Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

319 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)2.2%—ISC BindFedoraproject FedoraDebian LinuxNetapp H300s Firmware+420/9/202317/6/2026
A flaw in the networking code handling DNS-over-TLS queries may cause `named` to terminate unexpectedly due to an assertion failure. This happens when internal data structures are incorrectly reused under significant DNS-over-TLS query load. This issue affects BIND 9 versions 9.18.0 through 9.18.18 and 9.18.11-S1…
ModificadaMedia (6.5)1.7%—GNU GlibcRedhat Codeready Linux Builder EUSRedhat Codeready Linux Builder EUS FOR Power Little EndianRedhat Codeready Linux Builder EUS FOR Power Little Endian EUS+2318/9/202317/6/2026
A flaw was found in glibc. When the getaddrinfo function is called with the AF_UNSPEC address family and the system is configured with no-aaaa mode via /etc/resolv.conf, a DNS response via TCP larger than 2048 bytes can potentially disclose stack contents through the function returned address data, and may cause a…
ModificadaMedia (5.9)1.9%💥 PoCGNU GlibcRedhat Enterprise LinuxRedhat Enterprise Linux EUSRedhat Enterprise Linux FOR IBM Z Systems EUS S390x+1212/9/202317/6/2026
A flaw has been identified in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or…
ModificadaMedia (6.7)0.65%—Linux KernelFedoraproject FedoraRedhat Enterprise LinuxDebian Linux+49/8/202317/6/2026
A flaw was found in the exFAT driver of the Linux kernel. The vulnerability exists in the implementation of the file name reconstruction function, which is responsible for reading file name entries from a directory index and merging file name parts belonging to one file into a single long file name. Since the file…
ModificadaAlta (7.8)0.92%—Linux KernelFedoraproject FedoraRedhat Enterprise LinuxNetapp H300s+431/7/202317/6/2026
A use-after-free flaw was found in the Linux kernel's netfilter in the way a user triggers the nft_pipapo_remove function with the element, without a NFT_SET_EXT_KEY_END. This issue could allow a local user to crash the system or potentially escalate their privileges on the system.
ModificadaAlta (8.1)2.5%—Linux KernelNetapp H300sNetapp H410sNetapp H500s+124/7/202317/6/2026
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_LOGOFF and SMB2_CLOSE commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to execute…
ModificadaAlta (8.1)2.4%—Linux KernelNetapp Solidfire & HCI Storage NodeNetapp H300sNetapp H410s+224/7/202317/6/2026
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION_SETUP and SMB2_LOGOFF commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to…
ModificadaAlta (7.5)4.1%—Linux KernelNetapp H300s FirmwareNetapp H500s FirmwareNetapp H700s Firmware+224/7/202317/6/2026
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_LOGOFF commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An attacker can leverage this vulnerability to create a denial-of-service…
ModificadaAlta (7.5)4.1%—Linux KernelNetapp H300sNetapp H410cNetapp H410s+224/7/202317/6/2026
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_TREE_CONNECT and SMB2_QUERY_INFO commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An attacker can leverage this vulnerability to…
ModificadaAlta (7.5)3.9%—Linux KernelNetapp H300sNetapp H410sNetapp H500s+124/7/202317/6/2026
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_SESSION_SETUP commands. The issue results from the lack of control of resource consumption. An attacker can leverage this vulnerability to create a denial-of-service condition on…
ModificadaCrítica (9.1)2.5%—Linux KernelNetapp SolidfireNetapp Solidfire & HCI Storage NodeNetapp H300s+318/7/202317/6/2026
An issue was discovered in the Linux kernel before 6.3.10. fs/smb/server/smb2misc.c in ksmbd does not validate the relationship between the command payload size and the RFC1002 length specification, leading to an out-of-bounds read.
ModificadaCrítica (9.1)1.2%—Linux KernelNetapp Solidfire & HCI Management NodeNetapp H300sNetapp H410s+218/7/202317/6/2026
An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/connection.c in ksmbd does not validate the relationship between the NetBIOS header's length field and the SMB header sizes, via pdu_size in ksmbd_conn_handler_loop, leading to an out-of-bounds read.
ModificadaCrítica (9.1)1.2%—Linux KernelNetapp HCI Management NodeNetapp H300sNetapp H410s+218/7/202317/6/2026
An issue was discovered in the Linux kernel before 6.3.9. ksmbd does not validate the SMB request protocol ID, leading to an out-of-bounds read.
ModificadaCrítica (9.1)3.2%—Linux KernelNetapp Solidfire & HCI Management NodeNetapp Solidfire & HCI Storage NodeNetapp H300s+318/7/202317/6/2026
An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/smb2pdu.c in ksmbd does not properly check the UserName value because it does not consider the address of security buffer, leading to an out-of-bounds read.
ModificadaCrítica (9.8)1.2%—Linux KernelNetapp H300sNetapp H410sNetapp H500s+118/7/202317/6/2026
An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/smb2pdu.c in ksmbd has an integer underflow and out-of-bounds read in deassemble_neg_contexts.
ModificadaCrítica (9.1)3.0%—Linux KernelNetapp Solidfire & HCI Management NodeNetapp Solidfire & HCI Storage NodeNetapp H300s+318/7/202317/6/2026
An issue was discovered in the Linux kernel before 6.3.4. ksmbd has an out-of-bounds read in smb2_find_context_vals when create_context's name_len is larger than the tag length.
ModificadaAlta (8.1)2.9%—Linux KernelNetapp HCI Management NodeNetapp H300sNetapp H410s+210/7/202317/6/2026
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_TREE_DISCONNECT commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to execute code…
ModificadaAlta (8.1)2.6%—Linux KernelNetapp HCINetapp HCI Storage NodesNetapp H300s+310/7/202317/6/2026
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION_SETUP commands. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to execute code in…
ModificadaAlta (7.8)1.5%💥 PoCLinux KernelDebian LinuxFedoraproject FedoraNetapp H300s+45/7/202317/6/2026
Linux Kernel nftables Out-Of-Bounds Read/Write Vulnerability; nft_byteorder poorly handled vm register contents when CAP_NET_ADMIN is in any user or network namespace
ModificadaAlta (7.8)0.91%💥 PoCLinux KernelNetapp H300sNetapp H410cNetapp H410s+228/6/202322/7/2026
A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mishandled error handling with NFT_MSG_NEWRULE makes it possible to use a dangling pointer in the same transaction causing a use-after-free vulnerability. This flaw allows a local attacker with user…
ModificadaAlta (7)0.22%—Linux KernelNetapp H300sNetapp H410cNetapp H410s+228/6/202317/6/2026
A time-of-check to time-of-use issue exists in io_uring subsystem's IORING_OP_CLOSE operation in the Linux kernel's versions 5.6 - 5.11 (inclusive), which allows a local user to elevate their privileges to root. Introduced in b5dba59e0cf7e2cc4d3b3b1ac5fe81ddf21959eb, patched in…
ModificadaMedia (4.4)0.26%—Linux KernelFedoraproject FedoraRedhat Enterprise LinuxDebian Linux+523/6/202317/6/2026
A NULL pointer dereference issue was found in the gfs2 file system in the Linux kernel. It occurs on corrupt gfs2 file systems when the evict code tries to reference the journal descriptor structure after it has been freed and set to NULL. A privileged local user could use this flaw to cause a kernel panic.
ModificadaAlta (7.5)2.5%—ISC BindDebian LinuxFedoraproject FedoraNetapp Active IQ Unified Manager+521/6/202317/6/2026
If the `recursive-clients` quota is reached on a BIND 9 resolver configured with both `stale-answer-enable yes;` and `stale-answer-client-timeout 0;`, a sequence of serve-stale-related lookups could cause `named` to loop and terminate unexpectedly due to a stack overflow. This issue affects BIND 9 versions 9.16.33…
ModificadaAlta (7.5)0.88%—ISC BindNetapp Active IQ Unified ManagerNetapp H500s FirmwareNetapp H700s Firmware+321/6/202317/6/2026
A `named` instance configured to run as a DNSSEC-validating recursive resolver with the Aggressive Use of DNSSEC-Validated Cache (RFC 8198) option (`synth-from-dnssec`) enabled can be remotely terminated using a zone with a malformed NSEC record. This issue affects BIND 9 versions 9.16.8-S1 through 9.16.41-S1 and…
ModificadaAlta (7.5)3.8%—ISC BindDebian LinuxFedoraproject FedoraNetapp Active IQ Unified Manager+521/6/202317/6/2026
Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of…
Orbitaley — Vulnerabilidades