Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2678▼ 660 respecto a la semana anterior
Críticas / altas1266▼ 293 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
10.164 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: i2c: cros-ec-tunnel: defer probe if parent EC is not present When i2c-cros-ec-tunnel and the EC driver are built-in, the EC parent device will not be found, leading to NULL pointer dereference. That can also be reproduced by unbinding the controller… | |
| Analizada | Alta (7.1) | 0.21% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: isofs: Prevent the use of too small fid syzbot reported a slab-out-of-bounds Read in isofs_fh_to_parent. [1] The handle_bytes value passed in by the reproducing program is equal to 12. In handle_to_path(), only 12 bytes of memory are allocated for the… | |
| Modificada | Alta (7.8) | 1.1% | — | Linux KernelDebian Linux | 1/5/2025 | 4/8/2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix dangling pointer in krb_authenticate krb_authenticate frees sess->user and does not set the pointer to NULL. It calls ksmbd_krb5_authenticate to reinitialise sess->user but that function may return without doing so. If that happens then… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix the warning from __kernel_write_iter This patch doesn't allow writing to directory. | |
| Analizada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: virtiofs: add filesystem context source name check In certain scenarios, for example, during fuzz testing, the source name may be NULL, which could lead to a kernel panic. Therefore, an extra check for the source name should be added. | |
| Analizada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cma: Fix workqueue crash in cma_netevent_work_handler struct rdma_cm_id has member "struct work_struct net_work" that is reused for enqueuing cma_netevent_work_handler()s onto cma_wq. Below crash[1] can occur if more than one call to… | |
| Analizada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Prevent division by zero The user can set any speed value. If speed is greater than UINT_MAX/8, division by zero is possible. Found by Linux Verification Center (linuxtesting.org) with SVACE. | |
| Analizada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Prevent division by zero The user can set any speed value. If speed is greater than UINT_MAX/8, division by zero is possible. Found by Linux Verification Center (linuxtesting.org) with SVACE. | |
| Analizada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm/smu11: Prevent division by zero The user can set any speed value. If speed is greater than UINT_MAX/8, division by zero is possible. Found by Linux Verification Center (linuxtesting.org) with SVACE. (cherry picked from commit… | |
| Analizada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Prevent division by zero The user can set any speed value. If speed is greater than UINT_MAX/8, division by zero is possible. Found by Linux Verification Center (linuxtesting.org) with SVACE. | |
| Analizada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Prevent division by zero The user can set any speed value. If speed is greater than UINT_MAX/8, division by zero is possible. Found by Linux Verification Center (linuxtesting.org) with SVACE. | |
| Analizada | Media (5.5) | 0.21% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Prevent division by zero The user can set any speed value. If speed is greater than UINT_MAX/8, division by zero is possible. Found by Linux Verification Center (linuxtesting.org) with SVACE. | |
| Modificada | Media (5.5) | 0.22% | — | Linux KernelDebian Linux | 1/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: prime: fix ttm_bo_delayed_delete oops Fix an oops in ttm_bo_delayed_delete which results from dererencing a dangling pointer: The cause of this is: Fix this by moving the drm_prime_gem_destroy call from nouveau_gem_object_del to… | |
| Analizada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: ata: pata_pxa: Fix potential NULL pointer dereference in pxa_ata_probe() devm_ioremap() returns NULL on error. Currently, pxa_ata_probe() does not check for this case, which can result in a NULL pointer dereference. Add NULL check after devm_ioremap()… | |
| Modificada | Media (5.5) | 0.45% | — | Linux KernelDebian Linux | 1/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: tipc: fix memory leak in tipc_link_xmit In case the backlog transmit queue for system-importance messages is overloaded, tipc_link_xmit() returns -ENOBUFS but the skb list is not purged. This leads to memory leak and failure when a skb is allocated.… | |
| Modificada | Media (5.5) | 0.29% | — | Linux KernelDebian Linux | 1/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net: tls: explicitly disallow disconnect syzbot discovered that it can disconnect a TLS socket and then run into all sort of unexpected corner cases. I have a vague recollection of Eric pointing this out to us a long time ago. Supporting disconnect is… | |
| Modificada | Alta (7.8) | 0.30% | — | Linux KernelDebian Linux | 1/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: move the limit validation It is not sufficient to directly validate the limit on the data that the user passes as it can be updated based on how the other parameters are changed. Move the check at the end of the configuration… | |
| Modificada | Alta (7.1) | 0.40% | — | Linux KernelDebian Linux | 1/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: net: ppp: Add bound checking for skb data on ppp_sync_txmung Ensure we have enough data in linear buffer from skb before accessing initial bytes. This prevents potential out-of-bounds accesses when processing short packets. it is not safe to access… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: iommu/mediatek: Fix NULL pointer deference in mtk_iommu_device_group Currently, mtk_iommu calls during probe iommu_device_register before the hw_list from driver data is initialized. Since iommu probing issue fix, it leads to NULL pointer dereference… | |
| Analizada | Media (5.5) | 0.19% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: jfs: Fix uninit-value access of imap allocated in the diMount() function syzbot reports that hex_dump_to_buffer is using uninit-value: The reason is that imap is not properly initialized after memory allocation. It will cause the snprintf() function… | |
| Modificada | Media (5.5) | 0.16% | — | Linux KernelDebian Linux | 1/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: jfs: Prevent copying of nlink with value 0 from disk inode syzbot report a deadlock in diFree. [1] When calling "ioctl$LOOP_SET_STATUS64", the offset value passed in is 4, which does not match the mounted loop device, causing the mapping of the… | |
| Analizada | Media (5.5) | 0.20% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: jfs: add sanity check for agwidth in dbMount The width in dmapctl of the AG is zero, it trigger a divide error when calculating the control page level in dbAllocAG. To avoid this issue, add a check for agwidth in dbAllocAG. | |
| Analizada | Alta (7.1) | 0.20% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-bounds access in f2fs_truncate_inode_blocks() syzbot reports an UBSAN issue as below: index 18446744073709550692 (decimal, unsigned long long) = 0xfffffffffffffc64 (hexadecimal, unsigned long long) = -924 (decimal, long long)… | |
| Modificada | Alta (7.8) | 0.22% | — | Linux KernelDebian Linux | 1/5/2025 | 30/7/2026 | In the Linux kernel, the following vulnerability has been resolved: ext4: ignore xattrs past end Once inside 'ext4_xattr_inode_dec_ref_all' we should ignore xattrs entries past the 'end' entry. This fixes the following KASAN reported issue: The buggy address belongs to the physical page: page: refcount:1 mapcount:0… | |
| Analizada | Media (5.5) | 0.16% | — | Linux KernelDebian Linux | 1/5/2025 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: net: vlan: don't propagate flags on open With the device instance lock, there is now a possibility of a deadlock: Device setup: When we enslave the lower device (netdevsim0) which has a vlan, we propagate vlan's allmuti/promisc flags during ndo_open.… |