Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3005▼ 69 respecto a la semana anterior
Críticas / altas1419▲ 52 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

45 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.36%—Intel Core I7-6970hq FirmwareIntel Core I7-6920hq FirmwareIntel Core I7-6870hq FirmwareIntel Core I7-6822eq Firmware+14314/11/201917/6/2026
Insufficient memory protection in Intel(R) 6th Generation Core Processors and greater, supporting TXT, may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaAlta (7.8)0.38%—Intel Core I7-6970hq FirmwareIntel Core I7-6920hq FirmwareIntel Core I7-6870hq FirmwareIntel Core I7-6822eq Firmware+14314/11/201917/6/2026
Insufficient memory protection in Intel(R) 6th Generation Core Processors and greater, supporting SGX, may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (4.4)0.41%—Intel Core I7-6970hq FirmwareIntel Core I7-6920hq FirmwareIntel Core I7-6870hq FirmwareIntel Core I7-6822eq Firmware+15914/11/201917/6/2026
Insufficient access control in protected memory subsystem for Intel(R) SGX for 6th, 7th, 8th, 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Xeon(R) Processor E3-1500 v5, v6 Families; Intel(R) Xeon(R) E-2100 & E-2200 Processor Families with Intel(R) Processor Graphics may allow a privileged user to…
ModificadaMedia (6.5)0.92%—Intel Core I3-10110u FirmwareIntel Core I3-10110y FirmwareIntel Core I3-1005g1 FirmwareIntel Core I3-9300t Firmware+77414/11/201917/6/2026
Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host system via local access.
ModificadaMedia (5.5)0.35%—Intel Core I7-6970hq FirmwareIntel Core I7-6920hq FirmwareIntel Core I7-6870hq FirmwareIntel Core I7-6822eq Firmware+13814/11/201917/6/2026
Insufficient access control in protected memory subsystem for SMM for 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor families; Intel(R) Xeon(R) Processor E3-1500 v5 and v6 families; Intel(R) Xeon(R) E-2100 and E-2200 Processor families with Intel(R) Processor Graphics may allow a privileged user to…
ModificadaAlta (7.8)0.67%—Redhat Enterprise Linux Server AUSRedhat Enterprise Linux Server EUSRedhat Enterprise Linux Server TUSIntel Graphics Driver+35314/11/201917/6/2026
Insufficient access control in a subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Pentium(R) Processor J, N, Silver and Gold Series; Intel(R) Celeron(R) Processor J, N, G3900 and G4900 Series; Intel(R) Atom(R) Processor A and E3900 Series;…
ModificadaMedia (5.5)0.65%—Canonical Ubuntu LinuxIntel Pentium J4205 FirmwareIntel Pentium N4200 FirmwareIntel Celeron J3355 Firmware+14414/11/201917/6/2026
Insufficient access control in subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Pentium(R) Processor J, N, Silver and Gold Series; Intel(R) Celeron(R) Processor J, N, G3900 and G4900 Series; Intel(R) Atom(R) Processor A and E3900 Series;…
ModificadaAlta (7.3)6.3%—Intel Core I3Intel Core I5Intel Core I7Intel Xeon E3+2614/8/201817/6/2026
Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.
ModificadaMedia (5.6)8.6%—Intel Atom CIntel Atom EIntel Atom X3Intel Atom Z+22110/7/201817/6/2026
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis.
ModificadaAlta (7.6)0.37%—Intel Xeon E3Intel Xeon E3 1220 V5Intel Xeon E3 1220 V6Intel Xeon E3 1225 V5+3010/7/201817/6/2026
Existing UEFI setting restrictions for DCI (Direct Connect Interface) in 5th and 6th generation Intel Xeon Processor E3 Family, Intel Xeon Scalable processors, and Intel Xeon Processor D Family allows a limited physical presence attacker to potentially access platform secrets via debug interfaces.
ModificadaMedia (5.6)7.5%—Intel Atom CIntel Atom EIntel Atom ZIntel Celeron J+19522/5/201817/6/2026
Systems with microprocessors utilizing speculative execution and that perform speculative reads of system registers may allow unauthorized disclosure of system parameters to an attacker with local user access via a side-channel analysis, aka Rogue System Register Read (RSRE), Variant 3a.
ModificadaMedia (5.5)61%—Intel Atom CIntel Atom EIntel Atom X5-e3930Intel Atom X5-e3940+27822/5/201817/6/2026
Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB),…
ModificadaMedia (6)0.34%—Intel Core I7-8550uIntel Core I7-8559uIntel Core I7-8650uIntel Core I7-8700+3043/4/201817/6/2026
Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.
ModificadaMedia (5.6)0.67%—Intel Atom CIntel Atom EIntel Atom X3Intel Atom Z+20527/3/201817/6/2026
Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access via a side-channel attack on the directional branch predictor, as demonstrated by a pattern history table (PHT), aka BranchScope.
ModificadaMedia (5.6)84%—Intel Atom CIntel Atom EIntel Atom X3Intel Atom Z+2054/1/201817/6/2026
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis of the data cache.
ModificadaMedia (5.6)94%—Intel Atom CIntel Atom EIntel Atom X3Intel Atom X5-e3930+3044/1/201817/6/2026
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
ModificadaMedia (5.6)74%—Intel Atom CIntel Atom EIntel Atom X3Intel Atom X5-e3930+2164/1/201817/6/2026
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
ModificadaAlta (7.5)1.6%—Allwinner A64AMD Athlon II 640 X4AMD E-350AMD Fx-8120 8-core+1627/2/201717/6/2026
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern ARM processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR.
ModificadaAlta (7.5)1.6%—Allwinner A64AMD Athlon II 640 X4AMD E-350AMD Fx-8120 8-core+1627/2/201717/6/2026
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern AMD processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR.
ModificadaAlta (7.5)1.6%—Allwinner A64AMD Athlon II 640 X4AMD E-350AMD Fx-8120 8-core+1627/2/201717/6/2026
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern Intel processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR.