Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
85 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 3.0% | — | Uclouvain Openjpeg | 18/4/2014 | 16/6/2026 | Stack-based buffer overflow in OpenJPEG before 1.5.2 allows remote attackers to have unspecified impact via unknown vectors to (1) lib/openjp3d/opj_jp3d_compress.c, (2) bin/jp3d/convert.c, or (3) lib/openjp3d/event.c. | |
| Modificada | Alta (10) | 2.7% | — | Uclouvain Openjpeg | 18/4/2014 | 16/6/2026 | Multiple integer overflows in lib/openjp3d/jp3d.c in OpenJPEG before 1.5.2 allow remote attackers to have unspecified impact and vectors, which trigger a heap-based buffer overflow. | |
| Modificada | Alta (7.5) | 2.2% | — | Uclouvain Openjpeg | 12/12/2013 | 16/6/2026 | Heap-based buffer overflow in OpenJPEG 1.3 has unspecified impact and remote vectors, a different vulnerability than CVE-2013-6045. | |
| Modificada | Media (5) | 2.2% | — | Uclouvain Openjpeg | 12/12/2013 | 16/6/2026 | OpenJPEG 1.3 and earlier allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based out-of-bounds read. | |
| Modificada | Alta (7.5) | 5.5% | — | Uclouvain Openjpeg | 12/12/2013 | 16/6/2026 | Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors. | |
| Modificada | Media (5) | 2.5% | — | Uclouvain Openjpeg | 12/12/2013 | 16/6/2026 | OpenJPEG 1.3 and earlier allows remote attackers to cause a denial of service (memory consumption or crash) via unspecified vectors related to NULL pointer dereferences, division-by-zero, and other errors. | |
| Modificada | Media (6.8) | 6.2% | — | Uclouvain Openjpeg | 5/9/2012 | 16/6/2026 | Heap-based buffer overflow in OpenJPEG 1.5.0 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted JPEG2000 file. | |
| Modificada | Alta (10) | 7.7% | — | Uclouvain Openjpeg | 18/7/2012 | 16/6/2026 | Multiple heap-based buffer overflows in the j2k_read_sot function in j2k.c in OpenJPEG 1.5 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted (1) tile number or (2) tile length in a JPEG 2000 image file. | |
| Modificada | Media (6.8) | 4.1% | — | Uclouvain Openjpeg | 18/7/2012 | 16/6/2026 | The tcd_free_encode function in tcd.c in OpenJPEG 1.3 through 1.5 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted tile information in a Gray16 TIFF image, which causes insufficient memory to be allocated and leads to an "invalid free." | |
| Modificada | Alta (9.3) | 5.1% | — | Uclouvain Openjpeg | 11/4/2012 | 16/6/2026 | The JPEG 2000 codec (jp2.c) in OpenJPEG before 1.5 allows remote attackers to execute arbitrary code via a crafted palette index in a CMAP record of a JPEG image, which triggers memory corruption, aka "out-of heap-based buffer write." |