Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2661▼ 437 respecto a la semana anterior
Críticas / altas1284▼ 85 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)247▼ 271 respecto a la semana anterior
426 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| En análisis | Alta (7.5) | 0.52% | — | ISC BindAI | 22/7/2026 | 22/7/2026 | If a provably insecure domain is covered by both an NSEC and NSEC3 record at the parent, and there exist an RRSIG for only one of these types, then BIND may exit unexpectedly with an assertion while validating this proof. This issue affects BIND 9 versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.24, 9.21.0 through… | |
| En análisis | Alta (7.5) | 0.50% | — | ISC BindAI | 22/7/2026 | 22/7/2026 | The issue is unexpected program termination based on ordering and/or specific content in responses to queries for CNAME or DNAME, and A records. Specifically, if a client queries for a DNAME and A record below the DNAME to the resolver, and the authoritative server responds positively to the A query but delays the… | |
| En análisis | Alta (7.5) | 0.40% | — | ISC BindAI | 22/7/2026 | 22/7/2026 | It is possible for an attacker's zone to respond to a query with an RRSIG that has a smaller number of labels than the zone in which the RRSIG is contained. This causes `named` to produce a wildcard name for a zone that is shorter than the attacker's zone, which can result in cache poisoning. For this attack to have… | |
| En análisis | Alta (7.5) | 0.54% | — | ISC BindAI | 22/7/2026 | 22/7/2026 | A DNSSEC validating resolver that is under a random subdomain attack against a DNSSEC-signed zone can suffer from runaway memory usage. The attacker needs to be able to send queries faster than the resolver can perform validation. The increased memory usage can be orders of magnitude beyond the limit configured in the… | |
| En análisis | Alta (7.5) | 0.54% | — | ISC BindAI | 22/7/2026 | 22/7/2026 | The issue is a resource exhaustion vulnerability associated with DNSSEC validation. BIND always validates all RRSIG records in an answer, even if they are not strictly needed. A query to an authoritative server/zone which returns many valid but superfluous RRSIG records causes the validator to waste disproportionate… | |
| En análisis | Alta (7.5) | 0.43% | — | ISC BindAI | 22/7/2026 | 22/7/2026 | An attacker who knows (or guesses) that a resolver uses RPZ with wildcard CNAME policies can craft query names long enough to trigger a NAMETOOLONG error condition during RPZ processing. This is not handled correctly and may lead to defeating the RPZ rule. It also may lead to an unexpected exit of the BIND 9 software.… | |
| En análisis | Media (6.5) | 0.38% | — | ISC BindAI | 22/7/2026 | 22/7/2026 | If BIND encounters a particular invalid data structure in a DNS record, it will accept the invalid data, and may subsequently abort and exit. BIND will first need to store a DNS record for a key (KEY, DNSKEY, etc.). That key must specify a PRIVATEDNS algorithm (253), and in the algorithm identifier, improperly give a… | |
| En análisis | Media (6.8) | 0.27% | — | ISC BindAI | 22/7/2026 | 22/7/2026 | BIND may accept incorrect child-zone NSEC3 records as valid, which could allow an attacker to forge authenticated NXDOMAIN responses. This issue affects BIND 9 versions 9.18.0 through 9.18.50, 9.20.0 through 9.20.24, 9.21.0 through 9.21.23, 9.11.3-S1 through 9.18.50-S1, and 9.20.9-S1 through 9.20.24-S1. | |
| Pendiente de análisis | Media (6.5) | 0.26% | — | RpcbindAIRpcbind RpcinfoAI | 21/7/2026 | 22/7/2026 | A stack-based buffer overflow was found in rpcbind's rpcinfo utility. In rpcbdump() short mode (used by `rpcinfo -s`), version numbers from a remote RPCBPROC_DUMP reply are written into a fixed-size stack buffer without bounds checking. A user or administrator who runs `rpcinfo -s` against a malicious or compromised… | |
| Pendiente de análisis | Media (6.5) | 0.51% | — | Rpcbind RpcinfoAI | 20/7/2026 | 21/7/2026 | A stack-based buffer overflow was found in rpcbind's rpcinfo utility. When querying a remote rpcbind service with `rpcinfo -l`, address information returned by the server is copied into a fixed-size buffer without sufficient bounds checking. A malicious or compromised rpcbind server could use this flaw to crash the… | |
| Aplazada | Media (6.1) | 0.10% | — | Samba PAM WinbindAI | 15/7/2026 | 15/7/2026 | A flaw was found in samba's pam_winbind. When mkhomedir is enabled, pam_winbind chowns the target account's home directory without validating the path is not a critical system directory such as /. On affected systems, accounts with / as their home directory (a common default for system accounts) can have this… | |
| Pendiente de análisis | Media (6.5) | 0.39% | — | Fasterxml Jackson-databindAI | 14/7/2026 | 16/7/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.18.0 until 2.18.9, 2.21.5, 2.22.1, 3.1.5, and 3.2.1, UnwrappedPropertyHandler.processUnwrapped() replays buffered JSON for a @JsonUnwrapped property and calls prop.deserializeAndSet() without a… | |
| Pendiente de análisis | Media (6.5) | 0.42% | — | Fasterxml Jackson-databindAI | 14/7/2026 | 15/7/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.15.0 until 2.18.8, 2.21.4, and 3.1.4, Java Records using a PropertyNamingStrategy can bypass @JsonIgnore because POJOPropertiesCollector._removeUnwantedIgnorals() records an ignored component… | |
| Aplazada | Media (5.9) | 0.43% | — | ISC BindAI | 25/6/2026 | 25/6/2026 | Spoofing replies to Recursor might mark an IP of an authoritative server as not supporting EDNS, causing valdiation of DNSSEC records served by that server to fail. | |
| Aplazada | Media (5.3) | 0.45% | — | ISC BindAI | 25/6/2026 | 25/6/2026 | — | |
| Aplazada | Media (5.3) | 0.70% | — | ISC BindAI | 25/6/2026 | 25/6/2026 | An attacker can send crafted DNS over HTTP/3 queries, triggering an exception that prevents some buffer from being freed right away. The buffer will be freed at the end of the QUIC connection, but on some setups it might be possible to open enough concurrent DoH3 streams to trigger an out-of-memory condition,… | |
| Aplazada | Baja (3.7) | 0.40% | — | ISC BindAI | 25/6/2026 | 25/6/2026 | An attacker might be able to delay the processing of DoH3 queries by sending DoH3 GET queries with an invalid DATA frame. | |
| Analizada | Media (6.5) | 0.35% | — | Fasterxml Jackson-databind | 23/6/2026 | 27/6/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, UnwrappedPropertyHandler.processUnwrappedCreatorProperties() replays buffered JSON into creator parameters but never consults prop.visibleInView(activeView). The… | |
| Analizada | Media (5.3) | 0.38% | — | Fasterxml Jackson-databind | 23/6/2026 | 27/6/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, in BeanDeserializer._deserializeUsingPropertyBased, the active-view (@JsonView) filter was applied only to creator properties; the regular property-buffering branch… | |
| Analizada | Media (5.3) | 0.45% | — | Fasterxml Jackson-databind | 23/6/2026 | 27/6/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, POJOPropertiesCollector._renameProperties() allows a property with @JsonProperty("renamed") on the getter and @JsonIgnore on the setter to be renamed rather than… | |
| Analizada | Media (5.3) | 0.44% | — | Fasterxml Jackson-databind | 23/6/2026 | 29/6/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.8.0 until 2.18.9, 2.21.5, and 3.1.4, in BeanDeserializerBase.createContextual(), per-property @JsonIgnoreProperties exclusions are applied by _handleByNameInclusion(), producing a contextual… | |
| Analizada | Media (5.3) | 0.37% | — | Fasterxml Jackson-databind | 23/6/2026 | 27/6/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.0.0 until 2.18.8, 2.21.4, and 3.1.4, JDKFromStringDeserializer constructed InetSocketAddress with new InetSocketAddress(host, port), which performs eager DNS name resolution for hostname inputs at… | |
| Modificada | Alta (8.1) | 1.2% | — | Fasterxml Jackson-databind | 23/6/2026 | 14/9/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.10.0 until 2.18.8, 2.21.4, and 3.1.4, BasicPolymorphicTypeValidator.Builder.allowIfSubTypeIsArray() allowlists any array type based only on clazz.isArray(), without validating the array's… | |
| Analizada | Alta (8.1) | 1.00% | — | Fasterxml Jackson-databind | 23/6/2026 | 27/6/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.10.0 until 2.18.8, 2.21.4, and 3.1.4, jackson-databind's PolymorphicTypeValidator (PTV) is the primary safety mechanism guarding polymorphic deserialization. When polymorphic typing is enabled and… | |
| Analizada | Media (6.3) | 0.62% | — | Fasterxml Jackson-databind | 23/6/2026 | 27/6/2026 | jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.13.0 until 2.14.0, a potential Denial-of-Service exists when attacker sends deeply nested JSON if (and only if) the service reads deeply nested (1000s of levels) JSON as JsonNode… |