Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
10.164 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: arm64: bpf: Add BHB mitigation to the epilogue for cBPF programs A malicious BPF program may manipulate the branch history to influence what the hardware speculates will happen next. On exit from a BPF program, emit the BHB mititgation sequence. This… | |
| Modificada | Alta (7.8) | 0.63% | 💥 PoC | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent out-of-bounds stream writes by validating *pos ksmbd_vfs_stream_write() did not validate whether the write offset (*pos) was within the bounds of the existing stream data length (v_len). If *pos was greater than or equal to v_len, this… | |
| Analizada | Media (5.5) | 0.16% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ftrace: Add cond_resched() to ftrace_graph_set_hash() When the kernel contains a large number of functions that can be traced, the loop in ftrace_graph_set_hash() may take a lot of time to execute. This may trigger the softlockup watchdog. Add… | |
| Modificada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: tracing: Verify event formats that have "%*p.." The trace event verifier checks the formats of trace events to make sure that they do not point at memory that is not in the trace event itself or in data that will never be freed. If an event references… | |
| Analizada | Media (5.5) | 0.23% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: objtool, media: dib8000: Prevent divide-by-zero in dib8000_set_dds() If dib8000_set_dds()'s call to dib8000_read32() returns zero, the result is a divide-by-zero. Prevent that from happening. Fixes the following warning with an UBSAN kernel: | |
| Modificada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel: KVM: Mask PEBS_ENABLE loaded for guest with vCPU's value. When generating the MSR_IA32_PEBS_ENABLE value that will be loaded on VM-Entry to a KVM guest, mask the value with the vCPU's desired PEBS_ENABLE value. Consulting only the host… | |
| Analizada | Media (5.5) | 0.23% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: sch_htb: make htb_qlen_notify() idempotent htb_qlen_notify() always deactivates the HTB class and in fact could trigger a warning if it is already deactivated. Therefore, it is not idempotent and not friendly to its callers, like fq_codel_dequeue().… | |
| Modificada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: adjust subpage bit start based on sectorsize When running machines with 64k page size and a 16k nodesize we started seeing tree log corruption in production. This turned out to be because we were not writing out dirty blocks sometimes, so this… | |
| Analizada | Media (5.5) | 0.22% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: Fix WARN_ON in nouveau_fence_context_kill() Nouveau is mostly designed in a way that it's expected that fences only ever get signaled through nouveau_fence_signal(). However, in at least one other place, nouveau_fence_done(), can signal… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: arm64: errata: Add missing sentinels to Spectre-BHB MIDR arrays Commit a5951389e58d ("arm64: errata: Add newer ARM cores to the spectre_bhb_loop_affected() lists") added some additional CPUs to the Spectre-BHB workaround, including some new arrays for… | |
| Analizada | Alta (7.8) | 0.70% | 💥 Exploit | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: dm-bufio: don't schedule in atomic context dm_bufio_lock will call spin_lock_bh when try_verify_in_tasklet is enabled, and __scan will be called in atomic context. | |
| Analizada | Alta (7.8) | 0.28% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Fix potential buffer overflow in parse_ivrs_acpihid There is a string parsing logic error which can lead to an overflow of hid or uid buffers. Comparing ACPIID_LEN against a total string length doesn't take into account the lengths of… | |
| Modificada | Alta (7.8) | 21% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in kerberos authentication Setting sess->user = NULL was introduced to fix the dangling pointer created by ksmbd_free_user. However, it is possible another thread could be operating on the session and make use of sess->user… | |
| Modificada | Alta (7.8) | 0.24% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix oob write in trace_seq_to_buffer() It has been reported that trace_seq_to_buffer() tries to copy more data than PAGE_SIZE to buf. Therefore, to prevent this, we should use the smaller of trace_seq_used(&iter->seq) and PAGE_SIZE as an… | |
| Modificada | Alta (7.8) | 0.21% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: vxlan: vnifilter: Fix unlocked deletion of default FDB entry When a VNI is deleted from a VXLAN device in 'vnifilter' mode, the FDB entry associated with the default remote (assuming one was configured) is deleted without holding the hash lock. This… | |
| Modificada | Media (5.5) | 0.50% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk-star-emac: fix spinlock recursion issues on rx/tx poll Use spin_lock_irqsave and spin_unlock_irqrestore instead of spin_lock and spin_unlock in mtk_star_emac driver to avoid spinlock recursion occurrence that can happen when… | |
| Modificada | Alta (7.8) | 0.22% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net_sched: ets: Fix double list add in class with netem as child qdisc As described in Gerrard's report [1], there are use cases where a netem child qdisc will make the parent qdisc's enqueue callback reentrant. In the case of ets, there won't be a… | |
| Modificada | Alta (7.8) | 0.23% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net_sched: qfq: Fix double list add in class with netem as child qdisc As described in Gerrard's report [1], there are use cases where a netem child qdisc will make the parent qdisc's enqueue callback reentrant. In the case of qfq, there won't be a… | |
| Analizada | Media (5.5) | 0.22% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ice: Check VF VSI Pointer Value in ice_vc_add_fdir_fltr() As mentioned in the commit baeb705fd6a7 ("ice: always check VF VSI pointer values"), we need to perform a null pointer check on the return value of ice_get_vf_vsi() before using it. | |
| Modificada | Media (5.5) | 0.22% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix out-of-bound memcpy() during ethtool -w When retrieving the FW coredump using ethtool, it can sometimes cause memory corruption: ... This happens when copying the coredump segment list in bnxt_hwrm_dbg_dma_data() with the… | |
| Modificada | Media (5.5) | 0.22% | — | Linux KernelDebian Linux | 20/5/2025 | 14/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net: lan743x: Fix memleak issue when GSO enabled Always map the `skb` to the LS descriptor. Previously skb was mapped to EXT descriptor when the number of fragments is zero with GSO enabled. Mapping the skb to EXT descriptor prevents it from being… | |
| Analizada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Balance device refcount when destroying devices Using device_find_child() to lookup the proper SCMI device to destroy causes an unbalance in device refcount, since device_find_child() calls an implicit get_device(): this, in turns,… | |
| Modificada | Alta (7.8) | 0.20% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix slab-use-after-free in hdcp The HDCP code in amdgpu_dm_hdcp.c copies pointers to amdgpu_dm_connector objects without incrementing the kref reference counts. When using a USB-C dock, and the dock is unplugged, the corresponding… | |
| Modificada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 20/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: irqchip/qcom-mpm: Prevent crash when trying to handle non-wake GPIOs On Qualcomm chipsets not all GPIOs are wakeup capable. Those GPIOs do not have a corresponding MPM pin and should not be handled inside the MPM driver. The IRQ domain hierarchy is… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 20/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: plfxlc: Remove erroneous assert in plfxlc_mac_release plfxlc_mac_release() asserts that mac->lock is held. This assertion is incorrect, because even if it was possible, it would not be the valid behaviour. The function is used when probe fails… |