Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2860▼ 165 respecto a la semana anterior
Críticas / altas1382▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
231 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 0.46% | — | Samsung Exynos 990 FirmwareSamsung Exynos 980 FirmwareSamsung Exynos 850 FirmwareSamsung Exynos 1080 Firmware+16 | 7/4/2026 | 17/6/2026 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. An out-of-bounds write occurs due to a mismatch between the TP-UDHI and UDL values when… | |
| Analizada | Alta (7.5) | 0.35% | — | Samsung Exynos 980 FirmwareSamsung Exynos 990 FirmwareSamsung Exynos 850 FirmwareSamsung Exynos 1080 Firmware+18 | 6/4/2026 | 20/7/2026 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem (Exynos 980, 850, 990, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 1680, 9110, W920, W930, W1000, Modem 5123, Modem 5300, Modem 5400, and Modem 5410). The absence of proper input validation leads to a Denial of Service. | |
| Analizada | Crítica (10) | 0.52% | — | Samsung Exynos 980 FirmwareSamsung Exynos 990 FirmwareSamsung Exynos 850 FirmwareSamsung Exynos 1080 Firmware+16 | 6/4/2026 | 24/7/2026 | An issue was discovered in SMS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. A Stack-based Buffer Overflow occurs while parsing SMS RP-DATA messages. | |
| Analizada | Crítica (9.1) | 0.31% | — | Samsung Exynos 990 FirmwareSamsung Exynos 980 FirmwareSamsung Exynos 850 FirmwareSamsung Exynos 1080 Firmware+16 | 6/4/2026 | 24/7/2026 | An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Incorrect handling of LTE MAC packets containing many MAC Control Elements (CEs)… | |
| Analizada | Alta (7.5) | 0.28% | — | Samsung Exynos 990 FirmwareSamsung Exynos 980 FirmwareSamsung Exynos 850 FirmwareSamsung Exynos 1080 Firmware+16 | 6/4/2026 | 20/7/2026 | An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Incorrect Handling of a DL NAS Transport packet leads to a Denial of Service. | |
| Analizada | Alta (7.5) | 0.28% | — | Samsung Exynos 990 FirmwareSamsung Exynos 980 FirmwareSamsung Exynos 850 FirmwareSamsung Exynos 1080 Firmware+16 | 6/4/2026 | 17/6/2026 | An issue was discovered in USIM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Improper handling of SIM card proactive commands leads to a Denial of Service. | |
| Analizada | Alta (7.5) | 0.28% | — | Samsung Exynos 990 FirmwareSamsung Exynos 980 FirmwareSamsung Exynos 850 FirmwareSamsung Exynos 1080 Firmware+16 | 6/4/2026 | 17/6/2026 | An issue was discovered in RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Improper memory initialization results in an illegal memory access, causing a… | |
| Analizada | Media (5.5) | 0.11% | — | Samsung Exynos 1280 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 FirmwareSamsung Exynos 1580 Firmware+3 | 3/3/2026 | 17/6/2026 | An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. Unvalidated VS4L_VERTEXIOC_BOOTUP input leads to a denial of service. | |
| Analizada | Media (5.5) | 0.15% | — | Samsung Exynos 1380 FirmwareSamsung Exynos 1480 FirmwareSamsung Exynos 1580 FirmwareSamsung Exynos 2400 Firmware+1 | 3/3/2026 | 17/6/2026 | An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference of npu_proto_drv.ast.thread_ref in set_cpu_affinity() causes a denial of service. | |
| Modificada | Alta (7.5) | 0.30% | — | Samsung Exynos 1280 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 FirmwareSamsung Exynos 1580 Firmware+3 | 3/3/2026 | 21/9/2026 | An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference of session->ncp_hdr_buf in __pilot_parsing_ncp() causes a denial of service. | |
| Modificada | Media (5.9) | 0.17% | — | Samsung Exynos 2500 FirmwareSamsung Exynos 1330 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 Firmware+2 | 5/1/2026 | 17/6/2026 | An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400, 1580, 2500. A race condition in the issimian device driver results in a double free, leading to a denial of service. | |
| Analizada | Media (6.2) | 0.13% | — | Samsung Exynos 1330 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 FirmwareSamsung Exynos 1580 Firmware+2 | 5/1/2026 | 17/6/2026 | An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400, 1580, 2500. An invalid kernel address dereference in the issimian device driver leads to a denial of service. | |
| Analizada | Media (5.1) | 0.10% | — | Samsung Exynos 1330 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 FirmwareSamsung Exynos 1580 Firmware+2 | 5/1/2026 | 17/6/2026 | An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400, 1580, 2500. A race condition in the issimian device driver results in an out-of-bounds access, leading to a denial of service. | |
| Analizada | Alta (7.1) | 0.13% | — | Samsung Exynos 1330 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 FirmwareSamsung Exynos 1580 Firmware+2 | 5/1/2026 | 17/6/2026 | An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400, 1580, and 2500. Improper validation of user-space input in the issimian device driver leads to information disclosure and a denial of service. | |
| Analizada | Media (5.3) | 0.29% | — | Samsung Exynos 1280 FirmwareSamsung Exynos 1330 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 Firmware+14 | 3/12/2025 | 17/6/2026 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. The function used to decode the SOR transparent container lacks bounds checking, which can cause a… | |
| Analizada | Media (6.5) | 0.22% | — | Samsung Exynos 1480 FirmwareSamsung Exynos 1580 FirmwareSamsung Exynos 2400 FirmwareSamsung Exynos 2500 Firmware | 4/11/2025 | 17/6/2026 | An issue was discovered in the GPU driver in Samsung Mobile Processor Exynos 1480, 2400, 1580, 2500. There is a use-after-free in the Xclipse GPU Driver. | |
| Analizada | Alta (7.5) | 0.36% | — | Samsung Exynos 1280 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 FirmwareSamsung Exynos 1580 Firmware+3 | 4/11/2025 | 17/6/2026 | An issue was discovered in the NPU driver in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500. There is a NULL Pointer Dereference of hdev in the __npu_vertex_bootup function. | |
| Analizada | Alta (7.5) | 0.36% | — | Samsung Exynos 1580 FirmwareSamsung Exynos 2400 FirmwareSamsung Exynos 2500 Firmware | 4/11/2025 | 17/6/2026 | An issue was discovered in Samsung Mobile Processor Exynos 2400, 1580, 2500. A race condition in the HTS driver results in an out-of-bounds write, leading to a denial of service. | |
| Analizada | Alta (7.5) | 0.36% | — | Samsung Exynos 1580 FirmwareSamsung Exynos 2400 FirmwareSamsung Exynos 2500 Firmware | 4/11/2025 | 17/6/2026 | An issue was discovered in Samsung Mobile Processor Exynos 2400, 1580, 2500. A race condition in the HTS driver results in out-of-bounds memory access, leading to a denial of service. | |
| Analizada | Media (5.3) | 0.31% | — | Samsung Exynos 1080 FirmwareSamsung Exynos 1280 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 Firmware+7 | 4/11/2025 | 17/6/2026 | An issue was discovered in VTS in Samsung Mobile Processor and Wearable Processor Exynos 1080, 1280, 2200, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000. A race condition in the VTS driver results in an out-of-bounds read, leading to an information leak. | |
| Analizada | Alta (7.5) | 0.41% | — | Samsung Exynos 1280 FirmwareSamsung Exynos 1330 FirmwareSamsung Exynos 1380 FirmwareSamsung Exynos 1480 Firmware+14 | 4/11/2025 | 17/6/2026 | An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 1580, 2500, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. The function used to send a multiple-payloads message (including an SMS message) lacks bounds… | |
| Modificada | Crítica (9.8) | 1.0% | — | Linksys E2500 Firmware | 21/7/2025 | 5/7/2026 | In Linksys E2500 3.0.04.002, the chroot_local_user option is enabled in the vsftpd configuration file. This could lead to unauthorized access to system files, privilege escalation, or use of the compromised server as a pivot point for internal network attacks. | |
| Analizada | Alta (8.8) | 0.27% | — | Gl-inet Mt6000 FirmwareGl-inet Mt3000 FirmwareGl-inet Mt2500 FirmwareGl-inet Axt1800 Firmware+17 | 24/10/2024 | 17/6/2026 | An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The upload interface allows the uploading of arbitrary files to the device. Once the device executes the files, it can lead to information leakage, enabling complete control. | |
| Analizada | Alta (8.8) | 0.67% | — | Gl-inet Mt2500 FirmwareGl-inet Axt1800 FirmwareGl-inet Ax1800 FirmwareGl-inet B3000 Firmware+17 | 24/10/2024 | 17/6/2026 | An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The params parameter in the call method of the /rpc endpoint is vulnerable to arbitrary directory traversal, which enables attackers to execute scripts under any path. | |
| Analizada | Alta (8) | 0.49% | — | Gl-inet Mt2500 FirmwareGl-inet Axt1800 FirmwareGl-inet Ax1800 FirmwareGl-inet B3000 Firmware+17 | 24/10/2024 | 17/6/2026 | An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The SID generated for a specific user is not tied to that user itself, which allows other users to potentially use it for authentication. Once an attacker bypasses the application's authentication… |