Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
–

593 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.4)1.4%—FreebsdAI31/12/200316/6/2026
The implementation of SYN cookies (syncookies) in FreeBSD 4.5 through 5.0-RELEASE-p3 uses only 32-bit internal keys when generating syncookies, which makes it easier for remote attackers to conduct brute force ISN guessing attacks and spoof legitimate traffic.
ModificadaBaja (2.1)0.34%—NetbsdAIFreebsdAI31/12/200316/6/2026
The iBCS2 system call translator for statfs in NetBSD 1.5 through 1.5.3 and FreeBSD 4 up to 4.8-RELEASE-p2 and 5 up to 5.1-RELEASE-p1 allows local users to read portions of kernel memory (memory disclosure) via a large length parameter, which copies additional kernel memory into userland memory.
ModificadaMedia (4.3)3.2%—ISC BindNixu NamesurferCompaq Tru64Freebsd+615/12/200316/6/2026
ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.
ModificadaMedia (5)1.4%—Apple MAC OS XApple MAC OS X ServerFreebsdOpenbsd17/11/200316/6/2026
The arplookup function in FreeBSD 5.1 and earlier, Mac OS X before 10.2.8, and possibly other BSD-based systems, allows remote attackers on a local subnet to cause a denial of service (resource starvation and panic) via a flood of spoofed ARP requests.
ModificadaMedia (5)3.6%—Redhat SendmailSendmailSGI IrixCompaq Tru64+220/10/200316/6/2026
The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.
ModificadaAlta (10)66%—Sendmail Advanced Message ServerSendmailSendmail PROSendmail Switch+146/10/200316/6/2026
The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.
ModificadaCrítica (9.8)78%💥 ExploitRedhat WU FtpdWuftpd Wu-ftpdApple MAC OS XApple MAC OS X Server+427/8/200316/6/2026
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via commands that cause pathnames of length MAXPATHLEN+1 to trigger a buffer overflow, including (1) STOR, (2) RETR, (3) APPE, (4)…
ModificadaAlta (7.2)1.9%💥 ExploitLproldBSD LPRFreebsdOpenbsd31/3/200316/6/2026
Buffer overflow in the lprm command in the lprold lpr package on SuSE 7.1 through 7.3, OpenBSD 3.2 and earlier, and possibly other operating systems, allows local users to gain root privileges via long command line arguments such as (1) request ID or (2) user name.
ModificadaAlta (7.5)15%—GNU GlibcMIT Kerberos 5OpenafsSGI Irix+925/3/200316/6/2026
Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability…
ModificadaMedia (5)14%💥 ExploitOpensslFreebsdOpenbsd3/3/200316/6/2026
ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptographic attacks that rely on distinguishing between padding and…
ModificadaAlta (7.5)24%💥 ExploitFreebsdCVS7/2/200316/6/2026
Double-free vulnerability in CVS 1.11.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed Directory request, as demonstrated by bypassing write checks to execute Update-prog and Checkin-prog commands.
ModificadaMedia (5)70%💥 ExploitFreebsdLinux KernelMicrosoft Windows 2000Microsoft Windows 2000 Terminal Services+117/1/200316/6/2026
Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to obtain information from previous packets or kernel memory by using malformed packets, as demonstrated by Etherleak.
ModificadaBaja (2.1)0.29%—Freebsd31/12/200216/6/2026
The virtual memory management system in FreeBSD 4.5-RELEASE and earlier does not properly check the existence of a VM object during page invalidation, which allows local users to cause a denial of service (crash) by calling msync on an unaccessed memory map created with MAP_ANON and MAP_NOSYNC flags.
ModificadaBaja (2.1)0.33%—Freebsd31/12/200216/6/2026
pkg_add in FreeBSD 4.2 through 4.4 creates a temporary directory with world-searchable permissions, which may allow local users to modify world-writable parts of the package during installation.
ModificadaMedia (4.6)0.41%—Freebsd Advanced Intrusion Detection Environment31/12/200216/6/2026
The default aide.conf file in Advanced Intrusion Detection Environment (AIDE) before 0.7_1 on FreeBSD before 2002-08-28 does not properly check subdirectories, which could allow local users to bypass detection.
ModificadaBaja (1.2)0.30%—Freebsd31/12/200216/6/2026
procfs on FreeBSD before 4.5 allows local users to cause a denial of service (kernel panic) by removing a file that the fstatfs function refers to.
ModificadaMedia (5.5)0.27%—FreebsdNetbsdOpenbsd31/12/200216/6/2026
tip on multiple BSD-based operating systems allows local users to cause a denial of service (execution prevention) by using flock() to lock the /var/log/acculog file.
ModificadaBaja (3.7)0.31%—FreebsdNetbsdOpenbsd31/12/200216/6/2026
Race condition in exec in OpenBSD 4.0 and earlier, NetBSD 1.5.2 and earlier, and FreeBSD 4.4 and earlier allows local users to gain privileges by attaching a debugger to a process before the kernel has determined that the process is setuid or setgid.
ModificadaMedia (5.1)1.3%—Freebsd Ports CollectionOpenbsd31/12/200216/6/2026
isakmpd/message.c in isakmpd in FreeBSD before isakmpd-20020403_1, and in OpenBSD 3.1, allows remote attackers to cause a denial of service (crash) by sending Internet Key Exchange (IKE) payloads out of sequence.
ModificadaMedia (5)7.6%—ISC BindFreebsdOpenbsd29/11/200216/6/2026
BIND 8.x through 8.3.3 allows remote attackers to cause a denial of service (crash) via SIG RR elements with invalid expiry times, which are removed from the internal BIND database and later cause a null dereference.
ModificadaMedia (5)9.6%💥 ExploitISC BindFreebsdOpenbsd29/11/200216/6/2026
BIND 8.3.x through 8.3.3 allows remote attackers to cause a denial of service (termination due to assertion failure) via a request for a subdomain that does not exist, with an OPT resource record with a large UDP payload size.
ModificadaAlta (7.5)12%—ISC BindFreebsdOpenbsd29/11/200216/6/2026
Buffer overflow in named in BIND 4 versions 4.9.10 and earlier, and 8 versions 8.3.3 and earlier, allows remote attackers to execute arbitrary code via a certain DNS server response containing SIG resource records (RR).
ModificadaMedia (5)2.5%—Frees WANApple MAC OS XApple MAC OS X ServerFreebsd+84/11/200216/6/2026
IPSEC implementations including (1) FreeS/WAN and (2) KAME do not properly calculate the length of authentication data, which allows remote attackers to cause a denial of service (kernel panic) via spoofed, short Encapsulating Security Payload (ESP) packets, which result in integer signedness errors.
ModificadaBaja (2.1)0.79%💥 ExploitFreebsd24/9/200216/6/2026
FreeBSD port programs that use libkvm for FreeBSD 4.6.2-RELEASE and earlier, including (1) asmon, (2) ascpu, (3) bubblemon, (4) wmmon, and (5) wmnet2, leave open file descriptors for /dev/mem and /dev/kmem, which allows local users to read kernel memory.
ModificadaMedia (4.6)0.35%—Freebsd24/9/200216/6/2026
Integer signedness error in several system calls for FreeBSD 4.6.1 RELEASE-p10 and earlier may allow attackers to access sensitive kernel memory via large negative values to the (1) accept, (2) getsockname, and (3) getpeername system calls, and the (4) vesa FBIO_GETPALETTE ioctl.
Orbitaley — Vulnerabilidades