Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2770▲ 14 respecto a la semana anterior
Críticas / altas1475▲ 292 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)68▼ 447 respecto a la semana anterior
–

14 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.8)64%—Sudo Project SudoFedoraproject FedoraDebian LinuxOpensuse Leap+1117/10/201917/6/2026
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For example, this allows bypass of !root configuration, and USER= logging, for a "sudo -u…
ModificadaMedia (5.5)0.42%—Linux KernelNetapp Element Software Management Node4/4/201917/6/2026
The hidma_chan_stats function in drivers/dma/qcom/hidma_dbg.c in the Linux kernel 4.14.90 allows local users to obtain sensitive address information by reading "callback=" lines in a debugfs file.
ModificadaMedia (5.5)0.68%—Linux KernelFedoraproject FedoraOpensuse LeapDebian Linux+1421/3/201917/6/2026
The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak.
ModificadaAlta (7.8)0.80%—Linux KernelOpensuse LeapFedoraproject FedoraDebian Linux+1121/3/201917/6/2026
The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free.
ModificadaMedia (4.6)0.95%—Linux KernelDebian LinuxNetapp Active IQ Performance Analytics ServicesNetapp Element Software Management Node21/3/201917/6/2026
The function hso_get_config_data in drivers/net/usb/hso.c in the Linux kernel through 4.19.8 reads if_num from the USB device (as a u8) and uses it to index a small array, resulting in an object out-of-bounds (OOB) read that potentially allows arbitrary read in the kernel address space.
ModificadaMedia (5.5)1.2%—GNU BinutilsNetapp Element Software Management24/2/201917/6/2026
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in elf_read_notes in elf.c.
ModificadaAlta (7.8)1.6%—GNU BinutilsNetapp Element Software ManagementCanonical Ubuntu LinuxF5 Traffix Signaling Delivery Controller24/2/201917/6/2026
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based buffer over-read in d_expression_1 in cp-demangle.c after many recursive calls.
ModificadaMedia (5.9)17%—ISC BindRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Server AUS+616/1/201917/6/2026
Under some conditions when using both DNS64 and RPZ to rewrite query responses, query processing can resume in an inconsistent state leading to either an INSIST assertion failure or an attempt to read through a NULL pointer. Affects BIND 9.8.8, 9.9.3-S1 -> 9.9.9-S7, 9.9.3 -> 9.9.9-P5, 9.9.10b1, 9.10.0 -> 9.10.4-P5,…
ModificadaMedia (5.5)0.77%—Linux KernelNetapp Active IQ Performance Analytics ServicesNetapp Element Software Management Node7/1/201917/6/2026
The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information. (Fixing this affects the output of the fincore program.) Limited remote exploitation…
ModificadaAlta (8.2)0.56%—Intel Converged Security Management Engine FirmwareNetapp Element Software Management Node10/7/201817/6/2026
Logic bug in Intel Converged Security Management Engine 11.x may allow an attacker to execute arbitrary code via local privileged access.
ModificadaCrítica (9.8)15%—Eclipse JettyDebian LinuxNetapp E-series Santricity ManagementNetapp E-series Santricity OS Controller+1326/6/201817/6/2026
In Eclipse Jetty, versions 9.2.x and older, 9.3.x (all configurations), and 9.4.x (non-default configuration with RFC2616 compliance enabled), transfer-encoding chunks are handled poorly. The chunk length parsing was vulnerable to an integer overflow. Thus a large chunk size could be interpreted as a smaller chunk…
ModificadaAlta (7.8)0.88%—GNU GlibcRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+618/5/201817/6/2026
An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper.
ModificadaCrítica (9.8)7.1%—GNU GlibcRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+518/5/201817/6/2026
stdlib/canonicalize.c in the GNU C Library (aka glibc or libc6) 2.27 and earlier, when processing very long pathname arguments to the realpath function, could encounter an integer overflow on 32-bit architectures, leading to a stack-based buffer overflow and, potentially, arbitrary code execution.
ModificadaCrítica (9.8)4.7%—GNU GlibcRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+111/2/201817/6/2026
An integer overflow in the implementation of the posix_memalign in memalign functions in the GNU C Library (aka glibc or libc6) 2.26 and earlier could cause these functions to return a pointer to a heap area that is too small, potentially leading to heap corruption.