Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 449 respecto a la semana anterior
Críticas / altas1325▼ 128 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 240 respecto a la semana anterior
211 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.95% | — | Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxDebian Linux+10 | 22/12/2019 | 17/6/2026 | kernel/sched/fair.c in the Linux kernel before 5.3.9, when cpu.cfs_quota_us is used (e.g., with Kubernetes), allows attackers to cause a denial of service against non-cpu-bound applications by generating a workload that triggers unwanted slice expiration, aka CID-de53fd7aedb1. (In other words, although this slice… | |
| Modificada | Alta (7.8) | 3.3% | — | Linux KernelCanonical Ubuntu LinuxDebian LinuxNetapp Active IQ Unified Manager+9 | 17/12/2019 | 17/6/2026 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image and performing some operations can cause slab-out-of-bounds write access in __btrfs_map_block in fs/btrfs/volumes.c, because a value of 1 for the number of data stripes is mishandled. | |
| Modificada | Media (5.5) | 2.1% | — | Linux KernelCanonical Ubuntu LinuxDebian LinuxNetapp Active IQ Unified Manager+9 | 17/12/2019 | 17/6/2026 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a use-after-free in __mutex_lock in kernel/locking/mutex.c. This is related to mutex_can_spin_on_owner in kernel/locking/mutex.c, __btrfs_qgroup_free_meta in… | |
| Modificada | Alta (7.8) | 2.1% | — | Linux KernelDebian LinuxCanonical Ubuntu LinuxNetapp Active IQ Unified Manager+14 | 8/12/2019 | 17/6/2026 | In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a use-after-free in try_merge_free_space in fs/btrfs/free-space-cache.c because the pointer to a left data structure can be the same as the pointer to a right… | |
| Modificada | Alta (7.8) | 3.5% | 💥 PoC | Linux KernelNetapp Active IQ Unified ManagerNetapp Cloud BackupNetapp Data Availability Services+3 | 8/12/2019 | 17/6/2026 | In the Linux kernel 5.0.21, mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use-after-free in ext4_put_super in fs/ext4/super.c, related to dump_orphan_list in fs/ext4/super.c. | |
| Modificada | Alta (7.8) | 3.4% | — | Linux KernelNetapp Active IQ Unified ManagerNetapp Cloud BackupNetapp Steelstore Cloud Integrated Storage+1 | 29/11/2019 | 17/6/2026 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and unmounting can lead to a use-after-free in btrfs_queue_work in fs/btrfs/async-thread.c. | |
| Modificada | Media (4.4) | 0.65% | — | Linux KernelOpensuse LeapCanonical Ubuntu LinuxDebian Linux+10 | 28/11/2019 | 17/6/2026 | In the Linux kernel 5.3.11, mounting a crafted btrfs image twice can cause an rwsem_down_write_slowpath use-after-free because (in rwsem_can_spin_on_owner in kernel/locking/rwsem.c) rwsem_owner_flags returns an already freed pointer, | |
| Modificada | Alta (7.5) | 3.5% | — | Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp Data Availability Services+12 | 18/11/2019 | 17/6/2026 | A memory leak in the fastrpc_dma_buf_attach() function in drivers/misc/fastrpc.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption) by triggering dma_get_sgtable() failures, aka CID-fc739a058d99. | |
| Modificada | Media (4.6) | 0.90% | — | Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxFedoraproject Fedora+14 | 18/11/2019 | 17/6/2026 | Two memory leaks in the rtl_usb_probe() function in drivers/net/wireless/realtek/rtlwifi/usb.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption), aka CID-3f9361695113. | |
| Modificada | Alta (7.5) | 3.4% | — | Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management Controller+11 | 18/11/2019 | 17/6/2026 | A memory leak in the adis_update_scan_mode_burst() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-9c0530e898f3. | |
| Modificada | Alta (7.5) | 3.6% | — | Linux KernelNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management ControllerNetapp Cloud Backup+12 | 18/11/2019 | 17/6/2026 | A memory leak in the adis_update_scan_mode() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-ab612b1daf41. | |
| Modificada | Baja (3.3) | 0.79% | — | Linux KernelCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+14 | 18/11/2019 | 17/6/2026 | Two memory leaks in the mwifiex_pcie_init_evt_ring() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering mwifiex_map_pci_memory() failures, aka CID-d10dcb615c8e. | |
| Modificada | Media (4.7) | 0.45% | — | Linux KernelCanonical Ubuntu LinuxFedoraproject FedoraOpensuse Leap+13 | 18/11/2019 | 17/6/2026 | A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CID-a7b2df76b42b. | |
| Modificada | Alta (7.5) | 3.3% | — | Linux KernelCanonical Ubuntu LinuxNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management Controller+11 | 18/11/2019 | 17/6/2026 | A memory leak in the rpmsg_eptdev_write_iter() function in drivers/rpmsg/rpmsg_char.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy_from_iter_full() failures, aka CID-bbe692e349e2. | |
| Modificada | Alta (7.5) | 5.4% | — | Linux KernelOracle Sd-wan EdgeCanonical Ubuntu LinuxDebian Linux+14 | 18/11/2019 | 17/6/2026 | A memory leak in the gs_can_open() function in drivers/net/can/usb/gs_usb.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() failures, aka CID-fb5be6a7b486. | |
| Modificada | Alta (7.5) | 5.1% | — | Linux KernelFedoraproject FedoraCanonical Ubuntu LinuxNetapp Active IQ Unified Manager+13 | 18/11/2019 | 17/6/2026 | A memory leak in the crypto_reportstat() function in crypto/crypto_user_stat.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering crypto_reportstat_alg() failures, aka CID-c03b04dcdba1. | |
| Modificada | Alta (7.5) | 4.0% | — | Linux KernelNetapp Active IQ Unified ManagerNetapp AFF Baseboard Management ControllerNetapp Cloud Backup+11 | 18/11/2019 | 17/6/2026 | Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering kcalloc() or v3d_job_init() failures, aka CID-29cd13cfd762. | |
| Modificada | Media (5.5) | 0.28% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Improper input validation in the API for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Media (5.5) | 0.28% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Improper access control in the API for the Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.30% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Out of bounds read in a subsystem for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Media (4.4) | 0.35% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 (DCH) or 21.20.x.5077 (aka15.45.5077) may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Alta (7.8) | 0.35% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Pointer corruption in the Unified Shader Compiler in Intel(R) Graphics Drivers before 10.18.14.5074 (aka 15.36.x.5074) may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (5.5) | 0.31% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage+1 | 14/11/2019 | 17/6/2026 | Insufficient input validation in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6519 may allow an authenticated user to potentially enable denial of service via local access. | |
| Modificada | Alta (7.8) | 0.36% | — | Intel Graphics DriverNetapp Cloud BackupNetapp Data Availability ServicesNetapp Steelstore Cloud Integrated Storage | 14/11/2019 | 17/6/2026 | Memory corruption in Kernel Mode Driver in Intel(R) Graphics Driver before 26.20.100.6813 (DCH) or 26.20.100.6812 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Crítica (9.8) | 3.4% | — | Linux KernelOpensuse LeapRedhat Enterprise LinuxNetapp Active IQ Unified Manager+13 | 7/11/2019 | 17/6/2026 | An issue was discovered in net/ipv4/sysctl_net_ipv4.c in the Linux kernel before 5.0.11. There is a net/ipv4/tcp_input.c signed integer overflow in tcp_ack_update_rtt() when userspace writes a very large integer to /proc/sys/net/ipv4/tcp_min_rtt_wlen, leading to a denial of service or possibly unspecified other… |