Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
93 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.1) | 5.2% | — | Linux KernelNetapp Cloud BackupNetapp A250 FirmwareNetapp FAS 500f Firmware+2 | 2/12/2020 | 17/6/2026 | An out-of-bounds memory write flaw was found in how the Linux kernel’s Voice Over IP H.323 connection tracking functionality handled connections on ipv6 port 1720. This flaw allows an unauthenticated remote user to crash the system, causing a denial of service. The highest threat from this vulnerability is to… | |
| Modificada | Alta (7) | 0.61% | 💥 PoC | Linux KernelNetapp Cloud BackupNetapp Solidfire, Enterprise SDS & HCI Storage NodeNetapp Solidfire & HCI Management Node+3 | 28/11/2020 | 17/6/2026 | An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the required TID increment, aka CID-fd4d9c7d0c71. | |
| Modificada | Media (6.7) | 0.93% | 💥 PoC | Linux KernelBroadcom Brocade Fabric Operating System FirmwareNetapp Cloud BackupNetapp Solidfire & HCI Management Node+15 | 23/11/2020 | 17/6/2026 | Use-after-free vulnerability in fs/block_dev.c in the Linux kernel before 5.8 allows local users to gain privileges or cause a denial of service by leveraging improper access to a certain error field. | |
| Modificada | Alta (7.8) | 1.0% | 💥 PoC | Linux KernelRedhat Enterprise LinuxOpensuse LeapDebian Linux+6 | 19/8/2020 | 17/6/2026 | A flaw null pointer dereference in the Linux kernel cgroupv2 subsystem in versions before 5.7.10 was found in the way when reboot the system. A local user could use this flaw to crash the system or escalate their privileges on the system. | |
| Modificada | Media (6.5) | 5.2% | — | Linux KernelOpensuse LeapDebian LinuxCanonical Ubuntu Linux+20 | 18/5/2020 | 17/6/2026 | gadget_dev_desc_UDC_store in drivers/usb/gadget/configfs.c in the Linux kernel 3.16 through 5.6.13 relies on kstrdup without considering the possibility of an internal '\0' value, which allows attackers to trigger an out-of-bounds read, aka CID-15753588bcd4. | |
| Modificada | Media (5.3) | 0.40% | — | Linux KernelFedoraproject FedoraOpensuse LeapDebian Linux+21 | 15/5/2020 | 17/6/2026 | The VFIO PCI driver in the Linux kernel through 5.6.13 mishandles attempts to access disabled memory space. | |
| Modificada | Media (5.5) | 0.45% | — | Canonical Ubuntu LinuxNetapp Cloud BackupNetapp Solidfire & HCI Management NodeNetapp Steelstore Cloud Integrated Storage+28 | 10/4/2020 | 17/6/2026 | The fix for the Linux kernel in Ubuntu 18.04 LTS for CVE-2019-14615 ("The Linux kernel did not properly clear data structures on context switches for certain Intel graphics processors.") was discovered to be incomplete, meaning that in versions of the kernel before 4.15.0-91.92, an attacker could use this… | |
| Modificada | Alta (7.1) | 0.76% | — | Linux KernelDebian LinuxOpensuse LeapCanonical Ubuntu Linux+8 | 25/2/2020 | 17/6/2026 | An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it, aka CID-2e90ca68b0d2. | |
| Modificada | Alta (7.8) | 2.1% | — | Linux KernelDebian LinuxCanonical Ubuntu LinuxNetapp Active IQ Unified Manager+14 | 8/12/2019 | 17/6/2026 | In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a use-after-free in try_merge_free_space in fs/btrfs/free-space-cache.c because the pointer to a left data structure can be the same as the pointer to a right… | |
| Modificada | Alta (7.8) | 0.49% | — | Linux KernelRedhat Codeready Linux Builder EUSRedhat Codeready Linux Builder FOR Power Little Endian EUSRedhat Enterprise Linux+14 | 25/11/2019 | 17/6/2026 | A vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params() function of Marvell Wifi Driver. | |
| Modificada | Media (4.6) | 0.90% | — | Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxFedoraproject Fedora+14 | 18/11/2019 | 17/6/2026 | Two memory leaks in the rtl_usb_probe() function in drivers/net/wireless/realtek/rtlwifi/usb.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption), aka CID-3f9361695113. | |
| Modificada | Alta (7.5) | 3.4% | — | Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management Controller+11 | 18/11/2019 | 17/6/2026 | A memory leak in the adis_update_scan_mode_burst() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-9c0530e898f3. | |
| Modificada | Alta (7.5) | 3.6% | — | Linux KernelNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management ControllerNetapp Cloud Backup+12 | 18/11/2019 | 17/6/2026 | A memory leak in the adis_update_scan_mode() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-ab612b1daf41. | |
| Modificada | Baja (3.3) | 0.79% | — | Linux KernelCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+14 | 18/11/2019 | 17/6/2026 | Two memory leaks in the mwifiex_pcie_init_evt_ring() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering mwifiex_map_pci_memory() failures, aka CID-d10dcb615c8e. | |
| Modificada | Media (4.7) | 0.45% | — | Linux KernelCanonical Ubuntu LinuxFedoraproject FedoraOpensuse Leap+13 | 18/11/2019 | 17/6/2026 | A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CID-a7b2df76b42b. | |
| Modificada | Alta (7.5) | 3.3% | — | Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management Controller+11 | 18/11/2019 | 17/6/2026 | A memory leak in the rpmsg_eptdev_write_iter() function in drivers/rpmsg/rpmsg_char.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy_from_iter_full() failures, aka CID-bbe692e349e2. | |
| Modificada | Alta (7.5) | 5.4% | — | Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxDebian Linux+14 | 18/11/2019 | 17/6/2026 | A memory leak in the gs_can_open() function in drivers/net/can/usb/gs_usb.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() failures, aka CID-fb5be6a7b486. | |
| Modificada | Alta (7.5) | 4.0% | — | Linux KernelNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management ControllerNetapp Cloud Backup+11 | 18/11/2019 | 17/6/2026 | Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering kcalloc() or v3d_job_init() failures, aka CID-29cd13cfd762. | |
| Modificada | Media (5.5) | 0.28% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Improper input validation in the API for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Media (5.5) | 0.28% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Improper access control in the API for the Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.30% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Out of bounds read in a subsystem for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Media (4.4) | 0.35% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 (DCH) or 21.20.x.5077 (aka15.45.5077) may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Alta (7.8) | 0.35% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Pointer corruption in the Unified Shader Compiler in Intel(R) Graphics Drivers before 10.18.14.5074 (aka 15.36.x.5074) may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (5.5) | 0.31% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Insufficient input validation in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6519 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Alta (7.5) | 1.1% | — | Intel Baseboard Management Controller Firmware | 14/11/2019 | 17/6/2026 | Memory corruption in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable denial of service via network access. |