Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3017▼ 66 respecto a la semana anterior
Críticas / altas1412▲ 56 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)381▼ 129 respecto a la semana anterior
292 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.24% | — | GNU Binutils | 6/3/2026 | 17/6/2026 | GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors, the internal all_relocations array may remain partially uninitialized. Later,… | |
| Analizada | Media (5.5) | 0.16% | — | GNU Binutils | 6/3/2026 | 17/6/2026 | Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate, resulting in an unbounded logging loop… | |
| Analizada | Media (5.5) | 0.17% | — | GNU Binutils | 6/3/2026 | 17/6/2026 | Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian, leading to an abort (SIGABRT). The issue was… | |
| Analizada | Media (5) | 0.13% | — | GNU Binutils | 6/3/2026 | 17/6/2026 | An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers can cause objdump to enter an unbounded loop and produce endless output until manually… | |
| Analizada | Alta (7.5) | 0.31% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_abi_tags in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Alta (7.5) | 0.38% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Alta (7.5) | 0.24% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Alta (7.5) | 0.38% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_discriminator in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Alta (7.5) | 0.37% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | A buffer overflow vulnerability in function gnu_special in file cplus-dem.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Baja (2.5) | 0.15% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_unqualified_name in file cp-demangle.c in BinUtils 2.26 allowing attackers to cause a denial of service via crafted PE file. | |
| Modificada | Baja (1.9) | 0.28% | — | GNU Binutils | 16/10/2025 | 17/6/2026 | A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. This patch is called… | |
| Modificada | Baja (1.9) | 0.28% | — | GNU Binutils | 16/10/2025 | 17/6/2026 | A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of the file prdbg.c. Performing a manipulation results in unchecked return value. The attack needs to be approached locally. The exploit has been released to the public and may be used for attacks. | |
| Modificada | Baja (1.9) | 0.24% | — | GNU Binutils | 8/10/2025 | 30/9/2026 | A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of the file elf64-x86-64.c of the component Linker. This manipulation causes heap-based buffer overflow. The attack can only be executed locally. The exploit has been publicly disclosed and may be… | |
| Modificada | Baja (1.9) | 0.21% | — | GNU Binutils | 8/10/2025 | 30/9/2026 | A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd/elfxx-x86.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. The patch is… | |
| Modificada | Baja (1.9) | 0.21% | — | GNU Binutils | 7/10/2025 | 17/6/2026 | A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerability is the function get_link_hash_entry of the file bfd/elflink.c of the component Linker. This manipulation causes out-of-bounds read. The attack can only be executed locally. The exploit has been publicly disclosed and may be utilized.… | |
| Modificada | Baja (1.9) | 0.22% | — | GNU Binutils | 7/10/2025 | 17/6/2026 | A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_link_add_object_symbols of the file bfd/elflink.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. Upgrading to version… | |
| Modificada | Baja (1.9) | 0.21% | — | GNU Binutils | 7/10/2025 | 17/6/2026 | A vulnerability has been found in GNU Binutils 2.45. This impacts the function bfd_elf_gc_record_vtentry of the file bfd/elflink.c of the component Linker. The manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The… | |
| Modificada | Baja (1.9) | 0.26% | — | GNU Binutils | 27/9/2025 | 17/6/2026 | A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The… | |
| Modificada | Baja (1.9) | 0.25% | — | GNU Binutils | 27/9/2025 | 17/6/2026 | A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the file bfd/elf-eh-frame.c of the component Linker. Executing manipulation can lead to heap-based buffer overflow. The attack is restricted to local execution. The exploit has been published and may be used. This patch is… | |
| Analizada | Baja (1.9) | 0.20% | — | GNU Binutils | 27/9/2025 | 30/9/2026 | A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_section of the file binutils/objdump.c. Performing manipulation results in out-of-bounds read. The attack is only possible with local access. The exploit is now public and may be used. The patch is named… | |
| Analizada | Baja (1.9) | 0.24% | — | GNU Binutils | 27/7/2025 | 17/6/2026 | A vulnerability was found in GNU Binutils 2.44 and classified as problematic. This issue affects the function process_debug_info of the file binutils/dwarf.c of the component DWARF Section Handler. The manipulation leads to memory leak. Attacking locally is a requirement. The identifier of the patch is… | |
| Modificada | Baja (1.9) | 0.24% | — | GNU Binutils | 27/7/2025 | 17/6/2026 | A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_elf_get_str_section of the file bfd/elf.c of the component BFD Library. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has… | |
| Modificada | Baja (1.9) | 0.19% | — | GNU Binutils | 13/7/2025 | 17/6/2026 | A vulnerability, which was classified as problematic, has been found in GNU Binutils 2.45. Affected by this issue is the function bfd_elf_set_group_contents of the file bfd/elf.c. The manipulation leads to out-of-bounds write. It is possible to launch the attack on the local host. The exploit has been disclosed to the… | |
| Modificada | Baja (1.9) | 0.29% | — | GNU Binutils | 13/7/2025 | 17/6/2026 | A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file binutils/objcopy.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.… | |
| Modificada | Media (4.8) | 0.29% | — | GNU Binutils | 27/5/2025 | 17/6/2026 | A vulnerability classified as critical has been found in GNU Binutils up to 2.44. This affects the function debug_type_samep of the file /binutils/debug.c of the component objdump. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the… |