Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
–

4185 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)5.1%—Cisco Clam AntivirusDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux13/5/202017/6/2026
A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a heap buffer overflow read. An attacker could exploit this vulnerability by…
ModificadaBaja (2.2)1.6%—FreerdpCanonical Ubuntu LinuxDebian Linux12/5/202017/6/2026
In FreeRDP after 1.1 and before 2.0.0, a stream out-of-bounds seek in rdp_read_font_capability_set could lead to a later out-of-bounds read. As a result, a manipulated client or server might force a disconnect due to an invalid data read. This has been fixed in 2.0.0.
ModificadaMedia (5.3)0.71%—Linux KernelCanonical Ubuntu LinuxRedhat Enterprise LinuxRedhat Enterprise MRG12/5/202017/6/2026
A signal access-control issue was discovered in the Linux kernel before 5.6.5, aka CID-7395ea4e65c2. Because exec_id in include/linux/sched.h is only 32 bits, an integer overflow can interfere with a do_notify_parent protection mechanism. A child process can send an arbitrary signal to a parent process in a different…
ModificadaAlta (7.5)4.6%—EximFedoraproject FedoraDebian LinuxCanonical Ubuntu Linux11/5/202017/6/2026
Exim through 4.93 has an out-of-bounds read in the SPA authenticator that could result in SPA/NTLM authentication bypass in auths/spa.c and auths/auth-spa.c.
ModificadaMedia (5.5)0.52%—Linux KernelDebian LinuxOpensuse LeapCanonical Ubuntu Linux+209/5/202017/6/2026
An issue was discovered in the Linux kernel through 5.6.11. btree_gc_coalesce in drivers/md/bcache/btree.c has a deadlock if a coalescing operation fails.
ModificadaMedia (6.7)0.59%—Linux KernelFedoraproject FedoraCanonical Ubuntu LinuxDebian Linux+199/5/202017/6/2026
An issue was discovered in the Linux kernel through 5.6.11. sg_write lacks an sg_remove_request call in a certain failure case, aka CID-83c6f2390040.
ModificadaMedia (5.5)0.65%—Linux KernelDebian LinuxCanonical Ubuntu LinuxOpensuse Leap+199/5/202017/6/2026
An issue was discovered in the Linux kernel before 5.4.17. drivers/spi/spi-dw.c allows attackers to cause a panic via concurrent calls to dw_spi_irq and dw_spi_transfer_one, aka CID-19b61392c5a8.
ModificadaMedia (5.5)0.39%—Linux KernelCanonical Ubuntu LinuxDebian Linux9/5/202017/6/2026
An issue was discovered in the Linux kernel before 5.6. svm_cpu_uninit in arch/x86/kvm/svm.c has a memory leak, aka CID-d80b64ff297e. NOTE: third parties dispute this issue because it's a one-time leak at the boot, the size is negligible, and it can't be triggered at will
ModificadaMedia (5.5)0.53%—Libexif Project LibexifDebian LinuxCanonical Ubuntu LinuxOpensuse Leap9/5/202017/6/2026
exif_entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error.
ModificadaMedia (4.4)0.40%—Iproute2 Project Iproute2Canonical Ubuntu Linux9/5/202017/6/2026
iproute2 before 5.1.0 has a use-after-free in get_netnsid_from_name in ip/ipnetns.c. NOTE: security relevance may be limited to certain uses of setuid that, although not a default, are sometimes a configuration option offered to end users. Even when setuid is used, other factors (such as C library configuration) may…
ModificadaAlta (7.8)1.9%—Json-cFedoraproject FedoraDebian LinuxCanonical Ubuntu Linux+19/5/202017/6/2026
json-c through 0.14 has an integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend.
ModificadaMedia (6.4)0.36%—Linux KernelRedhat Enterprise LinuxDebian LinuxCanonical Ubuntu Linux+188/5/202017/6/2026
There is a use-after-free in kernel versions before 5.5 due to a race condition between the release of ptp_clock and cdev while resource deallocation. When a (high privileged) process allocates a ptp device file (like /dev/ptpX) and voluntarily goes to sleep. During this time if the underlying device is removed, it…
ModificadaBaja (2.2)1.5%—FreerdpCanonical Ubuntu LinuxDebian Linux7/5/202017/6/2026
In FreeRDP after 1.1 and before 2.0.0, there is an out-of-bound read of client memory that is then passed on to the protocol parser. This has been patched in 2.0.0.
ModificadaBaja (2.2)1.8%—FreerdpCanonical Ubuntu LinuxDebian Linux7/5/202017/6/2026
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bounds read. It only allows to abort a session. No data extraction is possible. This has been fixed in 2.0.0.
ModificadaMedia (5.9)1.7%—FreerdpCanonical Ubuntu LinuxDebian Linux7/5/202017/6/2026
In FreeRDP after 1.1 and before 2.0.0, there is an out-of-bounds read in autodetect_recv_bandwidth_measure_results. A malicious server can extract up to 8 bytes of client memory with a manipulated message by providing a short input and reading the measurement result data. This has been patched in 2.0.0.
ModificadaBaja (2.2)1.3%—FreerdpCanonical Ubuntu LinuxDebian Linux7/5/202017/6/2026
In FreeRDP after 1.0 and before 2.0.0, there is a stream out-of-bounds seek in update_read_synchronize that could lead to a later out-of-bounds read.
ModificadaBaja (3.3)1.7%—FreerdpDebian LinuxCanonical Ubuntu Linux7/5/202017/6/2026
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bound read in in update_read_bitmap_data that allows client memory to be read to an image buffer. The result displayed on screen as colour.
ModificadaBaja (2.2)1.9%—FreerdpCanonical Ubuntu LinuxDebian Linux7/5/202017/6/2026
In FreeRDP greater than 1.2 and before 2.0.0, a double free in update_read_cache_bitmap_v3_order crashes the client application if corrupted data from a manipulated server is parsed. This has been patched in 2.0.0.
ModificadaMedia (5.9)1.8%—FreerdpDebian LinuxCanonical Ubuntu Linux7/5/202017/6/2026
In FreeRDP greater than 1.1 and before 2.0.0, there is an out-of-bounds read in update_read_icon_info. It allows reading a attacker-defined amount of client memory (32bit unsigned -> 4GB) to an intermediate buffer. This can be used to crash the client or store information for later retrieval. This has been patched in…
ModificadaMedia (5.4)0.70%—Openstack KeystoneCanonical Ubuntu Linux7/5/202017/6/2026
An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. The EC2 API doesn't have a signature TTL check for AWS Signature V4. An attacker can sniff the Authorization header, and then use it to reissue an OpenStack token an unlimited number of times.
ModificadaAlta (8.8)4.9%—Openstack KeystoneCanonical Ubuntu Linux7/5/202017/6/2026
An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. Any authenticated user can create an EC2 credential for themselves for a project that they have a specified role on, and then perform an update to the credential user and project, allowing them to masquerade as another user. This potentially…
ModificadaAlta (8.8)1.6%—Openstack KeystoneCanonical Ubuntu Linux7/5/202017/6/2026
An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. Any user authenticated within a limited scope (trust/oauth/application credential) can create an EC2 credential with an escalated permission, such as obtaining admin while the user is on a limited viewer role. This potentially allows a malicious…
ModificadaMedia (6.5)2.7%—GNU MailmanDebian LinuxFedoraproject FedoraOpensuse Backports SLE+26/5/202017/6/2026
/options/mailman in GNU Mailman before 2.1.31 allows Arbitrary Content Injection.
ModificadaMedia (5.5)0.33%—Linux KernelCanonical Ubuntu LinuxOpensuse Leap5/5/202017/6/2026
gss_mech_free in net/sunrpc/auth_gss/gss_mech_switch.c in the rpcsec_gss_krb5 implementation in the Linux kernel through 5.6.10 lacks certain domain_release calls, leading to a memory leak. Note: This was disputed with the assertion that the issue does not grant any access not already available. It is a problem that…
ModificadaCrítica (9.8)7.3%—Dom4j Project Dom4jOracle Agile Product Lifecycle ManagementOracle Application Testing SuiteOracle Banking Platform+341/5/202025/8/2026
dom4j before 2.0.3 and 2.1.x before 2.1.3 allows external DTDs and External Entities by default, which might enable XXE attacks. However, there is popular external documentation from OWASP showing how to enable the safe, non-default behavior in any application that uses dom4j.