Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

319 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.8)8.8%⚠ Explotación activa💥 ExploitLinux KernelFedoraproject FedoraNetapp H300e FirmwareNetapp H300s Firmware+925/3/202227/8/2026
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
ModificadaAlta (7.8)0.36%—Linux KernelFedoraproject FedoraNetapp H300e FirmwareNetapp H300s Firmware+625/3/202217/6/2026
A flaw was found in unrestricted eBPF usage by the BPF_BTF_LOAD, leading to a possible out-of-bounds memory write in the Linux kernel’s BPF subsystem due to the way a user loads BTF. This flaw allows a local user to crash or escalate their privileges on the system.
ModificadaAlta (8.8)68%💥 PoCLinux KernelRedhat Codeready Linux BuilderRedhat Codeready Linux Builder EUSRedhat Codeready Linux Builder EUS FOR Power Little Endian+2625/3/202217/6/2026
A stack overflow flaw was found in the Linux kernel's TIPC protocol functionality in the way a user sends a packet with malicious content where the number of domain member nodes is higher than the 64 allowed. This flaw allows a remote user to crash the system or possibly escalate their privileges if they have access…
AnalizadaAlta (7.8)0.38%—Linux KernelRedhat Codeready Linux BuilderRedhat Codeready Linux Builder EUSRedhat Codeready Linux Builder EUS FOR Power Little Endian+3425/3/20225/8/2026
A random memory access flaw was found in the Linux kernel's GPU i915 kernel driver functionality in the way a user may run malicious code on the GPU. This flaw allows a local user to crash the system or escalate their privileges on the system.
ModificadaMedia (6.8)1.7%—Linux KernelNetapp Active IQ Unified ManagerNetapp E-series Santricity OS ControllerNetapp Element Software+1225/3/202217/6/2026
A use-after-free read flaw was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (and connect()) in the Linux kernel. In this flaw, an attacker with a user privileges may crash the system or leak internal kernel information.
ModificadaAlta (8)1.6%—Linux KernelFedoraproject FedoraNetapp H300e FirmwareNetapp H300s Firmware+625/3/202217/6/2026
An out of memory bounds write flaw (1 or 2 bytes of memory) in the Linux kernel NFS subsystem was found in the way users use mirroring (replication of files with NFS). A user, having access to the NFS mount, could potentially use this flaw to crash the system or escalate privileges on the system.
ModificadaAlta (7.5)52%💥 PoCNokogiriPythonZlibDebian Linux+2325/3/202214/7/2026
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.
ModificadaAlta (7.8)0.54%—Linux KernelOracle Communications Cloud Native Core Binding Support FunctionDebian LinuxBroadcom Brocade Fabric Operating System Firmware+523/3/202217/6/2026
An unprivileged write to the file handler flaw in the Linux kernel's control groups and namespaces subsystem was found in the way users have access to some less privileged process that are controlled by cgroups and have higher privileged parent process. It is actually both for cgroup2 and cgroup1 versions of control…
ModificadaMedia (6.8)3.4%—ISC BindFedoraproject FedoraNetapp H300s FirmwareNetapp H500s Firmware+823/3/202217/6/2026
BIND 9.11.0 -> 9.11.36 9.12.0 -> 9.16.26 9.17.0 -> 9.18.0 BIND Supported Preview Editions: 9.11.4-S1 -> 9.11.36-S1 9.16.8-S1 -> 9.16.26-S1 Versions of BIND 9 earlier than those shown - back to 9.1.0, including Supported Preview Editions - are also believed to be affected but have not been tested as they are EOL. The…
ModificadaAlta (7.5)1.3%—ISC BindNetapp H300s FirmwareNetapp H500s FirmwareNetapp H700s Firmware+523/3/202217/6/2026
Versions affected: BIND 9.18.0 When a vulnerable version of named receives a series of specific queries, the named process will eventually terminate due to a failed assertion check.
ModificadaMedia (5.3)2.7%—ISC BindFedoraproject FedoraNetapp H300s FirmwareNetapp H500s Firmware+723/3/202217/6/2026
BIND 9.16.11 -> 9.16.26, 9.17.0 -> 9.18.0 and versions 9.16.11-S1 -> 9.16.26-S1 of the BIND Supported Preview Edition. Specifically crafted TCP streams can cause connections to BIND to remain in CLOSE_WAIT status for an indefinite period of time, even after the client has terminated the connection.
AnalizadaAlta (7.8)5.5%💥 PoCLinux KernelFedoraproject FedoraRedhat VirtualizationRedhat Enterprise Linux+923/3/20221/9/2026
A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation threat.
ModificadaAlta (7.5)1.3%—ISC BindNetapp H300s FirmwareNetapp H500s FirmwareNetapp H700s Firmware+522/3/202217/6/2026
When the vulnerability is triggered the BIND process will exit. BIND 9.18.0
AnalizadaAlta (7.8)1.2%💥 PoCLinux KernelFedoraproject FedoraRedhat Build OF QuarkusRedhat Developer Tools+2618/3/202226/8/2026
A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unauthorized access to data from the FUSE filesystem, resulting in privilege escalation.
ModificadaAlta (7.5)5.0%—Linux KernelNetapp A400 FirmwareNetapp AFF 8300 FirmwareNetapp AFF 8700 Firmware+1018/3/202217/6/2026
Memory leak in icmp6 implementation in Linux Kernel 5.13+ allows a remote attacker to DoS a host by making it go out-of-memory via icmp6 packets of type 130 or 131. We recommend upgrading past commit 2d3916f3189172d5c69d33065c3c21119fe539fc.
ModificadaMedia (5.5)1.3%—Linux KernelNetapp H300s FirmwareNetapp H700s FirmwareNetapp H300e Firmware+518/3/202217/6/2026
In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.
ModificadaAlta (8.8)2.2%—Linux KernelNetapp Active IQ Unified ManagerNetapp H500s FirmwareNetapp H700s Firmware+616/3/202217/6/2026
In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.
ModificadaMedia (5.5)0.35%—Linux KernelNetapp Active IQ Unified ManagerNetapp H500s FirmwareNetapp H700s Firmware+612/3/202217/6/2026
An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitive information from heap memory via crafted frame lengths from a device.
AnalizadaAlta (7.8)93%⚠ Explotación activa💥 ExploitLinux KernelFedoraproject FedoraRedhat Enterprise LinuxRedhat Enterprise Linux EUS+2510/3/202217/6/2026
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel and could thus contain stale values. An unprivileged local user could use this flaw to write to pages in the page cache backed by read…
ModificadaAlta (7.8)0.34%—Linux KernelFedoraproject FedoraDebian LinuxRedhat Virtualization Host+1910/3/202217/6/2026
A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linux kernel. This flaw allows a local attacker with a normal user privilege to obtain unauthorized memory write access. This flaw affects Linux kernel versions prior to 5.17-rc4.
AnalizadaAlta (7.1)0.62%—Linux KernelFedoraproject FedoraNetapp H300s FirmwareNetapp H500s Firmware+610/3/20221/9/2026
A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal information. The highest threat from this vulnerability is to system…
AnalizadaAlta (7.8)0.43%—Linux KernelFedoraproject FedoraNetapp H300s FirmwareNetapp H500s Firmware+76/3/20221/9/2026
st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTION buffer overflows because of untrusted length parameters.
ModificadaAlta (7.1)0.72%—Linux KernelFedoraproject FedoraNetapp H300s FirmwareNetapp H500s Firmware+94/3/202217/6/2026
An out-of-bounds (OOB) memory read flaw was found in the Qualcomm IPC router protocol in the Linux kernel. A missing sanity check allows a local attacker to gain access to out-of-bounds memory, leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to system…
ModificadaAlta (7)0.37%—Linux KernelDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux+83/3/202217/6/2026
A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local…
AnalizadaAlta (7.8)5.5%⚠ Explotación activa💥 ExploitNetapp H300s FirmwareNetapp H410c FirmwareNetapp H410s FirmwareNetapp H500s Firmware+233/3/202217/6/2026
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.
Orbitaley — Vulnerabilidades