Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2698▼ 345 respecto a la semana anterior
Críticas / altas1316▼ 9 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 273 respecto a la semana anterior
33 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 1.8% | — | Elfutils Project ElfutilsDebian LinuxCanonical Ubuntu Linux | 9/4/2017 | 17/6/2026 | The check_group function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file. | |
| Modificada | Media (5.5) | 1.6% | — | Elfutils Project Elfutils | 9/4/2017 | 17/6/2026 | elf_compress.c in elfutils 0.168 does not validate the zlib compression factor, which allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file. | |
| Modificada | Media (5.5) | 2.1% | — | Elfutils Project ElfutilsDebian LinuxCanonical Ubuntu Linux | 9/4/2017 | 17/6/2026 | The ebl_object_note_type_name function in eblobjnotetypename.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file. | |
| Modificada | Media (5.5) | 1.7% | — | Elfutils Project Elfutils | 9/4/2017 | 17/6/2026 | The handle_gnu_hash function in readelf.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file. | |
| Modificada | Media (5.5) | 1.7% | — | Elfutils Project Elfutils | 23/3/2017 | 17/6/2026 | The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted (1) sh_off or (2) sh_size ELF header value, which triggers a memory allocation failure. | |
| Modificada | Media (5.5) | 1.6% | — | Elfutils Project Elfutils | 23/3/2017 | 17/6/2026 | The allocate_elf function in common.h in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted ELF file, which triggers a memory allocation failure. | |
| Modificada | Media (6.4) | 5.0% | — | Elfutils Project Elfutils | 2/1/2015 | 17/6/2026 | Directory traversal vulnerability in the read_long_names function in libelf/elf_begin.c in elfutils 0.152 and 0.161 allows remote attackers to write to arbitrary files to the root directory via a / (slash) in a crafted archive, as demonstrated using the ar program. | |
| Modificada | Media (6.8) | 4.0% | — | Elfutils Project Elfutils | 11/4/2014 | 17/6/2026 | Integer overflow in the check_section function in dwarf_begin_elf.c in the libdw library, as used in elfutils 0.153 and possibly through 0.158 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed compressed debug section in an ELF file, which… |