Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
10.164 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 29/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: module: ensure that kobject_put() is safe for module type kobjects In 'lookup_or_create_module_kobject()', an internal kobject is created using 'module_ktype'. So call to 'kobject_put()' on error handling path causes an attempt to use an uninitialized… | |
| Analizada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 29/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix NULL pointer access This patch ensures that the UCSI driver waits for all pending tasks in the ucsi_displayport_work workqueue to finish executing before proceeding with the partner removal. | |
| Analizada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 26/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: net_sched: Flush gso_skb list too during ->change() Previously, when reducing a qdisc's limit via the ->change() operation, only the main skb queue was trimmed, potentially leaving packets in the gso_skb list. This could result in NULL pointer… | |
| Analizada | Alta (8.8) | 0.85% | — | GstreamerDebian Linux | 22/5/2025 | 17/6/2026 | GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the… | |
| Analizada | Alta (7.8) | 0.22% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: parisc: Fix double SIGFPE crash Camm noticed that on parisc a SIGFPE exception will crash an application with a second SIGFPE in the signal handler. Dave analyzed it, and it happens because glibc uses a double-word floating-point store to atomically… | |
| Analizada | Media (5.5) | 0.23% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: brcm80211: fmac: Add error handling for brcmf_usb_dl_writeimage() The function brcmf_usb_dl_writeimage() calls the function brcmf_usb_dl_cmd() but dose not check its return value. The 'state.state' and the 'state.bytes' are uninitialized if the… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: net: phy: leds: fix memory leak A network restart test on a router led to an out-of-memory condition, which was traced to a memory leak in the PHY LED trigger code. The root cause is misuse of the devm API. The registration function… | |
| Analizada | Media (4.7) | 0.13% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: USB: wdm: close race between wdm_open and wdm_wwan_port_stop Clearing WDM_WWAN_IN_USE must be the last action or we can open a chardev whose URBs are still poisoned | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: qibfs: fix _another_ leak failure to allocate inode => leaked dentry... this one had been there since the initial merge; to be fair, if we are that far OOM, the odds of failing at that particular allocation are low... | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: wl1251: fix memory leak in wl1251_tx_work The skb dequeued from tx_queue is lost when wl1251_ps_elp_wakeup fails with a -ETIMEDOUT error. Fix that by queueing the skb back to tx_queue. | |
| Modificada | Alta (7.8) | 0.21% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: Fix sc7280 lpass potential buffer overflow Case values introduced in commit 5f78e1fb7a3e ("ASoC: qcom: Add driver support for audioreach solution") cause out of bounds access in arrays of sc7280 driver data (e.g. in case of… | |
| Modificada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 20/5/2025 | 14/7/2026 | In the Linux kernel, the following vulnerability has been resolved: Input: mtk-pmic-keys - fix possible null pointer dereference In mtk_pmic_keys_probe, the regs parameter is only set if the button is parsed in the device tree. However, on hardware where the button is left floating, that node will most likely be… | |
| Analizada | Media (5.5) | 0.16% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_fifo Prevent st_lsm6dsx_read_fifo from falling in an infinite loop in case pattern_len is equal to zero and the device FIFO is not empty. | |
| Analizada | Media (5.5) | 0.17% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_tagged_fifo Prevent st_lsm6dsx_read_tagged_fifo from falling in an infinite loop in case pattern_len is equal to zero and the device FIFO is not empty. | |
| Modificada | Media (5.5) | 0.16% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: iio: light: opt3001: fix deadlock due to concurrent flag access The threaded IRQ function in this driver is reading the flag twice: once to lock a mutex and once to unlock it. Even though the code setting the flag is designed to prevent it, there are… | |
| Analizada | Media (5.5) | 0.15% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix deadlock This patch introduces the ucsi_con_mutex_lock / ucsi_con_mutex_unlock functions to the UCSI driver. ucsi_con_mutex_lock ensures the connector mutex is only locked if a connection is established and the… | |
| Modificada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: x86/mm: Eliminate window where TLB flushes may be inadvertently skipped tl;dr: There is a window in the mm switching code where the new CR3 is set and the CPU should be getting TLB flushes for the new mm. But should_flush_tlb() has a bug and… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: arm64: bpf: Only mitigate cBPF programs loaded by unprivileged users Support for eBPF programs loaded by unprivileged users is typically disabled. This means only cBPF programs need to be mitigated for BHB. In addition, only mitigate cBPF programs… | |
| Analizada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix memory leak in parse_lease_state() The previous patch that added bounds check for create lease context introduced a memory leak. When the bounds check fails, the function returns NULL without freeing the previously allocated lease_ctx_info… | |
| Analizada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ipvs: fix uninit-value for saddr in do_output_route4 syzbot reports for uninit-value for the saddr argument [1]. commit 4754957f04f5 ("ipvs: do not use random local source address for tunnels") already implies that the input value of saddr should be… | |
| Modificada | Media (5.5) | 0.36% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: bpf: Scrub packet on bpf_redirect_peer When bpf_redirect_peer is used to redirect packets to a device in another network namespace, the skb isn't scrubbed. That can lead skb information from one namespace to be "misused" in another namespace. As one… | |
| Analizada | Media (5.5) | 0.22% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix dereferencing invalid pmd migration entry When migrating a THP, concurrent access to the PMD migration entry during a deferred split scan can lead to an invalid address access, as illustrated below. To prevent this invalid access,… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: sch_htb: make htb_deactivate() idempotent Alan reported a NULL pointer dereference in htb_next_rb_node() after we made htb_qlen_notify() idempotent. It turns out in the following case it introduced some regression: For htb_next_rb_node(), after… | |
| Analizada | Media (5.5) | 0.18% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Add job to pending list if the reset was skipped When a CL/CSD job times out, we check if the GPU has made any progress since the last timeout. If so, instead of resetting the hardware, we skip the reset and let the timer get rearmed. This… | |
| Modificada | Media (5.5) | 0.23% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: xenbus: Use kref to track req lifetime process_msg+0x18e is req->cb(req). req->cb is set to xs_wake_up(), a thin wrapper around wake_up(), or xenbus_dev_queue_reply(). It seems like it was xs_wake_up() in this case. It seems like req may have woken up… |