Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

165 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.7)0.22%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt1/7/202417/6/2026
In gnss service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08719602; Issue ID: MSV-1412.
AnalizadaMedia (6.6)0.43%—Mediatek Software Development KITOpenwrt3/6/202417/6/2026
In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00367704; Issue ID: MSV-1411.
AnalizadaMedia (6.6)0.43%—Mediatek Software Development KITOpenwrt3/6/202417/6/2026
In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00364732; Issue ID: MSV-1332.
AnalizadaMedia (4.4)0.17%—Mediatek Software Development KITOpenwrt3/6/202417/6/2026
In wlan driver, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00364733; Issue ID: MSV-1331.
AplazadaAlta (7.3)0.29%—OpenwrtAI28/5/202417/6/2026
An issue discovered in OpenWrt 18.06, 19.07, 21.02, 22.03, and beyond allows off-path attackers to hijack TCP sessions, which could lead to a denial of service, impersonating the client to the server (e.g., for access to files over FTP), and impersonating the server to the client (e.g., to deliver false information…
AnalizadaMedia (6.7)0.09%—Rdkcentral Rdk-bGoogle AndroidOpenwrt6/5/202417/6/2026
In preloader, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08528185; Issue ID: ALPS08528185.
AnalizadaMedia (5.3)0.08%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt6/5/202417/6/2026
In DA, there is a possible permission bypass due to an incorrect status check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08355514; Issue ID: ALPS08355514.
AnalizadaMedia (6.6)0.27%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt1/4/202417/6/2026
In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08580200; Issue ID: ALPS08580200.
AnalizadaAlta (8.4)0.09%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt1/4/202417/6/2026
In flashc, there is a possible out of bounds write due to an uncaught exception. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541764.
AnalizadaMedia (4.4)0.10%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt1/4/202417/6/2026
In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541761.
AnalizadaBaja (2.3)0.08%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt1/4/202417/6/2026
In flashc, there is a possible system crash due to an uncaught exception. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541758.
AnalizadaMedia (4.4)0.10%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt1/4/202417/6/2026
In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541757.
AnalizadaMedia (4.4)0.10%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt1/4/202417/6/2026
In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541765; Issue ID: ALPS08541765.
AnalizadaAlta (8.8)0.18%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidLinux Kernel+11/4/202417/6/2026
In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08360153 (for MT6XXX chipsets) / WCNCR00363530 (for MT79XX…
AnalizadaMedia (6.7)0.10%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt4/3/202417/6/2026
In flashc, there is a possible out of bounds write due to lack of valudation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541638; Issue ID: ALPS08541638.
ModificadaMedia (6.7)0.12%—Linuxfoundation YoctoRdkcentral RdkbGoogle AndroidOpenwrt4/3/202417/6/2026
In lk, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08528255; Issue ID: ALPS08528255.
AnalizadaCrítica (9.8)47%💥 PoCMediatek Software Development KITOpenwrt4/3/202417/6/2026
In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation Patch ID: WCNCR00350938; Issue ID: MSV-1132.
ModificadaMedia (6.7)0.22%—Rdkcentral Rdk-bGoogle AndroidOpenwrt5/2/202417/6/2026
In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08477148; Issue ID: ALPS08477148.
ModificadaMedia (6.7)0.11%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt4/12/202317/6/2026
In aee, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07909204; Issue ID: ALPS07909204.
ModificadaMedia (4.4)0.10%—Linuxfoundation YoctoGoogle AndroidOpenwrt4/9/202317/6/2026
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08037801; Issue ID: ALPS08037801.
ModificadaMedia (4.4)0.10%—Linuxfoundation YoctoGoogle AndroidOpenwrt4/9/202317/6/2026
In gnss service, there is a possible out of bounds write due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08017370; Issue ID: ALPS08017370.
ModificadaMedia (6.7)0.10%—Linuxfoundation YoctoGoogle AndroidOpenwrt4/9/202317/6/2026
In gnss service, there is a possible out of bounds write due to improper input validation. This could lead to local esclation of privileges with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08017365; Issue ID: ALPS08017365.
ModificadaMedia (6.7)0.10%—Linuxfoundation YoctoMediatek IOT YoctoGoogle AndroidOpenwrt4/9/202317/6/2026
In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441589; Issue ID: ALPS07441589.
ModificadaMedia (6.7)0.09%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt4/9/202317/6/2026
In gps, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08014144; Issue ID: ALPS08013530.
ModificadaMedia (6.7)0.09%—Linuxfoundation YoctoRdkcentral Rdk-bGoogle AndroidOpenwrt4/9/202317/6/2026
In gps, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08014144; Issue ID: ALPS08014162.
Orbitaley — Vulnerabilidades