Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2733▼ 589 respecto a la semana anterior
Críticas / altas1313▼ 190 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)294▼ 216 respecto a la semana anterior
4241 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.24% | — | Canonical Cloud-initCanonical Ubuntu Linux | 19/4/2023 | 17/6/2026 | Sensitive data could be exposed in world readable logs of cloud-init before version 22.3 when schema failures are reported. This leak could include hashed passwords. | |
| Modificada | Alta (7.8) | 0.87% | 💥 PoC | Canonical ApportCanonical Ubuntu Linux | 13/4/2023 | 17/6/2026 | A privilege escalation attack was found in apport-cli 2.26.0 and earlier which is similar to CVE-2023-26604. If a system is specially configured to allow unprivileged users to run sudo apport-cli, less is configured as the pager, and the terminal size can be set: a local attacker can escalate privilege. It is… | |
| Modificada | Media (5.5) | 0.20% | — | Canonical Ubuntu LinuxDebian Linux | 7/4/2023 | 17/6/2026 | It was discovered that aufs improperly managed inode reference counts in the vfsub_dentry_open() method. A local attacker could use this vulnerability to cause a denial of service attack. | |
| Modificada | Alta (7.8) | 1.9% | 💥 PoC | Linux KernelCanonical Ubuntu LinuxFedoraproject FedoraRedhat Enterprise Linux+9 | 27/3/2023 | 17/6/2026 | A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Escalation to the root user via arbitrary code execution. | |
| Modificada | Alta (7.1) | 17% | — | Redhat Enterprise LinuxLinux KernelNetapp H500s FirmwareNetapp H700s Firmware+5 | 27/3/2023 | 17/9/2026 | A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. This issue could occur when assoc_info->req_len data is bigger than the size of the buffer, defined as WL_EXTRA_BUF_MAX, leading to a denial of service. | |
| Analizada | Alta (7.8) | 7.9% | ⚠ Explotación activa💥 Exploit | Debian LinuxNetapp H300s FirmwareNetapp H500s FirmwareNetapp H700s Firmware+4 | 22/3/2023 | 17/6/2026 | A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on… | |
| Modificada | Alta (7.8) | 1.8% | — | Ubuntukylin Kylin-system-updater | 8/3/2023 | 17/6/2026 | A vulnerability, which was classified as critical, was found in kylin-system-updater up to 1.4.20kord on Ubuntu Kylin. Affected is the function InstallSnap of the component Update Handler. The manipulation leads to command injection. The attack needs to be approached locally. The exploit has been disclosed to the… | |
| Modificada | Alta (7.5) | 1.8% | — | StrongswanCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+1 | 31/10/2022 | 17/6/2026 | strongSwan before 5.9.8 allows remote attackers to cause a denial of service in the revocation plugin by sending a crafted end-entity (and intermediate CA) certificate that contains a CRL/OCSP URL that points to a server (under the attacker's control) that doesn't properly respond but (for example) just does nothing… | |
| Modificada | Alta (7) | 0.47% | — | Linux KernelDebian LinuxNetapp HCI Baseboard Management ControllerCanonical Ubuntu Linux | 21/9/2022 | 17/6/2026 | mm/mremap.c in the Linux kernel before 5.13.3 has a use-after-free via a stale TLB because an rmap lock is not held during a PUD move. | |
| Modificada | Alta (7.8) | 0.47% | 💥 PoC | Ubports Ubuntu Touch | 9/9/2022 | 17/6/2026 | UBports Ubuntu Touch 16.04 allows the screen-unlock passcode to be used for a privileged shell via Sudo. This passcode is only four digits, far below typical length/complexity for a user account's password. NOTE: a third party states "The described attack cannot be executed as demonstrated. | |
| Modificada | Alta (8.8) | 0.67% | — | BluezCanonical Ubuntu LinuxDebian Linux | 2/9/2022 | 17/6/2026 | BlueZ before 5.59 allows physically proximate attackers to cause a denial of service because malformed and invalid capabilities can be processed in profiles/audio/avdtp.c. | |
| Modificada | Alta (8.8) | 0.70% | — | BluezCanonical Ubuntu LinuxDebian Linux | 2/9/2022 | 17/6/2026 | BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len. | |
| Modificada | Media (5.5) | 0.29% | — | Linux KernelRedhat Enterprise LinuxDebian LinuxCanonical Ubuntu Linux | 29/8/2022 | 17/6/2026 | A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service. | |
| Modificada | Media (6.5) | 1.5% | 💥 PoC | Redhat LibvirtCanonical Ubuntu LinuxFedoraproject FedoraRedhat Enterprise Linux+10 | 23/8/2022 | 17/6/2026 | A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandleMonitorEOF is called using multiple threads without being adequately protected by a monitor lock. This flaw could be triggered by the virConnectGetAllDomainStats API when the guest is shutting down. An unprivileged… | |
| Modificada | Alta (7.5) | 2.0% | — | OpenvswitchRedhat Enterprise Linux Fast DatapathCanonical Ubuntu LinuxFedoraproject Fedora | 23/8/2022 | 17/6/2026 | A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments. | |
| Modificada | Alta (7.8) | 5.5% | 💥 Exploit | Linux KernelDebian LinuxCanonical Ubuntu LinuxNetapp H300s Firmware+4 | 4/7/2022 | 17/6/2026 | An issue was discovered in the Linux kernel through 5.18.9. A type confusion bug in nft_set_elem_init (leading to a buffer overflow) could be used by a local attacker to escalate privileges, a different vulnerability than CVE-2022-32250. (The attacker can obtain root access, but must start with an unprivileged user… | |
| Modificada | Alta (7.8) | 0.93% | 💥 PoC | Linux KernelDebian LinuxCanonical Ubuntu LinuxNetapp H300s Firmware+7 | 17/5/2022 | 17/6/2026 | Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege escalation to root. This issue affects: Linux Kernel versions prior to 5.18; version 4.14 and later versions. | |
| Analizada | Alta (8.6) | 0.50% | — | Linux KernelRedhat Enterprise LinuxFedoraproject FedoraCanonical Ubuntu Linux+8 | 29/3/2022 | 13/8/2026 | A use-after-free exists in the Linux Kernel in tc_new_tfilter that could allow a local attacker to gain privilege escalation. The exploit requires unprivileged user namespaces. We recommend upgrading past commit 04c2a47ffb13c29778e2a14e414ad4cb5a5db4b5 | |
| Modificada | Alta (7.5) | 0.52% | — | QemuDebian LinuxCanonical Ubuntu LinuxFedoraproject Fedora+2 | 23/3/2022 | 17/6/2026 | A use-after-free vulnerability was found in the virtio-net device of QEMU. It could occur when the descriptor's address belongs to the non direct access region, due to num_buffers being set after the virtqueue elem has been unmapped. A malicious guest could use this flaw to crash QEMU, resulting in a denial of service… | |
| Modificada | Alta (7.5) | 12% | — | PythonRedhat Codeready Linux BuilderRedhat Codeready Linux Builder FOR IBM Z SystemsRedhat Codeready Linux Builder FOR Power Little Endian+13 | 4/3/2022 | 17/6/2026 | A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to make the client script enter an infinite loop, consuming CPU time. The highest threat from this vulnerability is to system availability. | |
| Modificada | Alta (7) | 0.37% | — | Linux KernelDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux+8 | 3/3/2022 | 17/6/2026 | A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local… | |
| Analizada | Alta (7.8) | 5.5% | ⚠ Explotación activa💥 Exploit | Netapp H300s FirmwareNetapp H410c FirmwareNetapp H410s FirmwareNetapp H500s Firmware+23 | 3/3/2022 | 17/6/2026 | A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly. | |
| Modificada | Media (5.5) | 0.53% | — | Polkit Project PolkitRedhat Enterprise LinuxFedoraproject FedoraCanonical Ubuntu Linux+2 | 21/2/2022 | 17/6/2026 | There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor exhaustion. The highest threat from this vulnerability is to availability. NOTE: Polkit process outage duration is tied to the failing process being reaped and a new one being spawned | |
| Modificada | Alta (8.8) | 74% | 💥 PoC | SambaDebian LinuxCanonical Ubuntu LinuxSynology Diskstation Manager+19 | 21/2/2022 | 17/6/2026 | The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bounds heap read and write via specially… | |
| Modificada | Alta (8.8) | 0.42% | — | Linux KernelRedhat Enterprise LinuxFedoraproject FedoraCanonical Ubuntu Linux | 18/2/2022 | 17/6/2026 | A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KVM guest using SEV-ES can trigger out-of-bounds reads and writes in the host kernel via a malicious VMGEXIT for a string I/O instruction (for example, outs or ins) using the exit reason SVM_EXIT_IOIO.… |