Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

889 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaBaja (3.7)4.0%—Oracle JDKOracle JRERedhat Enterprise LinuxRedhat Enterprise Linux Desktop+1915/1/202017/6/2026
Vulnerability in the Java SE product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of…
ModificadaAlta (8.1)4.9%—Oracle Commerce Experience ManagerOracle Commerce Guided SearchOracle GraalvmOracle JDK+2315/1/202017/6/2026
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols…
ModificadaMedia (6.8)4.3%—Oracle JDKOracle JREOracle OpenjdkDebian Linux+1915/1/202017/6/2026
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Security). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Kerberos to compromise…
ModificadaMedia (4.8)3.0%—Oracle JDKOracle JRERedhat Enterprise LinuxRedhat Enterprise Linux Desktop+2015/1/202017/6/2026
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to…
ModificadaBaja (3.7)3.2%—Oracle JDKOracle JRERedhat Enterprise LinuxRedhat Enterprise Linux Desktop+2015/1/202017/6/2026
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Security). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Kerberos to compromise…
ModificadaMedia (5.9)3.3%—Oracle JDKOracle JRENetapp Active IQ Unified ManagerNetapp Cloud Backup+1015/1/202017/6/2026
Vulnerability in the Java SE product of Oracle Java SE (component: JavaFX). The supported version that is affected is Java SE: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result…
ModificadaBaja (3.7)4.0%—Oracle JDKOracle JRERedhat Enterprise LinuxRedhat Enterprise Linux Desktop+2015/1/202017/6/2026
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols…
ModificadaMedia (5.5)0.39%—Linux KernelOpensuse LeapNetapp Active IQ Unified ManagerNetapp Cloud Backup+1030/12/201917/6/2026
mwifiex_tm_cmd in drivers/net/wireless/marvell/mwifiex/cfg80211.c in the Linux kernel before 5.1.6 has some error-handling cases that did not free allocated hostcmd memory, aka CID-003b686ace82. This will cause a memory leak and denial of service.
ModificadaMedia (5.5)0.48%—Linux KernelNetapp Active IQ Unified ManagerNetapp Cloud BackupNetapp Data Availability Services+928/12/201917/6/2026
In the Linux kernel before 5.0.6, there is a NULL pointer dereference in drop_sysctl_table() in fs/proc/proc_sysctl.c, related to put_links, aka CID-23da9588037e.
ModificadaMedia (4.6)0.63%—Linux KernelDebian LinuxOpensuse LeapNetapp Active IQ Unified Manager+925/12/201917/6/2026
In the Linux kernel before 5.1.6, there is a use-after-free in cpia2_exit() in drivers/media/usb/cpia2/cpia2_v4l.c that will cause denial of service, aka CID-dea37a972655.
ModificadaMedia (4.7)0.65%—Linux KernelDebian LinuxCanonical Ubuntu LinuxNetapp Active IQ Unified Manager+1225/12/201917/6/2026
In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of mishandling of port disconnection during discovery, related to a PHY down race condition, aka CID-f70267f379b5.
ModificadaMedia (4.6)0.49%—Linux KernelDebian LinuxCanonical Ubuntu LinuxNetapp Active IQ Unified Manager+924/12/201917/6/2026
In the Linux kernel through 5.4.6, there are information leaks of uninitialized memory to a USB device in the drivers/net/can/usb/kvaser_usb/kvaser_usb_leaf.c driver, aka CID-da2311a6385c.
ModificadaMedia (6.5)10%—Linux KernelDebian LinuxCanonical Ubuntu LinuxNetapp Active IQ Unified Manager+1223/12/201917/6/2026
An exploitable denial-of-service vulnerability exists in the Linux kernel prior to mainline 5.3. An attacker could exploit this vulnerability by triggering AP to send IAPP location updates for stations before the required authentication process has completed. This could lead to different denial-of-service scenarios,…
ModificadaMedia (5.5)0.95%—Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxDebian Linux+1022/12/201917/6/2026
kernel/sched/fair.c in the Linux kernel before 5.3.9, when cpu.cfs_quota_us is used (e.g., with Kubernetes), allows attackers to cause a denial of service against non-cpu-bound applications by generating a workload that triggers unwanted slice expiration, aka CID-de53fd7aedb1. (In other words, although this slice…
ModificadaAlta (7.5)3.5%—Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp Data Availability Services+1218/11/201917/6/2026
A memory leak in the fastrpc_dma_buf_attach() function in drivers/misc/fastrpc.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption) by triggering dma_get_sgtable() failures, aka CID-fc739a058d99.
ModificadaMedia (4.6)0.90%—Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxFedoraproject Fedora+1418/11/201917/6/2026
Two memory leaks in the rtl_usb_probe() function in drivers/net/wireless/realtek/rtlwifi/usb.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption), aka CID-3f9361695113.
ModificadaAlta (7.5)3.4%—Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management Controller+1118/11/201917/6/2026
A memory leak in the adis_update_scan_mode_burst() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-9c0530e898f3.
ModificadaAlta (7.5)3.6%—Linux KernelNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management ControllerNetapp Cloud Backup+1218/11/201917/6/2026
A memory leak in the adis_update_scan_mode() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-ab612b1daf41.
ModificadaBaja (3.3)0.79%—Linux KernelCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+1418/11/201917/6/2026
Two memory leaks in the mwifiex_pcie_init_evt_ring() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering mwifiex_map_pci_memory() failures, aka CID-d10dcb615c8e.
ModificadaMedia (4.7)0.45%—Linux KernelCanonical Ubuntu LinuxFedoraproject FedoraOpensuse Leap+1318/11/201917/6/2026
A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CID-a7b2df76b42b.
ModificadaAlta (7.5)3.3%—Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management Controller+1118/11/201917/6/2026
A memory leak in the rpmsg_eptdev_write_iter() function in drivers/rpmsg/rpmsg_char.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy_from_iter_full() failures, aka CID-bbe692e349e2.
ModificadaAlta (7.5)5.4%—Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxDebian Linux+1418/11/201917/6/2026
A memory leak in the gs_can_open() function in drivers/net/can/usb/gs_usb.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() failures, aka CID-fb5be6a7b486.
ModificadaAlta (7.5)5.1%—Linux KernelFedoraproject FedoraCanonical Ubuntu LinuxNetapp Active IQ Unified Manager+1318/11/201917/6/2026
A memory leak in the crypto_reportstat() function in crypto/crypto_user_stat.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering crypto_reportstat_alg() failures, aka CID-c03b04dcdba1.
ModificadaAlta (7.5)4.0%—Linux KernelNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management ControllerNetapp Cloud Backup+1118/11/201917/6/2026
Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering kcalloc() or v3d_job_init() failures, aka CID-29cd13cfd762.
ModificadaMedia (6.5)0.92%—Intel Core I3-10110u FirmwareIntel Core I3-10110y FirmwareIntel Core I3-1005g1 FirmwareIntel Core I3-9300t Firmware+77414/11/201917/6/2026
Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host system via local access.
Orbitaley — Vulnerabilidades