Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2862▼ 326 respecto a la semana anterior
Críticas / altas1389▼ 28 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
87 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (9.3) | 3.8% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via a crafted header in a BDF font. | |
| Modificada | Alta (9.3) | 3.8% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted glyph or bitmap data in a BDF font that lacks an ENCODING field. | |
| Modificada | Alta (9.3) | 4.7% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via vectors involving the NPUSHB and NPUSHW instructions in a TrueType font. | |
| Modificada | Alta (9.3) | 4.6% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted private-dictionary data in a Type 1 font. | |
| Modificada | Alta (9.3) | 4.7% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted glyph or bitmap data in a BDF font. | |
| Modificada | Alta (9.3) | 3.8% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via crafted dictionary data in a Type 1 font. | |
| Modificada | Alta (9.3) | 3.8% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, on 64-bit platforms allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via vectors related to the cell table of a font. | |
| Modificada | Alta (9.3) | 3.8% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via crafted property data in a PCF font. | |
| Modificada | Alta (9.3) | 3.8% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via a crafted SFNT string in a Type 42 font. | |
| Modificada | Alta (9.3) | 4.6% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (NULL pointer dereference and memory corruption) or possibly execute arbitrary code via a crafted TrueType font. | |
| Modificada | Alta (9.3) | 3.8% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via crafted glyph or bitmap data in a BDF font. | |
| Modificada | Alta (10) | 5.6% | — | FreetypeMozilla Firefox Mobile | 25/4/2012 | 16/6/2026 | FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via crafted property data in a BDF font. |