Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3062▲ 584 respecto a la semana anterior
Críticas / altas1459▲ 293 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▲ 175 respecto a la semana anterior
5 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7) | 0.14% | — | Libcap Project LibcapRedhat Openshift Container PlatformRedhat Enterprise Linux | 9/4/2026 | 2/10/2026 | A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be… | |
| Aplazada | Media (6.1) | 0.16% | — | LibcapAILinux PAM CAPAI | 18/2/2025 | 17/6/2026 | The PAM module pam_cap.so of libcap configuration supports group names starting with “@”, during actual parsing, configurations not starting with “@” are incorrectly recognized as group names. This may result in nonintended users being granted an inherited capability set, potentially leading to security risks.… | |
| Modificada | Alta (7.8) | 0.58% | — | Libcap Project LibcapRedhat Enterprise LinuxFedoraproject FedoraDebian Linux | 6/6/2023 | 17/6/2026 | A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB. | |
| Modificada | Baja (3.3) | 0.35% | — | Libcap Project LibcapRedhat Enterprise LinuxDebian LinuxFedoraproject Fedora | 6/6/2023 | 17/6/2026 | A vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicious actor to use cause __real_pthread_create() to return an error, which can exhaust the process memory. | |
| Modificada | Media (4.6) | 0.38% | — | Libcap | 8/2/2014 | 16/6/2026 | The capsh program in libcap before 2.22 does not change the current working directory when the --chroot option is specified, which allows local users to bypass the chroot restrictions via unspecified vectors. |