Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3034▼ 62 respecto a la semana anterior
Críticas / altas1427▲ 61 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
598 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 99% | ⚠ Explotación activa | GNU InetutilsDebian Linux | 21/1/2026 | 30/9/2026 | telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable. | |
| Analizada | Alta (7.5) | 0.36% | — | GNU Recutils | 30/12/2025 | 17/6/2026 | A divide-by-zero in the encryption/decryption routines of GNU Recutils v1.9 allows attackers to cause a Denial of Service (DoS) via inputting an empty value as a password. | |
| Analizada | Alta (7.5) | 0.31% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_abi_tags in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Alta (7.5) | 0.38% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Alta (7.5) | 0.24% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Alta (7.5) | 0.38% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_discriminator in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Alta (7.5) | 0.37% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | A buffer overflow vulnerability in function gnu_special in file cplus-dem.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file. | |
| Analizada | Baja (2.5) | 0.15% | — | GNU Binutils | 29/12/2025 | 17/6/2026 | An issue was discovered in function d_unqualified_name in file cp-demangle.c in BinUtils 2.26 allowing attackers to cause a denial of service via crafted PE file. | |
| Analizada | Crítica (9.3) | 0.47% | — | Gofiber Utils | 9/12/2025 | 17/6/2026 | Fiber Utils is a collection of common functions created for Fiber. In versions 2.0.0-rc.3 and below, when the system's cryptographic random number generator (crypto/rand) fails, both functions silently fall back to returning predictable UUID values, including the zero UUID "00000000-0000-0000-0000-000000000000". The… | |
| Modificada | Baja (1.9) | 0.28% | — | GNU Binutils | 16/10/2025 | 17/6/2026 | A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. This patch is called… | |
| Modificada | Baja (1.9) | 0.28% | — | GNU Binutils | 16/10/2025 | 17/6/2026 | A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of the file prdbg.c. Performing a manipulation results in unchecked return value. The attack needs to be approached locally. The exploit has been released to the public and may be used for attacks. | |
| Modificada | Baja (1.9) | 0.24% | — | GNU Binutils | 8/10/2025 | 30/9/2026 | A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of the file elf64-x86-64.c of the component Linker. This manipulation causes heap-based buffer overflow. The attack can only be executed locally. The exploit has been publicly disclosed and may be… | |
| Modificada | Baja (1.9) | 0.21% | — | GNU Binutils | 8/10/2025 | 30/9/2026 | A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd/elfxx-x86.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. The patch is… | |
| Modificada | Baja (1.9) | 0.21% | — | GNU Binutils | 7/10/2025 | 17/6/2026 | A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerability is the function get_link_hash_entry of the file bfd/elflink.c of the component Linker. This manipulation causes out-of-bounds read. The attack can only be executed locally. The exploit has been publicly disclosed and may be utilized.… | |
| Modificada | Baja (1.9) | 0.22% | — | GNU Binutils | 7/10/2025 | 17/6/2026 | A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_link_add_object_symbols of the file bfd/elflink.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. Upgrading to version… | |
| Modificada | Baja (1.9) | 0.21% | — | GNU Binutils | 7/10/2025 | 17/6/2026 | A vulnerability has been found in GNU Binutils 2.45. This impacts the function bfd_elf_gc_record_vtentry of the file bfd/elflink.c of the component Linker. The manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The… | |
| Modificada | Baja (1.9) | 0.26% | — | GNU Binutils | 27/9/2025 | 17/6/2026 | A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The… | |
| Modificada | Baja (1.9) | 0.25% | — | GNU Binutils | 27/9/2025 | 17/6/2026 | A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the file bfd/elf-eh-frame.c of the component Linker. Executing manipulation can lead to heap-based buffer overflow. The attack is restricted to local execution. The exploit has been published and may be used. This patch is… | |
| Analizada | Baja (1.9) | 0.20% | — | GNU Binutils | 27/9/2025 | 30/9/2026 | A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_section of the file binutils/objdump.c. Performing manipulation results in out-of-bounds read. The attack is only possible with local access. The exploit is now public and may be used. The patch is named… | |
| Analizada | Baja (1.9) | 0.24% | — | GNU Binutils | 27/7/2025 | 17/6/2026 | A vulnerability was found in GNU Binutils 2.44 and classified as problematic. This issue affects the function process_debug_info of the file binutils/dwarf.c of the component DWARF Section Handler. The manipulation leads to memory leak. Attacking locally is a requirement. The identifier of the patch is… | |
| Modificada | Baja (1.9) | 0.24% | — | GNU Binutils | 27/7/2025 | 17/6/2026 | A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_elf_get_str_section of the file bfd/elf.c of the component BFD Library. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has… | |
| Aplazada | Media (6.5) | 0.35% | — | IputilsAI | 22/7/2025 | 17/6/2026 | ping in iputils before 20250602 allows a denial of service (application error in adaptive ping mode or incorrect data collection) via a crafted ICMP Echo Reply packet, because a zero timestamp can lead to large intermediate values that have an integer overflow when squared during statistics calculations. NOTE: this… | |
| Modificada | Baja (1.9) | 0.19% | — | GNU Binutils | 13/7/2025 | 17/6/2026 | A vulnerability, which was classified as problematic, has been found in GNU Binutils 2.45. Affected by this issue is the function bfd_elf_set_group_contents of the file bfd/elf.c. The manipulation leads to out-of-bounds write. It is possible to launch the attack on the local host. The exploit has been disclosed to the… | |
| Modificada | Baja (1.9) | 0.29% | — | GNU Binutils | 13/7/2025 | 17/6/2026 | A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file binutils/objcopy.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.… | |
| Analizada | Media (6.5) | 0.16% | — | Canonical Juju/utils | 1/7/2025 | 17/6/2026 | Certificate generation in juju/utils using the cert.NewLeaf function could include private information. If this certificate were then transferred over the network in plaintext, an attacker listening on that network could sniff the certificate and trivially extract the private key from it. |