of-bounds memory accesses, (3) directory traversal, (4) shell metacharacter, (5) endless loops, and (6) memory leaks, which could allow remote attackers to obtain sensitive… | |
| Modificada | Alta (7.5) | 1.6% | — | Roaring Penguin MimedefangMandrakesoft Mandrake LinuxMandrakesoft Mandrake Linux Corporate ServerSuse Linux | 10/1/2005 | 16/6/2026 | MIMEDefang in MIME-tools 5.414 allows remote attackers to bypass virus scanning capabilities via an e-mail attachment with a virus that contains an empty boundary string in the Content-Type header. | |
| Modificada | Baja (2.1) | 0.29% | — | Suse Linux | 31/12/2004 | 16/6/2026 | resmgr in SUSE CORE 9 does not properly identify terminal names, which allows local users to spoof terminals and login types. | |
| Modificada | Media (5) | 2.5% | — | Suse Linux | 31/12/2004 | 16/6/2026 | The tcp_find_option function of the netfilter subsystem for IPv6 in the SUSE Linux 2.6.5 kernel with USAGI patches, when using iptables and TCP options rules, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a large option length that produces a negative integer after a… | |
| Modificada | Baja (2.1) | 0.39% | — | Suse Linux | 31/12/2004 | 16/6/2026 | Multiple scripts on SuSE Linux 9.0 allow local users to overwrite arbitrary files via a symlink attack on (1) /tmp/fvwm-bug created by fvwm-bug, (2) /tmp/wmmenu created by wm-oldmenu2new, (3) /tmp/rates created by x11perfcomp, (4) /tmp/xf86debug.1.log created by xf86debug, (5) /tmp/.winpopup-new created by… | |
| Modificada | Media (5.1) | 2.3% | — | XineXine-libSuse Linux | 31/12/2004 | 16/6/2026 | Stack-based buffer overflow in the VideoCD (VCD) code in xine-lib 1-rc2 through 1-rc5, as derived from libcdio, allows attackers to execute arbitrary code via a VideoCD with an unterminated disk label. | |
| Modificada | Media (5.1) | 3.4% | — | Enlightenment ImlibEnlightenment Imlib2ImagemagickSUN Java Desktop System+12 | 31/12/2004 | 16/6/2026 | Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted BMP image, a different vulnerability than CVE-2004-0817. | |
| Modificada | Media (5) | 13% | 💥 Exploit | Opera BrowserGentoo LinuxKDESuse Linux | 31/12/2004 | 16/6/2026 | Opera 7.54 and earlier uses kfmclient exec to handle unknown MIME types, which allows remote attackers to execute arbitrary code via a shortcut or launcher that contains an Exec entry. | |
| Modificada | Baja (2.1) | 0.35% | — | Suse Linux | 31/12/2004 | 16/6/2026 | YaST Online Update (YOU) in SuSE 8.2 and 9.0 allows local users to overwrite arbitrary files via a symlink attack on you-$USER/cookies. | |
| Modificada | Alta (7.5) | 4.9% | — | Enlightenment ImlibEnlightenment Imlib2ImagemagickSUN Java Desktop System+12 | 31/12/2004 | 16/6/2026 | Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file. | |
| Modificada | Alta (7.5) | 8.3% | — | LibtiffPdflib PDF LibraryWxgtk2Apple MAC OS X+9 | 23/12/2004 | 16/6/2026 | Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files. | |
| Modificada | Alta (7.5) | 17% | — | KDE KonquerorMicrosoft IEMicrosoft Internet ExplorerMozilla Firefox+1 | 23/12/2004 | 16/6/2026 | Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. NOTE: it was later reported that 2.x is also affected. |