Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
92 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.2) | 0.56% | — | Linux KernelNovell Suse Linux Enterprise Software Development KITNovell Suse Linux Enterprise DebuginfoNovell Suse Linux Enterprise Desktop+5 | 27/4/2016 | 17/6/2026 | fs/pipe.c in the Linux kernel before 4.5 does not limit the amount of unread data in pipes, which allows local users to cause a denial of service (memory consumption) by creating many pipes with non-default sizes. | |
| Modificada | Media (4.6) | 1.6% | 💥 Exploit | Linux KernelSuse Linux Enterprise DebuginfoSuse Linux Enterprise Module FOR Public CloudSuse Linux Enterprise Desktop+4 | 27/4/2016 | 17/6/2026 | The treo_attach function in drivers/usb/serial/visor.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by inserting a USB device that lacks a (1) bulk-in or (2) interrupt-in endpoint. | |
| Modificada | Media (4.6) | 3.7% | 💥 Exploit | Linux KernelNovell Suse Linux Enterprise Real Time Extension | 27/4/2016 | 17/6/2026 | Double free vulnerability in the snd_usbmidi_create function in sound/usb/midi.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (panic) or possibly have unspecified other impact via vectors involving an invalid USB descriptor. | |
| Modificada | Media (4.6) | 1.9% | 💥 Exploit | Linux KernelCanonical Ubuntu LinuxNovell Suse Linux Enterprise Software Development KITNovell Suse Linux Enterprise Debuginfo+6 | 27/4/2016 | 17/6/2026 | The create_fixed_stream_quirk function in sound/usb/quirks.c in the snd-usb-audio driver in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference or double free, and system crash) via a crafted endpoints value in a USB device descriptor. | |
| Modificada | Media (5.5) | 0.39% | — | Linux KernelSuse Linux Enterprise Live PatchingSuse Linux Enterprise Module FOR Public CloudSuse Linux Enterprise Real Time Extension+4 | 27/4/2016 | 17/6/2026 | The tm_reclaim_thread function in arch/powerpc/kernel/process.c in the Linux kernel before 4.4.1 on powerpc platforms does not ensure that TM suspend mode exists before proceeding with a tm_reclaim call, which allows local users to cause a denial of service (TM Bad Thing exception and panic) via a crafted application. | |
| Modificada | Media (6.8) | 0.54% | — | Novell Suse Linux Enterprise Software Development KITNovell Suse Linux Enterprise DebuginfoNovell Suse Linux Enterprise DesktopNovell Suse Linux Enterprise Live Patching+7 | 27/4/2016 | 17/6/2026 | The hub_activate function in drivers/usb/core/hub.c in the Linux kernel before 4.3.5 does not properly maintain a hub-interface data structure, which allows physically proximate attackers to cause a denial of service (invalid memory access and system crash) or possibly have unspecified other impact by unplugging a USB… | |
| Modificada | Crítica (9.8) | 15% | — | Novell Suse Linux Enterprise Real Time ExtensionLinux KernelCanonical Ubuntu Linux | 27/4/2016 | 17/6/2026 | drivers/infiniband/hw/cxgb3/iwch_cm.c in the Linux kernel before 4.5 does not properly identify error conditions, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via crafted packets. | |
| Modificada | Media (6.2) | 0.43% | — | Linux KernelNovell Suse Linux Enterprise DebuginfoNovell Suse Linux Enterprise Real Time Extension | 27/4/2016 | 17/6/2026 | Memory leak in the cuse_channel_release function in fs/fuse/cuse.c in the Linux kernel before 4.4 allows local users to cause a denial of service (memory consumption) or possibly have unspecified other impact by opening /dev/cuse many times. | |
| Modificada | Alta (8.2) | 1.1% | 💥 PoC | XENNovell Suse Linux Enterprise Real Time Extension | 14/4/2016 | 17/6/2026 | Xen, when used on a system providing PV backends, allows local guest OS administrators to cause a denial of service (host OS crash) or gain privileges by writing to memory shared between the frontend and backend, aka a double fetch vulnerability. | |
| Modificada | Media (4.4) | 0.45% | — | XENCanonical Ubuntu LinuxDebian LinuxNovell Suse Linux Enterprise Debuginfo+1 | 13/4/2016 | 17/6/2026 | The PCI backend driver in Xen, when running on an x86 system and using Linux 3.1.x through 4.3.x as the driver domain, allows local guest administrators to generate a continuous stream of WARN messages and cause a denial of service (disk consumption) by leveraging a system with access to a passed-through MSI or MSI-X… | |
| Modificada | Media (6) | 0.45% | — | Linux KernelDebian LinuxOpensuseSuse Linux Enterprise Desktop+4 | 13/4/2016 | 17/6/2026 | The PCI backend driver in Xen, when running on an x86 system and using Linux 3.1.x through 4.3.x as the driver domain, allows local guest administrators to hit BUG conditions and cause a denial of service (NULL pointer dereference and host OS crash) by leveraging a system with access to a passed-through MSI or MSI-X… | |
| Modificada | Media (6.2) | 0.57% | — | Linux KernelSuse Linux Enterprise Real Time Extension | 8/2/2016 | 17/6/2026 | The fuse_fill_write_pages function in fs/fuse/file.c in the Linux kernel before 4.4 allows local users to cause a denial of service (infinite loop) via a writev system call that triggers a zero length for the first segment of an iov. | |
| Modificada | Alta (7.8) | 0.42% | — | Canonical Ubuntu LinuxSuse Linux Enterprise Real Time ExtensionLinux Kernel | 8/2/2016 | 17/6/2026 | The KEYS subsystem in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (BUG) via crafted keyctl commands that negatively instantiate a key, related to security/keys/encrypted-keys/encrypted.c, security/keys/trusted.c, and security/keys/user_defined.c. | |
| Modificada | Media (4.6) | 1.8% | 💥 Exploit | Novell Suse Linux Enterprise Software Development KITNovell Suse Linux Enterprise DebuginfoNovell Suse Linux Enterprise Real Time ExtensionNovell Suse Linux Enterprise Server+1 | 8/2/2016 | 17/6/2026 | The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by inserting a USB device that lacks a bulk-out endpoint. | |
| Modificada | Media (5) | 5.1% | — | Gnome NetworkmanagerSuse Linux Enterprise DebuginfoSuse Linux Enterprise DesktopSuse Linux Enterprise Real Time Extension+5 | 17/11/2015 | 17/6/2026 | GNOME NetworkManager allows remote attackers to cause a denial of service (IPv6 traffic disruption) via a crafted MTU value in an IPv6 Router Advertisement (RA) message, a different vulnerability than CVE-2015-8215. | |
| Modificada | Media (4.9) | 0.68% | — | Novell Suse Linux Enterprise Real Time ExtensionRedhat Enterprise Linux | 19/10/2015 | 17/6/2026 | The usbvision driver in the Linux kernel package 3.10.0-123.20.1.el7 through 3.10.0-229.14.1.el7 in Red Hat Enterprise Linux (RHEL) 7.1 allows physically proximate attackers to cause a denial of service (panic) via a nonzero bInterfaceNumber value in a USB device descriptor. | |
| Modificada | Media (5) | 5.5% | — | Linux KernelOpensuseSuse Linux Enterprise DesktopSuse Linux Enterprise Real Time Extension+11 | 2/3/2015 | 17/6/2026 | net/netfilter/nf_conntrack_proto_generic.c in the Linux kernel before 3.18 generates incorrect conntrack entries during handling of certain iptables rule sets for the SCTP, DCCP, GRE, and UDP-Lite protocols, which allows remote attackers to bypass intended access restrictions via packets with disallowed port numbers. | |
| Modificada | Baja (2.1) | 0.56% | — | Linux KernelRedhat Enterprise Linux AUSRedhat Enterprise Linux DesktopRedhat Enterprise Linux EUS+15 | 9/1/2015 | 17/6/2026 | The vdso_addr function in arch/x86/vdso/vma.c in the Linux kernel through 3.18.2 does not properly choose memory locations for the vDSO area, which makes it easier for local users to bypass the ASLR protection mechanism by guessing a location at the end of a PMD. | |
| Modificada | Baja (2.1) | 0.46% | — | Linux KernelRedhat Enterprise Linux AUSRedhat Enterprise Linux DesktopRedhat Enterprise Linux EUS+15 | 9/1/2015 | 17/6/2026 | The parse_rock_ridge_inode_internal function in fs/isofs/rock.c in the Linux kernel before 3.18.2 does not validate a length value in the Extensions Reference (ER) System Use Field, which allows local users to obtain sensitive information from kernel memory via a crafted iso9660 image. | |
| Modificada | Media (5.5) | 0.74% | — | Linux KernelCanonical Ubuntu LinuxNovell Suse Linux Enterprise DesktopNovell Suse Linux Enterprise Server+7 | 10/11/2014 | 17/6/2026 | The d_walk function in fs/dcache.c in the Linux kernel through 3.17.2 does not properly maintain the semantics of rename_lock, which allows local users to cause a denial of service (deadlock and system hang) via a crafted application. | |
| Modificada | Alta (7.8) | 0.56% | — | Linux KernelDebian LinuxOpensuse EvergreenSuse Linux Enterprise Real Time Extension+1 | 10/11/2014 | 17/6/2026 | The kvm_iommu_map_pages function in virt/kvm/iommu.c in the Linux kernel through 3.17.2 miscalculates the number of pages during the handling of a mapping failure, which allows guest OS users to cause a denial of service (host OS page unpinning) or possibly have unspecified other impact by leveraging guest OS… | |
| Modificada | Media (5.5) | 0.52% | — | Linux KernelNovell Suse Linux Enterprise DesktopNovell Suse Linux Enterprise ServerOpensuse Evergreen+6 | 10/11/2014 | 17/6/2026 | arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.17.2 on Intel processors does not ensure that the value in the CR4 control register remains the same after a VM entry, which allows host OS users to kill arbitrary processes or cause a denial of service (system disruption) by leveraging /dev/kvm… | |
| Modificada | Alta (7.5) | 8.6% | — | Linux KernelRedhat Enterprise MRGCanonical Ubuntu LinuxDebian Linux+8 | 10/11/2014 | 17/6/2026 | The sctp_assoc_lookup_asconf_ack function in net/sctp/associola.c in the SCTP implementation in the Linux kernel through 3.17.2 allows remote attackers to cause a denial of service (panic) via duplicate ASCONF chunks that trigger an incorrect uncork within the side-effect interpreter. | |
| Modificada | Media (4.3) | 1.2% | — | Suse Linux Enterprise Real Time ExtensionOpensuse EvergreenSuse Linux Enterprise ServerSuse Linux Enterprise Server+2 | 1/9/2014 | 17/6/2026 | The kvm_iommu_map_pages function in virt/kvm/iommu.c in the Linux kernel through 3.16.1 miscalculates the number of pages during the handling of a mapping failure, which allows guest OS users to (1) cause a denial of service (host OS memory corruption) or possibly have unspecified other impact by triggering a large… | |
| Modificada | Alta (7.1) | 5.8% | — | Linux KernelSuse Linux Enterprise DesktopSuse Linux Enterprise Real Time ExtensionSuse Linux Enterprise Server+4 | 1/8/2014 | 17/6/2026 | The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by starting to establish an association between two endpoints immediately after an exchange of INIT… |