Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
84 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 1.2% | 💥 Exploit | SGI PropackLinux KernelSlackware Linux | 7/7/2004 | 16/6/2026 | Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option. | |
| Modificada | Alta (7.5) | 2.3% | — | CVSSlackware Linux | 5/1/2004 | 16/6/2026 | CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests. | |
| Modificada | Alta (7.5) | 21% | — | Andrew Tridgell RsyncRedhat RsyncEngardelinux Secure CommunityEngardelinux Secure Linux+1 | 15/12/2003 | 16/6/2026 | Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail. | |
| Modificada | Media (5) | 11% | 💥 Exploit | Slackware Linux | 16/6/2003 | 16/6/2026 | CUPS before 1.1.19 allows remote attackers to cause a denial of service via a partial printing request to the IPP port (631), which does not time out. | |
| Modificada | Alta (7.5) | 1.1% | — | Slackware Linux | 22/5/2003 | 16/6/2026 | rc.M in Slackware 9.0 calls quotacheck with the -M option, which causes the filesystem to be remounted and possibly reset security-relevant mount flags such as nosuid, nodev, and noexec. | |
| Modificada | Media (4.6) | 1.1% | 💥 Exploit | Gnome BonoboMandrakesoft Mandrake LinuxRedhat LinuxSlackware Linux | 31/12/2002 | 16/6/2026 | Buffer overflow in efstools in Bonobo, when installed setuid, allows local users to execute arbitrary code via long command line arguments. | |
| Modificada | Alta (7.2) | 1.3% | 💥 Exploit | Caldera Openlinux ServerCaldera Openlinux WorkstationDebian LinuxFreebsd+5 | 27/2/2002 | 16/6/2026 | Heap corruption vulnerability in the "at" program allows local users to execute arbitrary code via a malformed execution time, which causes at to free the same memory twice. | |
| Modificada | Alta (7.2) | 0.90% | 💥 Exploit | GNU FindutilsSlackware Linux | 31/8/2001 | 16/6/2026 | GNU locate in findutils 4.1 on Slackware 7.1 and 8.0 allows local users to gain privileges via an old formatted filename database (locatedb) that contains an entry with an out-of-range offset, which causes locate to write to arbitrary process memory. | |
| Modificada | Media (5) | 1.8% | — | Debian LinuxDigital UnixNetbsdRedhat Linux+1 | 12/3/2001 | 16/6/2026 | traceroute in NetBSD 1.3.3 and Linux systems allows local unprivileged users to modify the source address of the packets, which could be used in spoofing attacks. | |
| Modificada | Media (5) | 1.8% | — | Debian LinuxDigital UnixNetbsdRedhat Linux+1 | 12/3/2001 | 16/6/2026 | traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets to zero. | |
| Modificada | Alta (7.2) | 0.41% | — | Debian LinuxMandrakesoft Mandrake LinuxRedhat LinuxSlackware Linux+1 | 14/11/2000 | 16/6/2026 | Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages. | |
| Modificada | Alta (10) | 16% | 💥 Exploit | Caldera Openlinux EbuilderImmunixConectiva LinuxSGI Irix+12 | 14/11/2000 | 16/6/2026 | Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. | |
| Modificada | Alta (7.2) | 1.1% | 💥 Exploit | Caldera OpenlinuxSlackware LinuxSuse LinuxTurbolinux | 22/5/2000 | 16/6/2026 | Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint parameter. | |
| Modificada | Media (5) | 1.0% | — | Slackware Linux | 1/12/1999 | 16/6/2026 | login in Slackware 7.0 allows remote attackers to identify valid users on the system by reporting an encryption error when an account is locked or does not exist. | |
| Modificada | Media (5) | 5.6% | 💥 Exploit | Slackware LinuxSuse Linux | 16/8/1999 | 16/6/2026 | A default configuration of in.identd in SuSE Linux waits 120 seconds between requests, allowing a remote attacker to conduct a denial of service. | |
| Modificada | Media (4.6) | 0.71% | 💥 Exploit | Xfree86 Project X11r6NetbsdRedhat LinuxSlackware Linux+1 | 21/3/1999 | 16/6/2026 | XFree86 startx command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service. | |
| Modificada | Alta (7.2) | 1.6% | — | Slackware Linux | 17/3/1999 | 16/6/2026 | During a reboot after an installation of Linux Slackware 3.6, a remote attacker can obtain root access by logging in to the root account without a password. | |
| Modificada | Alta (10) | 40% | 💥 Exploit | Proftpd Project ProftpdWashington University Wu-ftpdCaldera OpenlinuxDebian Linux+4 | 9/2/1999 | 16/6/2026 | Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. | |
| Modificada | Alta (7.2) | 0.33% | — | Slackware Linux | 2/1/1999 | 16/6/2026 | The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users. | |
| Modificada | Alta (7.2) | 0.79% | 💥 Exploit | Slackware Linux | 13/7/1998 | 16/6/2026 | login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which prevents it from dropping privileges, causing it to assign root privileges to any local user who logs on to the server. | |
| Modificada | Baja (3.6) | 0.88% | 💥 Exploit | Slackware Linux | 6/4/1998 | 16/6/2026 | Slackware Linux 3.4 pkgtool allows local attacker to read and write to arbitrary files via a symlink attack on the reply file. | |
| Modificada | Media (5) | 1.3% | — | Slackware Linux | 2/2/1998 | 16/6/2026 | Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords. | |
| Modificada | Alta (7.2) | 0.40% | — | Debian LinuxSlackware Linux | 1/1/1998 | 16/6/2026 | Buffer overflow in the Linux mail program "deliver" allows local users to gain root access. | |
| Modificada | Alta (7.2) | 0.40% | — | Slackware Linux | 1/12/1997 | 16/6/2026 | Buffer overflow in Linux Slackware crond program allows local users to gain root access. | |
| Modificada | Alta (10) | 10% | 💥 Exploit | Redhat LinuxSlackware Linux | 18/10/1997 | 16/6/2026 | Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environmental variable. |