Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
2067 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 3.0% | — | Debian LinuxCanonical Ubuntu LinuxArtifex GhostscriptRedhat Enterprise Linux Desktop+5 | 27/8/2018 | 17/6/2026 | In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the LockDistillerParams parameter to crash the interpreter or execute code. | |
| Modificada | Alta (7.8) | 3.0% | — | Debian LinuxCanonical Ubuntu LinuxArtifex GhostscriptArtifex GPL Ghostscript+7 | 27/8/2018 | 17/6/2026 | In Artifex Ghostscript 9.23 before 2018-08-24, a type confusion using the .shfill operator could be used by attackers able to supply crafted PostScript files to crash the interpreter or potentially execute code. | |
| Modificada | Alta (7.8) | 1.9% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu LinuxRedhat Enterprise Linux Desktop+4 | 27/8/2018 | 17/6/2026 | In Artifex Ghostscript 9.23 before 2018-08-23, attackers are able to supply malicious PostScript files to bypass .tempfile restrictions and write files. | |
| Modificada | Crítica (9.8) | 8.9% | — | Apache MOD PerlDebian LinuxRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+3 | 26/8/2018 | 16/6/2026 | mod_perl 2.0 through 2.0.10 allows attackers to execute arbitrary Perl code by placing it in a user-owned .htaccess file, because (contrary to the documentation) there is no configuration option that permits Perl code for the administrator's control of HTTP request processing without also permitting unprivileged users… | |
| Modificada | Crítica (9.8) | 4.8% | — | X.org Libx11Canonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+3 | 24/8/2018 | 17/6/2026 | An issue was discovered in libX11 through 1.6.5. The function XListExtensions in ListExt.c is vulnerable to an off-by-one error caused by malicious server responses, leading to DoS or possibly unspecified other impact. | |
| Modificada | Alta (8.8) | 4.3% | — | Debian LinuxCanonical Ubuntu LinuxSambaRedhat Virtualization+4 | 22/8/2018 | 17/6/2026 | A heap-buffer overflow was found in the way samba clients processed extra long filename in a directory listing. A malicious samba server could use this flaw to cause arbitrary code execution on a samba client. Samba versions before 4.6.16, 4.7.9 and 4.8.4 are vulnerable. | |
| Modificada | Alta (8.1) | 3.1% | — | SambaCanonical Ubuntu LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 22/8/2018 | 17/6/2026 | A flaw was found in the way samba before 4.7.9 and 4.8.4 allowed the use of weak NTLMv1 authentication even when NTLMv1 was explicitly disabled. A man-in-the-middle attacker could use this flaw to read the credential and other details passed between the samba server and client. | |
| Modificada | Media (5.6) | 0.39% | — | GnutlsRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation+3 | 22/8/2018 | 17/6/2026 | A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found. An attacker could use a combination of "Just in Time" Prime+probe attack in combination with Lucky-13 attack to recover plain text using crafted packets. | |
| Modificada | Media (5.9) | 3.6% | — | GnutlsRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation+3 | 22/8/2018 | 17/6/2026 | It was found that the GnuTLS implementation of HMAC-SHA-384 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plain text recovery attacks via statistical analysis of timing data using crafted packets. | |
| Modificada | Media (5.9) | 3.6% | — | GnutlsRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation+3 | 22/8/2018 | 17/6/2026 | It was found that the GnuTLS implementation of HMAC-SHA-256 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data using crafted packets. | |
| Modificada | Alta (7.8) | 0.52% | — | Debian LinuxCanonical Ubuntu LinuxLinux KernelRedhat Enterprise Linux Desktop+2 | 21/8/2018 | 7/7/2026 | It was found that the raw midi kernel driver does not protect against concurrent access which leads to a double realloc (double free) in snd_rawmidi_input_params() and snd_rawmidi_output_status() which are part of snd_rawmidi_ioctl() handler in rawmidi.c file. A malicious local attacker could possibly use this for… | |
| Modificada | Media (6.5) | 4.5% | — | IBM SDKRedhat SatelliteRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+2 | 20/8/2018 | 17/6/2026 | The IBM Java Runtime Environment's Diagnostic Tooling Framework for Java (DTFJ) (IBM SDK, Java Technology Edition 6.0 , 7.0, and 8.0) does not protect against path traversal attacks when extracting compressed dump files. IBM X-Force ID: 144882. | |
| Modificada | Alta (7.5) | 4.0% | — | IBM Software Development KITRedhat SatelliteRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 20/8/2018 | 17/6/2026 | A flaw in the java.math component in IBM SDK, Java Technology Edition 6.0, 7.0, and 8.0 may allow an attacker to inflict a denial-of-service attack with specially crafted String data. IBM X-Force ID: 141681. | |
| Modificada | Media (5.5) | 0.41% | — | LibvirtRedhat VirtualizationRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+6 | 20/8/2018 | 17/6/2026 | libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing. | |
| Modificada | Media (5.3) | 99% | 💥 Exploit | Openbsd OpensshDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+18 | 17/8/2018 | 17/6/2026 | OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticating user until after the packet containing the request has been fully parsed, related to auth2-gss.c, auth2-hostbased.c, and auth2-pubkey.c. | |
| Modificada | Alta (8.8) | 3.9% | — | Spice Project SpiceDebian LinuxCanonical Ubuntu LinuxRedhat Virtualization+7 | 17/8/2018 | 17/6/2026 | A vulnerability was discovered in SPICE before version 0.14.1 where the generated code used for demarshalling messages lacked sufficient bounds checks. A malicious client or server, after authentication, could send specially crafted messages to its peer which would result in a crash or, potentially, other impacts. | |
| Modificada | Alta (7.5) | 5.2% | — | Redhat OpenstackRedhat VirtualizationRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+5 | 9/8/2018 | 17/6/2026 | A vulnerability was found in libpq, the default PostgreSQL client library where libpq failed to properly reset its internal state between connections. If an affected version of libpq was used with "host" or "hostaddr" connection parameters from untrusted input, attackers could bypass client-side connection security… | |
| Modificada | Alta (7.5) | 74% | — | Redhat VirtualizationRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Server AUS+34 | 6/8/2018 | 17/6/2026 | Linux kernel versions 4.9+ can be forced to make very expensive calls to tcp_collapse_ofo_queue() and tcp_prune_ofo_queue() for every incoming packet which can lead to a denial of service. | |
| Modificada | Alta (7.5) | 20% | — | Apache TomcatRedhat Jboss Enterprise Application PlatformCanonical Ubuntu LinuxDebian Linux+4 | 2/8/2018 | 17/6/2026 | An improper handing of overflow in the UTF-8 decoder with supplementary characters can lead to an infinite loop in the decoder causing a Denial of Service. Versions Affected: Apache Tomcat 9.0.0.M9 to 9.0.7, 8.5.0 to 8.5.30, 8.0.0.RC1 to 8.0.51, and 7.0.28 to 7.0.86. | |
| Modificada | Crítica (9.8) | 5.7% | — | Debian LinuxCanonical Ubuntu LinuxLibxcursorRedhat Ansible Tower+3 | 1/8/2018 | 17/6/2026 | _XcursorThemeInherits in library.c in libXcursor before 1.1.15 allows remote attackers to cause denial of service or potentially code execution via a one-byte heap overflow. | |
| Modificada | Alta (8.1) | 5.6% | — | RPM Yum-utilsRedhat VirtualizationRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 1/8/2018 | 17/6/2026 | A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to sanitize paths in remote repository configuration files. If an attacker controls a repository, they may be able to copy files outside of the destination directory on the targeted system via path traversal. If reposync is… | |
| Modificada | Alta (7.8) | 1.9% | — | Redhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Server AUSRedhat Enterprise Linux Server EUS+4 | 1/8/2018 | 17/6/2026 | An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input. | |
| Modificada | Alta (7.5) | 4.3% | — | Redhat Ceph StorageRedhat Ceph Storage MONRedhat Ceph Storage OSDRedhat Enterprise Linux Desktop+2 | 1/8/2018 | 17/6/2026 | A flaw was found in the way Ceph Object Gateway would process cross-origin HTTP requests if the CORS policy was set to allow origin on a bucket. A remote unauthenticated attacker could use this flaw to cause denial of service by sending a specially-crafted cross-origin HTTP request. Ceph branches 1.3.x and 2.x are… | |
| Modificada | Alta (7.8) | 1.9% | — | Jasper Project JasperDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+3 | 1/8/2018 | 17/6/2026 | A heap-buffer overflow vulnerability was found in QMFB code in JPC codec caused by buffer being allocated with too small size. jasper versions before 2.0.0 are affected. | |
| Modificada | Media (5.9) | 2.0% | — | Mozilla Network Security ServicesRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Server AUS+3 | 1/8/2018 | 17/6/2026 | It was found that Diffie Hellman Client key exchange handling in NSS 3.21.x was vulnerable to small subgroup confinement attack. An attacker could use this flaw to recover private keys by confining the client DH key to small subgroup of the desired group. |