Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

1563 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.8)1.3%—GNU Libredwg16/7/202017/6/2026
An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a stack overflow in bits.c, possibly related to bit_read_TF.
ModificadaMedia (6.5)1.0%—GNU Libredwg16/7/202017/6/2026
An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to denial of service in bit_calc_CRC in bits.c, related to a for loop.
ModificadaAlta (8.1)1.2%—GNU Libredwg16/7/202017/6/2026
An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in decode_R13_R2000 in decode.c, a different vulnerability than CVE-2019-20011.
ModificadaAlta (7.5)1.6%—GNU Libredwg16/7/202017/6/2026
An issue was discovered in GNU LibreDWG through 0.9.3. There is a NULL pointer dereference in the function dwg_encode_LWPOLYLINE in dwg.spec.
ModificadaMedia (4.3)1.9%—GNU MailmanCanonical Ubuntu LinuxDebian Linux24/6/202017/6/2026
GNU Mailman before 2.1.33 allows arbitrary content injection via the Cgi/private.py private archive login page.
ModificadaCrítica (9.8)2.4%—GNU AdnsOpensuse LeapFedoraproject Fedora18/6/202017/6/2026
An issue was discovered in adns before 1.5.2. It hangs, eating CPU, if a compression pointer loop is encountered.
ModificadaCrítica (9.8)2.3%—GNU AdnsOpensuse LeapFedoraproject Fedora18/6/202017/6/2026
An issue was discovered in adns before 1.5.2. pap_mailbox822 does not properly check st from adns__findlabel_next. Without this, an uninitialised stack value can be used as the first label length. Depending on the circumstances, an attacker might be able to trick adns into crashing the calling program, leaking aspects…
ModificadaCrítica (9.8)2.0%—GNU AdnsOpensuse LeapFedoraproject Fedora18/6/202017/6/2026
An issue was discovered in adns before 1.5.2. It fails to ignore apparent answers before the first RR that was found the first time. when this is fixed, the second answer scan finds the same RRs at the first. Otherwise, adns can be confused by interleaving answers for the CNAME target, with the CNAME itself. In that…
ModificadaAlta (7.5)2.1%—GNU AdnsOpensuse LeapFedoraproject Fedora18/6/202017/6/2026
An issue was discovered in adns before 1.5.2. adnshost mishandles a missing final newline on a stdin read. It is wrong to increment used as well as setting r, since used is incremented according to r, later. Rather one should be doing what read() would have done. Without this fix, adnshost may read and process one…
ModificadaAlta (7.5)1.8%—GNU AdnsFedoraproject Fedora18/6/202017/6/2026
An issue was discovered in adns before 1.5.2. It overruns reading a buffer if a domain ends with backslash. If the query domain ended with \, and adns_qf_quoteok_query was specified, qdparselabel would read additional bytes from the buffer and try to treat them as the escape sequence. It would depart the input buffer…
ModificadaAlta (7.5)1.8%—GNU AdnsFedoraproject Fedora18/6/202017/6/2026
An issue was discovered in adns before 1.5.2. adns_rr_info mishandles a bogus *datap. The general pattern for formatting integers is to sprintf into a fixed-size buffer. This is correct if the input is in the right range; if it isn't, the buffer may be overrun (depending on the sizes of the types on the current…
ModificadaAlta (8.8)3.6%—GNU AdnsFedoraproject Fedora18/6/202017/6/2026
An issue was discovered in adns before 1.5.2. It corrupts a pointer when a nameserver speaks first because of a wrong number of pointer dereferences. This bug may well be exploitable as a remote code execution.
ModificadaMedia (5.5)0.39%—GNU Bison15/6/202017/6/2026
GNU Bison before 3.5.4 allows attackers to cause a denial of service (application crash). NOTE: there is a risk only if Bison is used with untrusted input, and an observed bug happens to cause unsafe behavior with a specific compiler/architecture. The bug reports were intended to show that a crash may occur in Bison…
ModificadaAlta (7.4)22%💥 PoCGnutlsFedoraproject FedoraCanonical Ubuntu LinuxDebian Linux4/6/202017/6/2026
GnuTLS 3.6.x before 3.6.14 uses incorrect cryptography for encrypting a session ticket (a loss of confidentiality in TLS 1.2, and an authentication bypass in TLS 1.3). The earliest affected version is 3.6.4 (2018-09-24) because of an error in a 2018-09-18 commit. Until the first key rotation, the TLS server always…
ModificadaCrítica (9.8)1.0%—Solis Gnuteca9/5/202017/6/2026
Gnuteca 3.8 allows action=main:search:simpleSearch SQL Injection via the exemplaryStatusId parameter.
ModificadaMedia (5.3)1.3%—Solis Gnuteca9/5/202017/6/2026
Gnuteca 3.8 allows file.php?folder=/&file= Directory Traversal.
ModificadaMedia (6.5)2.7%—GNU MailmanDebian LinuxFedoraproject FedoraOpensuse Backports SLE+26/5/202017/6/2026
/options/mailman in GNU Mailman before 2.1.31 allows Arbitrary Content Injection.
ModificadaAlta (7)0.53%—GNU GlibcCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp HCI Management Node+430/4/202017/6/2026
A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that,…
ModificadaMedia (6.1)2.3%—GNU MailmanDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux+224/4/202017/6/2026
GNU Mailman 2.x before 2.1.30 uses the .obj extension for scrubbed application/octet-stream MIME parts. This behavior may contribute to XSS attacks against list-archive visitors, because an HTTP reply from an archive web server may lack a MIME type, and a web browser may perform MIME sniffing, conclude that the MIME…
ModificadaAlta (7)0.54%—GNU GlibcRedhat Enterprise LinuxCanonical Ubuntu Linux17/4/202017/6/2026
An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this…
ModificadaAlta (7.4)3.4%—GnutlsCanonical Ubuntu LinuxDebian LinuxOpensuse Leap+13/4/202017/6/2026
GnuTLS 3.6.x before 3.6.13 uses incorrect cryptography for DTLS. The earliest affected version is 3.6.3 (2018-07-16) because of an error in a 2017-10-06 commit. The DTLS client always uses 32 '\0' bytes instead of a random value, and thus contributes no randomness to a DTLS negotiation. This breaks the security…
ModificadaAlta (8.1)5.4%—GNU GlibcFedoraproject FedoraDebian Linux1/4/202017/6/2026
An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the…
ModificadaMedia (5.5)1.0%—GNU Patch25/3/202017/6/2026
GNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of service via a crafted patch file. NOTE: this issue exists because of an incomplete fix for CVE-2018-6952.
ModificadaAlta (7.5)1.1%—GnupgFedoraproject FedoraCanonical Ubuntu Linux20/3/202017/6/2026
A flaw was found in the way certificate signatures could be forged using collisions found in the SHA-1 algorithm. An attacker could use this weakness to create forged certificate signatures. This issue affects GnuPG versions before 2.2.18.
ModificadaMedia (5.5)0.76%—GNU GlibcFedoraproject FedoraCanonical Ubuntu LinuxOpensuse Leap+74/3/202017/6/2026
The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to…
Orbitaley — Vulnerabilidades