Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
4241 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.8) | 55% | ⚠ Explotación activa💥 Exploit | Sudo Project SudoCanonical Ubuntu LinuxDebian LinuxOpensuse Leap+4 | 30/6/2025 | 17/6/2026 | Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option. | |
| Modificada | Media (4.7) | 0.76% | 💥 PoC | Canonical ApportCanonical Ubuntu Linux | 30/5/2025 | 17/6/2026 | Race condition in Canonical apport up to and including 2.32.0 allows a local attacker to leak sensitive information via PID-reuse by leveraging namespaces. When handling a crash, the function `_check_global_pid_and_forward`, which detects if the crashing process resided in a container, was being called before… | |
| Analizada | Media (4.9) | 0.23% | — | Gnome Control CenterCanonical Ubuntu Linux | 15/4/2025 | 17/6/2026 | In Ubuntu, gnome-control-center did not properly reflect SSH remote login status when the system was configured to use systemd socket activation for openssh-server. This could unknowingly leave the local machine exposed to remote SSH access contrary to expectation of the user. | |
| Analizada | Media (5.5) | 0.14% | — | Canonical AccountsserviceCanonical Ubuntu Linux | 25/3/2025 | 17/6/2026 | accountsservice no longer drops permissions when writting .pam_environment | |
| Modificada | Media (5.9) | 41% | 💥 PoC | Openbsd OpensshCanonical Ubuntu LinuxDebian Linux | 28/2/2025 | 30/6/2026 | A flaw was found in the OpenSSH package. For each ping packet the SSH server receives, a pong packet is allocated in a memory buffer and stored in a queue of packages. It is only freed when the server/client key exchange has finished. A malicious client may keep sending such packages, leading to an uncontrolled… | |
| Analizada | Crítica (9.8) | 0.74% | — | Gnome-remote-desktopCanonical Ubuntu Linux | 31/1/2025 | 17/6/2026 | Ubuntu's configuration of gnome-control-center allowed Remote Desktop Sharing to be enabled by default. | |
| Analizada | Alta (7.8) | 0.26% | — | Canonical Ubuntu Desktop Provision | 23/7/2024 | 17/6/2026 | An issue was discovered in provd before version 0.1.5 with a setuid binary, which allows a local attacker to escalate their privilege. | |
| Modificada | Alta (8.1) | 100% | 💥 Exploit | Sonicwall SMA 6200 FirmwareSonicwall SMA 7200 FirmwareArista EOSCanonical Ubuntu Linux+49 | 1/7/2024 | 1/9/2026 | A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period. | |
| Analizada | Media (5.5) | 0.15% | — | Canonical Ubuntu Advantage Desktop Daemon | 27/6/2024 | 17/6/2026 | Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext. | |
| Analizada | Alta (8.8) | 0.26% | — | Canonical SnapdCanonical Ubuntu Linux | 21/6/2024 | 17/6/2026 | When generating the systemd service units for the docker snap (and other similar snaps), snapd does not specify Delegate=yes - as a result systemd will move processes from the containers created and managed by these snaps into the cgroup of the main daemon within the snap itself when reloading system units. This may… | |
| Modificada | Media (5.5) | 0.20% | — | Apport Project ApportCanonical Ubuntu Linux | 4/6/2024 | 17/6/2026 | Apport argument parsing mishandles filename splitting on older kernels resulting in argument spoofing | |
| Modificada | Alta (7.8) | 0.23% | — | Apport Project ApportCanonical Ubuntu Linux | 4/6/2024 | 17/6/2026 | Apport does not disable python crash handler before entering chroot | |
| Modificada | Media (5.5) | 0.20% | — | Apport Project ApportCanonical Ubuntu Linux | 4/6/2024 | 17/6/2026 | is_closing_session() allows users to consume RAM in the Apport process | |
| Modificada | Alta (7.1) | 0.21% | — | Apport Project ApportCanonical Ubuntu Linux | 4/6/2024 | 17/6/2026 | is_closing_session() allows users to create arbitrary tcp dbus connections | |
| Modificada | Media (5.5) | 0.25% | — | Apport Project ApportCanonical Ubuntu Linux | 4/6/2024 | 17/6/2026 | is_closing_session() allows users to fill up apport.log | |
| Modificada | Media (5.5) | 0.20% | — | Apport Project ApportCanonical Ubuntu Linux | 4/6/2024 | 17/6/2026 | ~/.config/apport/settings parsing is vulnerable to "billion laughs" attack | |
| Analizada | Alta (7.8) | 0.23% | — | Canonical ApportCanonical Ubuntu Linux | 3/6/2024 | 17/6/2026 | Apport can be tricked into connecting to arbitrary sockets as the root user | |
| Analizada | Alta (7.8) | 0.38% | 💥 PoC | Canonical ApportCanonical Ubuntu Linux | 3/6/2024 | 17/6/2026 | There is a race condition in the 'replaced executable' detection that, with the correct local configuration, allow an attacker to execute arbitrary code as root. | |
| Modificada | Media (5.5) | 0.28% | — | Canonical Ubuntu Pipewire-pulse | 24/1/2024 | 17/6/2026 | Ubuntu's pipewire-pulse in snap grants microphone access even when the snap interface for audio-record is not set. | |
| Modificada | Media (5.5) | 0.27% | — | Linux KernelCanonical Ubuntu Linux | 8/1/2024 | 17/6/2026 | The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socket_file() in file net/socket.c. This issue was introduced in da214a475f8bd1d3e9e7a19ddfeb4d1617551bab and fixed in 649c15c7691e9b13cbe9bf6c65c365350e056067. | |
| Modificada | Alta (7.8) | 0.28% | — | Linux KernelCanonical Ubuntu LinuxFedoraproject FedoraRedhat Enterprise Linux | 8/1/2024 | 17/6/2026 | It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code. | |
| Modificada | Alta (7) | 0.38% | 💥 PoC | Canonical SnapdCanonical Ubuntu Linux | 8/1/2024 | 17/6/2026 | Race condition in snap-confine's must_mkdir_and_open_with_perms() | |
| Modificada | Alta (7) | 1.4% | 💥 PoC | Linux KernelCanonical Ubuntu Linux | 8/1/2024 | 17/6/2026 | io_uring UAF, Unix SCM garbage collection | |
| Modificada | Alta (7.8) | 5.9% | 💥 PoC | Linux KernelCanonical Ubuntu Linux | 8/1/2024 | 17/6/2026 | It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if its handle had the value 0. | |
| Analizada | Alta (7.8) | 10% | ⚠ Explotación activa💥 PoC | Linux KernelCanonical Ubuntu Linux | 8/1/2024 | 20/8/2026 | It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was deleted. |