Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2533▼ 405 respecto a la semana anterior
Críticas / altas1319▲ 38 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)99▼ 428 respecto a la semana anterior
–

231 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.8)0.10%—Qualcomm Wsa8835 FirmwareQualcomm Wsa8830 FirmwareQualcomm Wsa8815 FirmwareQualcomm Wsa8810 Firmware+2024/11/202417/6/2026
Memory corruption while processing GPU page table switch.
AnalizadaAlta (7.8)0.10%—Qualcomm Wsa8845h FirmwareQualcomm Wsa8845 FirmwareQualcomm Wsa8840 FirmwareQualcomm Wsa8835 Firmware+2644/11/202417/6/2026
Memory corruption while processing voice packet with arbitrary data received from ADSP.
AnalizadaMedia (6.5)0.25%—Qualcomm Wsa8845h FirmwareQualcomm Wsa8845 FirmwareQualcomm Wsa8840 FirmwareQualcomm Wsa8835 Firmware+904/11/202417/6/2026
Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE.
AnalizadaAlta (7.5)1.0%—Apache Formatting Objects Processor9/10/202417/6/2026
Improper Restriction of XML External Entity Reference ('XXE') vulnerability in Apache XML Graphics FOP. This issue affects Apache XML Graphics FOP: 2.9. Users are recommended to upgrade to version 2.10, which fixes the issue.
AplazadaMedia (5.6)0.18%—Intel ProcessorsAI16/9/202417/6/2026
Improper finite state machines (FSMs) in hardware logic in some Intel(R) Processors may allow an privileged user to potentially enable a denial of service via local access.
AplazadaMedia (6.8)0.15%—Intel ProcessorsAIIntel SGXAI16/9/202417/6/2026
Improper conditions check in some Intel(R) Processors with Intel(R) SGX may allow a privileged user to potentially enable information disclosure via local access.
AnalizadaMedia (5.5)0.09%—Qualcomm Apq8017 FirmwareQualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+1992/9/202417/6/2026
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
AnalizadaAlta (8.2)0.26%—Qualcomm Qcn9024 FirmwareQualcomm Qcs4490 FirmwareQualcomm Qcs5430 FirmwareQualcomm Qcs6490 Firmware+1572/9/202417/6/2026
Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.
AnalizadaAlta (7.5)0.26%—Qualcomm Apq8017 FirmwareQualcomm Apq8037 FirmwareQualcomm Ar8035 FirmwareQualcomm Fastconnect 7800 Firmware+492/9/202417/6/2026
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in Modem.
AplazadaMedia (6.7)0.19%—Intel Xeon Scalable ProcessorsAI14/8/202417/6/2026
Mirrored regions with different values in 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.
AplazadaMedia (6.9)0.17%—Intel Xeon ProcessorsAI14/8/202417/6/2026
Protection mechanism failure in some 3rd, 4th, and 5th Generation Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaAlta (7.3)0.23%—Intel ProcessorAI14/8/202417/6/2026
Incorrect behavior order in transition between executive monitor and SMI transfer monitor (STM) in some Intel(R) Processor may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaMedia (6.8)0.16%—Intel Xeon ProcessorsAI14/8/202417/6/2026
Insufficient control flow management for some Intel(R) Xeon Processors may allow an authenticated user to potentially enable denial of service via local access.
AplazadaAlta (7.3)0.29%—Intel ProcessorsAI14/8/202417/6/2026
Improper isolation in some Intel(R) Processors stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access.
AplazadaAlta (7.3)0.24%—Intel Core Ultra ProcessorAI14/8/202417/6/2026
Improper isolation in the Intel(R) Core(TM) Ultra Processor stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access.
AplazadaMedia (5.7)0.14%—AMD Secure ProcessorAI13/8/202417/6/2026
Improper key usage control in AMD Secure Processor (ASP) may allow an attacker with local access who has gained arbitrary code execution privilege in ASP to extract ASP cryptographic keys, potentially resulting in loss of confidentiality and integrity.
AplazadaAlta (7.3)0.18%—AMD Secure ProcessorAIAMD Secure OSAI13/8/202417/6/2026
Insufficient checking of memory buffer in AMD Secure Processor (ASP) Secure OS may allow an attacker with a malicious trusted application to read/write to the ASP Secure OS kernel virtual address space, potentially resulting in privilege escalation.
AnalizadaAlta (7.8)0.10%—Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm C-v2x 9150 Firmware+865/8/202417/6/2026
Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table.
AnalizadaAlta (7.5)0.35%—Qualcomm Wsa8845h FirmwareQualcomm Wsa8845 FirmwareQualcomm Wsa8840 FirmwareQualcomm Wsa8835 Firmware+2455/8/202417/6/2026
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
ModificadaCrítica (9.8)0.62%—HP 3par Service Processor Firmware16/7/202417/6/2026
The vulnerability could be remotely exploited to bypass authentication.
ModificadaAlta (7.8)0.15%—Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+2181/7/202417/6/2026
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
ModificadaAlta (7.8)0.10%—Qualcomm Apq8064au FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Ar9380 Firmware+3391/7/202417/6/2026
Memory corruption when allocating and accessing an entry in an SMEM partition.
AplazadaAlta (7.1)0.19%—NXP Data Co-processorAI28/6/202417/6/2026
The NXP Data Co-Processor (DCP) is a built-in hardware module for specific NXP SoCs¹ that implements a dedicated AES cryptographic engine for encryption/decryption operations. The dcp_tool reference implementation included in the repository selected the test key, regardless of its `-t` argument. This issue has been…
AnalizadaAlta (7.8)0.19%—Intel Processor Diagnostic Tool16/5/202417/6/2026
Uncontrolled search path in some Intel(R) Processor Diagnostic Tool software before version 4.1.9.41 may allow an authenticated user to potentially enable escalation of privilege via local access.
AplazadaMedia (6.7)0.19%—Intel Processor Identification UtilityAI16/5/202417/6/2026
Uncontrolled search path in some Intel(R) Processor Identification Utility software before versions 6.10.34.1129, 7.1.6 may allow an authenticated user to potentially enable escalation of privilege via local access.