Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

2067 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.5)0.46%—Redhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation10/7/201817/6/2026
A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or Pop SS instructions. During the stack switch operation, processor does not deliver interrupts and exceptions, they are delivered once the first instruction after the stack switch is executed. An…
ModificadaMedia (6.5)1.9%—Redhat Ceph StorageRedhat Ceph Storage MONRedhat Ceph Storage OSDRedhat Enterprise Linux+610/7/201817/6/2026
A flaw was found in the way signature calculation was handled by cephx authentication protocol. An attacker having access to ceph cluster network who is able to alter the message payload was able to bypass signature checks done by cephx protocol. Ceph branches master, mimic, luminous and jewel are believed to be…
ModificadaAlta (7.5)1.4%—Redhat Ceph StorageRedhat Ceph Storage MONRedhat Ceph Storage OSDRedhat Enterprise Linux+610/7/201817/6/2026
It was found that cephx authentication protocol did not verify ceph clients correctly and was vulnerable to replay attack. Any attacker having access to ceph cluster network who is able to sniff packets on network can use this vulnerability to authenticate with ceph service and perform actions allowed by ceph service.…
ModificadaAlta (8.1)3.2%—CephRedhat Ceph StorageRedhat Ceph Storage MONRedhat Ceph Storage OSD+510/7/201817/6/2026
A flaw was found in the way ceph mon handles user requests. Any authenticated ceph user having read access to ceph can delete, create ceph storage pools and corrupt snapshot images. Ceph branches master, mimic, luminous and jewel are believed to be affected.
AnalizadaAlta (7.8)25%⚠ Explotación activaAdobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+19/7/201817/6/2026
Adobe Flash Player versions 29.0.0.171 and earlier have a Stack-based buffer overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
ModificadaMedia (6.5)13%—Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+19/7/201817/6/2026
Adobe Flash Player versions 29.0.0.171 and earlier have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
ModificadaMedia (6.5)14%—Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+19/7/201817/6/2026
Adobe Flash Player versions 29.0.0.171 and earlier have an Integer Overflow vulnerability. Successful exploitation could lead to information disclosure.
ModificadaAlta (8.8)6.7%—Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+19/7/201817/6/2026
Adobe Flash Player versions 29.0.0.171 and earlier have a Type Confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
ModificadaMedia (6.5)4.4%—LibpngCanonical Ubuntu LinuxOracle JDKOracle JRE+39/7/201817/6/2026
In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant divide-by-zero while processing a crafted PNG file, leading to a denial of service.
ModificadaAlta (7.8)1.0%💥 ExploitLinux KernelDebian LinuxCanonical Ubuntu LinuxFedoraproject Fedora+236/7/201817/6/2026
The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a…
ModificadaCrítica (9.8)4.2%—Gnome LibsoupCanonical Ubuntu LinuxDebian LinuxRedhat Ansible Tower+55/7/201817/6/2026
The get_cookies function in soup-cookie-jar.c in libsoup 2.63.2 allows attackers to have unspecified impact via an empty hostname.
ModificadaMedia (5.3)0.32%—Redhat SetupRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation3/7/201817/6/2026
setup before version 2.11.4-1.fc28 in Fedora and Red Hat Enterprise Linux added /sbin/nologin and /usr/sbin/nologin to /etc/shells. This violates security assumptions made by pam_shells and some daemons which allow access based on a user's shell being listed in /etc/shells. Under some circumstances, users which had…
ModificadaCrítica (9.1)3.6%—QemuCitrix XenserverRedhat OpenstackDebian Linux+63/7/201817/6/2026
Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue. It could occur while copying VGA data via bitblt copy in backward mode. A privileged user inside a guest could use this flaw to crash the QEMU process resulting in DoS or potentially execute…
ModificadaMedia (5.5)3.1%—GNU BinutilsRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation+11/7/201817/6/2026
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (excessive memory allocation and application crash) via a crafted ELF file, as demonstrated by _bfd_elf_parse_attributes in elf-attrs.c and bfd_malloc in libbfd.c. This can…
ModificadaAlta (7.5)1.5%—Debian LinuxFedoraproject SssdRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+126/6/201817/6/2026
The UNIX pipe which sudo uses to contact SSSD and read the available sudo rules from SSSD has too wide permissions, which means that anyone who can send a message using the same raw protocol that sudo and SSSD use can read the sudo rules available for any user. This affects versions of SSSD before 1.16.3.
ModificadaMedia (6.5)2.6%—Fedoraproject 389 Directory ServerRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation22/6/201817/6/2026
389-ds-base before versions 1.3.5.17 and 1.3.6.10 is vulnerable to an invalid pointer dereference in the way LDAP bind requests are handled. A remote unauthenticated attacker could use this flaw to make ns-slapd crash via a specially crafted LDAP bind request, resulting in denial of service.
ModificadaMedia (5.6)0.63%—Intel Core I3Intel Core I5Intel Core I7Intel Core M+1021/6/201817/6/2026
System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another process through a speculative execution side channel.
ModificadaMedia (5.3)7.2%💥 ExploitLinux KernelRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+320/6/201817/6/2026
A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory containing command line arguments (or environment strings), an attacker can cause utilities from psutils or procps (such as ps, w) or any other program which makes a read() call to the…
ModificadaAlta (7.5)4.9%—PythonDebian LinuxRedhat Ansible TowerRedhat Enterprise Linux Desktop+419/6/201817/6/2026
python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in the difflib.IS_LINE_JUNK method. An attacker could use this flaw to cause denial of service.
ModificadaAlta (7.5)5.0%—PythonFedoraproject FedoraCanonical Ubuntu LinuxRedhat Ansible Tower+418/6/201817/6/2026
python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in pop3lib's apop() method. An attacker could use this flaw to cause denial of service.
ModificadaMedia (4.7)0.89%—Gnupg LibgcryptCanonical Ubuntu LinuxDebian LinuxRedhat Ansible Tower+413/6/201817/6/2026
Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an…
ModificadaMedia (5.9)1.6%—Fedoraproject 389 Directory ServerDebian LinuxRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+513/6/201817/6/2026
389-ds-base before versions 1.4.0.10, 1.3.8.3 is vulnerable to a race condition in the way 389-ds-base handles persistent search, resulting in a crash if the server is under load. An anonymous attacker could use this flaw to trigger a denial of service.
ModificadaAlta (8.2)0.82%—QemuCanonical Ubuntu LinuxRedhat OpenstackRedhat Enterprise Linux Desktop+713/6/201817/6/2026
m_cat in slirp/mbuf.c in Qemu has a heap-based buffer overflow via incoming fragmented datagrams.
ModificadaAlta (7.8)0.35%—Google AndroidRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+212/6/201817/6/2026
In the function wmi_set_ie(), the length validation code does not handle unsigned integer overflow properly. As a result, a large value of the 'ie_len' argument can cause a buffer overflow in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel.
ModificadaMedia (5.5)0.84%💥 PoCLinux KernelDebian LinuxRedhat Virtualization HostRedhat Enterprise Linux Desktop+212/6/201817/6/2026
In the Linux Kernel before version 4.15.8, 4.14.25, 4.9.87, 4.4.121, 4.1.51, and 3.2.102, an error in the "_sctp_make_chunk()" function (net/sctp/sm_make_chunk.c) when handling SCTP packets length can be exploited to cause a kernel crash.
Orbitaley — Vulnerabilidades