Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
2067 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.46% | — | Redhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation | 10/7/2018 | 17/6/2026 | A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or Pop SS instructions. During the stack switch operation, processor does not deliver interrupts and exceptions, they are delivered once the first instruction after the stack switch is executed. An… | |
| Modificada | Media (6.5) | 1.9% | — | Redhat Ceph StorageRedhat Ceph Storage MONRedhat Ceph Storage OSDRedhat Enterprise Linux+6 | 10/7/2018 | 17/6/2026 | A flaw was found in the way signature calculation was handled by cephx authentication protocol. An attacker having access to ceph cluster network who is able to alter the message payload was able to bypass signature checks done by cephx protocol. Ceph branches master, mimic, luminous and jewel are believed to be… | |
| Modificada | Alta (7.5) | 1.4% | — | Redhat Ceph StorageRedhat Ceph Storage MONRedhat Ceph Storage OSDRedhat Enterprise Linux+6 | 10/7/2018 | 17/6/2026 | It was found that cephx authentication protocol did not verify ceph clients correctly and was vulnerable to replay attack. Any attacker having access to ceph cluster network who is able to sniff packets on network can use this vulnerability to authenticate with ceph service and perform actions allowed by ceph service.… | |
| Modificada | Alta (8.1) | 3.2% | — | CephRedhat Ceph StorageRedhat Ceph Storage MONRedhat Ceph Storage OSD+5 | 10/7/2018 | 17/6/2026 | A flaw was found in the way ceph mon handles user requests. Any authenticated ceph user having read access to ceph can delete, create ceph storage pools and corrupt snapshot images. Ceph branches master, mimic, luminous and jewel are believed to be affected. | |
| Analizada | Alta (7.8) | 25% | ⚠ Explotación activa | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 9/7/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.171 and earlier have a Stack-based buffer overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Media (6.5) | 13% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 9/7/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.171 and earlier have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Media (6.5) | 14% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 9/7/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.171 and earlier have an Integer Overflow vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (8.8) | 6.7% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 9/7/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.171 and earlier have a Type Confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Media (6.5) | 4.4% | — | LibpngCanonical Ubuntu LinuxOracle JDKOracle JRE+3 | 9/7/2018 | 17/6/2026 | In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant divide-by-zero while processing a crafted PNG file, leading to a denial of service. | |
| Modificada | Alta (7.8) | 1.0% | 💥 Exploit | Linux KernelDebian LinuxCanonical Ubuntu LinuxFedoraproject Fedora+23 | 6/7/2018 | 17/6/2026 | The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a… | |
| Modificada | Crítica (9.8) | 4.2% | — | Gnome LibsoupCanonical Ubuntu LinuxDebian LinuxRedhat Ansible Tower+5 | 5/7/2018 | 17/6/2026 | The get_cookies function in soup-cookie-jar.c in libsoup 2.63.2 allows attackers to have unspecified impact via an empty hostname. | |
| Modificada | Media (5.3) | 0.32% | — | Redhat SetupRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation | 3/7/2018 | 17/6/2026 | setup before version 2.11.4-1.fc28 in Fedora and Red Hat Enterprise Linux added /sbin/nologin and /usr/sbin/nologin to /etc/shells. This violates security assumptions made by pam_shells and some daemons which allow access based on a user's shell being listed in /etc/shells. Under some circumstances, users which had… | |
| Modificada | Crítica (9.1) | 3.6% | — | QemuCitrix XenserverRedhat OpenstackDebian Linux+6 | 3/7/2018 | 17/6/2026 | Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue. It could occur while copying VGA data via bitblt copy in backward mode. A privileged user inside a guest could use this flaw to crash the QEMU process resulting in DoS or potentially execute… | |
| Modificada | Media (5.5) | 3.1% | — | GNU BinutilsRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation+1 | 1/7/2018 | 17/6/2026 | The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (excessive memory allocation and application crash) via a crafted ELF file, as demonstrated by _bfd_elf_parse_attributes in elf-attrs.c and bfd_malloc in libbfd.c. This can… | |
| Modificada | Alta (7.5) | 1.5% | — | Debian LinuxFedoraproject SssdRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 26/6/2018 | 17/6/2026 | The UNIX pipe which sudo uses to contact SSSD and read the available sudo rules from SSSD has too wide permissions, which means that anyone who can send a message using the same raw protocol that sudo and SSSD use can read the sudo rules available for any user. This affects versions of SSSD before 1.16.3. | |
| Modificada | Media (6.5) | 2.6% | — | Fedoraproject 389 Directory ServerRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation | 22/6/2018 | 17/6/2026 | 389-ds-base before versions 1.3.5.17 and 1.3.6.10 is vulnerable to an invalid pointer dereference in the way LDAP bind requests are handled. A remote unauthenticated attacker could use this flaw to make ns-slapd crash via a specially crafted LDAP bind request, resulting in denial of service. | |
| Modificada | Media (5.6) | 0.63% | — | Intel Core I3Intel Core I5Intel Core I7Intel Core M+10 | 21/6/2018 | 17/6/2026 | System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another process through a speculative execution side channel. | |
| Modificada | Media (5.3) | 7.2% | 💥 Exploit | Linux KernelRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+3 | 20/6/2018 | 17/6/2026 | A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory containing command line arguments (or environment strings), an attacker can cause utilities from psutils or procps (such as ps, w) or any other program which makes a read() call to the… | |
| Modificada | Alta (7.5) | 4.9% | — | PythonDebian LinuxRedhat Ansible TowerRedhat Enterprise Linux Desktop+4 | 19/6/2018 | 17/6/2026 | python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in the difflib.IS_LINE_JUNK method. An attacker could use this flaw to cause denial of service. | |
| Modificada | Alta (7.5) | 5.0% | — | PythonFedoraproject FedoraCanonical Ubuntu LinuxRedhat Ansible Tower+4 | 18/6/2018 | 17/6/2026 | python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in pop3lib's apop() method. An attacker could use this flaw to cause denial of service. | |
| Modificada | Media (4.7) | 0.89% | — | Gnupg LibgcryptCanonical Ubuntu LinuxDebian LinuxRedhat Ansible Tower+4 | 13/6/2018 | 17/6/2026 | Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an… | |
| Modificada | Media (5.9) | 1.6% | — | Fedoraproject 389 Directory ServerDebian LinuxRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+5 | 13/6/2018 | 17/6/2026 | 389-ds-base before versions 1.4.0.10, 1.3.8.3 is vulnerable to a race condition in the way 389-ds-base handles persistent search, resulting in a crash if the server is under load. An anonymous attacker could use this flaw to trigger a denial of service. | |
| Modificada | Alta (8.2) | 0.82% | — | QemuCanonical Ubuntu LinuxRedhat OpenstackRedhat Enterprise Linux Desktop+7 | 13/6/2018 | 17/6/2026 | m_cat in slirp/mbuf.c in Qemu has a heap-based buffer overflow via incoming fragmented datagrams. | |
| Modificada | Alta (7.8) | 0.35% | — | Google AndroidRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+2 | 12/6/2018 | 17/6/2026 | In the function wmi_set_ie(), the length validation code does not handle unsigned integer overflow properly. As a result, a large value of the 'ie_len' argument can cause a buffer overflow in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel. | |
| Modificada | Media (5.5) | 0.84% | 💥 PoC | Linux KernelDebian LinuxRedhat Virtualization HostRedhat Enterprise Linux Desktop+2 | 12/6/2018 | 17/6/2026 | In the Linux Kernel before version 4.15.8, 4.14.25, 4.9.87, 4.4.121, 4.1.51, and 3.2.102, an error in the "_sctp_make_chunk()" function (net/sctp/sm_make_chunk.c) when handling SCTP packets length can be exploited to cause a kernel crash. |