Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2839▼ 348 respecto a la semana anterior
Críticas / altas1378▼ 43 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
598 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.38% | — | GNU Binutils | 14/9/2023 | 17/6/2026 | A flaw was found in Binutils. The use of an uninitialized field in the struct module *module may lead to application crash and local denial of service. | |
| Modificada | Alta (7.1) | 0.38% | — | GNU Binutils | 14/9/2023 | 17/6/2026 | An out-of-bounds read flaw was found in the parse_module function in bfd/vms-alpha.c in Binutils. | |
| Modificada | Media (5.5) | 0.64% | — | GNU BinutilsNetapp Ontap Select Deploy Administration UtilityFedoraproject Fedora | 22/8/2023 | 17/6/2026 | GNU Binutils before 2.40 was discovered to contain a memory leak vulnerability var the function find_abstract_instance in dwarf2.c. | |
| Modificada | Media (5.5) | 0.61% | — | GNU BinutilsFedoraproject FedoraNetapp Ontap Select Deploy Administration Utility | 22/8/2023 | 17/6/2026 | GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfd_dwarf2_find_nearest_line_with_alt at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack. | |
| Modificada | Media (5.5) | 0.46% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function load_separate_debug_files at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack. | |
| Modificada | Alta (7.8) | 0.42% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function compare_symbols. | |
| Modificada | Alta (7.8) | 0.45% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function bfd_mach_o_get_synthetic_symtab in match-o.c. | |
| Modificada | Alta (7.8) | 0.43% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered in Binutils addr2line before 2.39.3, function parse_module contains multiple out of bound reads which may cause a denial of service or other unspecified impacts. | |
| Modificada | Media (5.5) | 0.39% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered function parse_stab_struct_fields in stabs.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to memory leaks. | |
| Modificada | Media (5.5) | 0.39% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered function pr_function_type in prdbg.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to memory leaks. | |
| Modificada | Media (5.5) | 0.39% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered function make_tempdir, and make_tempname in bucomm.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to memory leaks. | |
| Modificada | Media (5.5) | 0.40% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered function stab_demangle_v3_arg in stabs.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to memory leaks. | |
| Modificada | Alta (7.8) | 0.51% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | Heap buffer overflow vulnerability in binutils readelf before 2.40 via function display_debug_section in file readelf.c. | |
| Modificada | Alta (7.8) | 0.49% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | Heap buffer overflow vulnerability in binutils readelf before 2.40 via function find_section_in_set in file readelf.c. | |
| Modificada | Media (5.5) | 0.34% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | Null pointer dereference vulnerability in Binutils readelf 2.38.50 via function read_and_display_attr_value in file dwarf.c. | |
| Modificada | Media (5.5) | 0.39% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered in Binutils readelf 2.38.50, reachable assertion failure in function display_debug_names allows attackers to cause a denial of service. | |
| Modificada | Alta (7.5) | 0.82% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | Heap-based Buffer Overflow in function bfd_getl32 in Binutils objdump 3.37. | |
| Modificada | Alta (7.5) | 0.77% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c) which could allow attackers to make an information leak. | |
| Modificada | Media (5.5) | 0.33% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered in GNU Binutils 2.34. It is a memory leak when process microblaze-dis.c. This one will consume memory on each insn disassembled. | |
| Modificada | Media (5.5) | 0.24% | — | Elfutils Project Elfutils | 22/8/2023 | 17/6/2026 | The libcpu component which is used by libasm of elfutils version 0.177 (git 47780c9e), suffers from denial-of-service vulnerability caused by application crashes due to out-of-bounds write (CWE-787), off-by-one error (CWE-193) and reachable assertion (CWE-617); to exploit the vulnerability, the attackers need to craft… | |
| Modificada | Alta (8.8) | 0.75% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | An issue was discovered in binutils libbfd.c 2.36 relating to the auxiliary symbol data allows attackers to read or write to system memory or cause a denial of service. | |
| Modificada | Media (5.5) | 0.30% | — | GNU Binutils | 22/8/2023 | 17/6/2026 | A memory consumption issue in get_data function in binutils/nm.c in GNU nm before 2.34 allows attackers to cause a denial of service via crafted command. | |
| Modificada | Alta (7.8) | 0.41% | — | GNU Inetutils | 14/8/2023 | 17/6/2026 | GNU inetutils before 2.5 may allow privilege escalation because of unchecked return values of set*id() family functions in ftpd, rcp, rlogin, rsh, rshd, and uucpd. This is, for example, relevant if the setuid system call fails when a process is trying to drop privileges before letting an ordinary user control the… | |
| Modificada | Media (5.5) | 0.29% | — | Elfutils Project Elfutils | 18/7/2023 | 17/6/2026 | In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infinite loop) via crafted file. | |
| Modificada | Media (6.5) | 0.75% | — | GNU Binutils | 18/7/2023 | 17/6/2026 | An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.36. It is a stack-overflow issue in demangle_type in rust-demangle.c. |