Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
–

199 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (9)5.2%—X.org X116/4/200716/6/2026
Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.
ModificadaAlta (8.5)5.6%—Ubuntu LinuxX.org LibxfontXfree86 Project X11r6Rpath Linux+56/4/200716/6/2026
Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.
ModificadaBaja (3.8)1.5%—Mandrakesoft Mandrake Multi Network FirewallX.org LibxfontRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+86/4/200716/6/2026
Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary code via a long first line in the fonts.dir file, which results in a heap overflow.
ModificadaAlta (9.3)4.6%—X.org Libx11Debian LinuxCanonical Ubuntu Linux24/3/200716/6/2026
Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage function in xwd.c for ImageMagick, allow user-assisted remote attackers to cause a denial of service (crash) or obtain sensitive information via crafted images with large or negative values that…
ModificadaMedia (6.4)2.2%—Indirmax.org Ozzywork Galeri12/2/200716/6/2026
Unrestricted file upload vulnerability in add.asp in OzzyWork Gallery, possibly 2.0 and earlier, allows remote attackers to upload and execute arbitrary ASP files by removing the client-side security checks.
ModificadaAlta (10)3.5%—X.orgXfree86 Project Xfree86 X Server31/12/200616/6/2026
Integer overflow in the ProcDbeGetVisualInfo function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of unspecified data structures.
ModificadaMedia (6.6)0.39%—X.orgXfree86 Project Xfree8631/12/200616/6/2026
Integer overflow in the ProcDbeSwapBuffers function in the DBE extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of unspecified data structures.
ModificadaMedia (6.6)0.39%—X.orgXfree86 Project Xfree8631/12/200616/6/2026
Integer overflow in the ProcRenderAddGlyphs function in the Render extension for X.Org 6.8.2, 6.9.0, 7.0, and 7.1, and XFree86 X server, allows local users to execute arbitrary code via a crafted X protocol request that triggers memory corruption during processing of glyph management data structures.
ModificadaBaja (2.1)0.36%—X.org Libx113/11/200616/6/2026
The Xinput module (modules/im/ximcp/imLcIm.c) in X.Org libX11 1.0.2 and 1.0.3 opens a file for reading twice using the same file descriptor, which causes a file descriptor leak that allows local users to read files specified by the XCOMPOSEFILE environment variable via the duplicate file descriptor.
ModificadaBaja (2.6)0.30%—X.org XDMNetbsdSUN SolarisSunos10/10/200616/6/2026
The Xsession script, as used by X Display Manager (xdm) in NetBSD before 20060212, X.Org before 20060317, and Solaris 8 through 10 before 20061006, allows local users to overwrite arbitrary files, or read another user's Xsession errors file, via a symlink attack on a /tmp/xses-$USER file.
ModificadaAlta (7.2)0.59%—X.orgXfree86 Project Xfree86 X13/9/200616/6/2026
Integer overflow in the CIDAFM function in X.Org 6.8.2 and XFree86 X server allows local users to execute arbitrary code via crafted Adobe Font Metrics (AFM) files with a modified number of character metrics (StartCharMetrics), which leads to a heap-based buffer overflow.
ModificadaAlta (7.2)0.52%—X.orgXfree86 Project Xfree86 X13/9/200616/6/2026
Integer overflow in the scan_cidfont function in X.Org 6.8.2 and XFree86 X server allows local users to execute arbitrary code via crafted (1) CMap and (2) CIDFont font data with modified item counts in the (a) begincodespacerange, (b) cidrange, and (c) notdefrange sections.
ModificadaAlta (7.2)0.45%—X.org Emu-linux-x87-xlibsX.org X11r6X.org X11r7X.org XDM+530/8/200616/6/2026
X.Org and XFree86, including libX11, xdm, xf86dga, xinit, xload, xtrans, and xterm, does not check the return values for setuid and seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail, such as by exceeding a ulimit.
ModificadaBaja (2.1)0.51%—X.org X11r62/5/200616/6/2026
Buffer overflow in the X render (Xrender) extension in X.org X server 6.8.0 up to allows attackers to cause a denial of service (crash), as demonstrated by the (1) XRenderCompositeTriStrip and (2) XRenderCompositeTriFan requests in the rendertest from XCB xcb/xcb-demo, which leads to an incorrect memory allocation due…
ModificadaAlta (7.2)1.1%💥 ExploitX.org X11r6X.org X11r7Mandrakesoft Mandrake LinuxRedhat Fedora Core+221/3/200616/6/2026
X.Org server (xorg-server) 1.0.0 and later, X11R6.9.0, and X11R7.0 inadvertently treats the address of the geteuid function as if it is the return value of a call to geteuid, which allows local users to bypass intended restrictions and (1) execute arbitrary code via the -modulepath command line option or (2) overwrite…
ModificadaMedia (5)1.1%—X.org13/1/200616/6/2026
The XClientMessageEvent struct used in certain components of X.Org 6.8.2 and earlier, possibly including (1) the X server and (2) Xlib, uses a "long" specifier for elements of the l array, which results in inconsistent sizes in the struct on 32-bit versus 64-bit platforms, and might allow attackers to cause a denial…
ModificadaAlta (7.5)4.5%—LesstifSGI PropackX.org X11r6Xfree86 Project X11r6+72/3/200516/6/2026
scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.
ModificadaAlta (10)8.7%—LesstifX.org X11r6Xfree86 Project X11r6Gentoo Linux+210/1/200516/6/2026
Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple integer overflows, (2) out-of-bounds memory accesses, (3) directory traversal, (4) shell metacharacter, (5) endless loops, and (6) memory leaks, which could allow remote attackers to obtain sensitive…
ModificadaAlta (7.5)7.2%—X.org X11r6Xfree86 Project X11r6OpenbsdSuse Linux20/10/200416/6/2026
Multiple integer overflows in (1) the xpmParseColors function in parse.c, (2) XpmCreateImageFromXpmImage, (3) CreateXImage, (4) ParsePixels, and (5) ParseAndPutPixels for libXpm before 6.8.1 may allow remote attackers to execute arbitrary code via a malformed XPM image file.
ModificadaAlta (7.5)8.1%—X.org X11r6Xfree86 Project X11r6OpenbsdSuse Linux20/10/200416/6/2026
Multiple stack-based buffer overflows in (1) xpmParseColors in parse.c, (2) ParseAndPutPixels in create.c, and (3) ParsePixels in parse.c for libXpm before 6.8.1 allow remote attackers to execute arbitrary code via a malformed XPM image file.
ModificadaAlta (7.5)2.5%—X.org X11r6Xfree86 Project XDMGentoo Linux18/8/200416/6/2026
XDM in XFree86 opens a chooserFd TCP socket even when DisplayManager.requestPort is 0, which could allow remote attackers to connect to the port, in violation of the intended restrictions.
ModificadaMedia (5)3.5%—X.org X Display ManagerAIOracle SolarisAI10/8/200416/6/2026
X Display Manager (XDM) on Solaris 8 allows remote attackers to cause a denial of service (XDM crash) via an invalid X Display Manager Control Protocol (XDMCP) request.
ModificadaMedia (6.2)0.33%—X.org X1119/9/199716/6/2026
Race condition in xterm allows local users to modify arbitrary files via the logging option.
ModificadaAlta (10)21%💥 ExploitX.org X111/7/199716/6/2026
An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.