Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2635▼ 211 respecto a la semana anterior
Críticas / altas1376▲ 147 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)81▼ 449 respecto a la semana anterior
13 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (5.6) | 0.13% | — | X.org LibxiAI | 28/9/2026 | 30/9/2026 | An out-of-bounds read in libXi's XI2 enter/leave/focus cookie conversion in libXi before 1.8.4 could be used by malicious X server to crash an attached X client. | |
| Pendiente de análisis | Media (6.5) | 0.20% | — | X.org LibxiAI | 24/9/2026 | 24/9/2026 | An out-of-bounds read in libXi's XListInputDevices() class parsing in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client. | |
| Pendiente de análisis | Media (6.5) | 0.20% | — | X.org LibxiAI | 24/9/2026 | 24/9/2026 | An out-of-bounds read in libXi's XListInputDevices() in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client. | |
| Pendiente de análisis | Media (6.5) | 0.24% | — | X.org LibxiAI | 24/9/2026 | 24/9/2026 | An out-of-bounds read in libXi's XI2 XIQueryDevice reply parsing in libXi before 1.8.4 can be used by a malicious X server to crash an attached X client. | |
| Pendiente de análisis | Alta (7.4) | 0.25% | — | X.org LibxiAI | 24/9/2026 | 24/9/2026 | An out-of-bounds read in libXi's XI2 class parser in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client. | |
| Pendiente de análisis | Media (6.5) | 0.25% | — | X.org LibxiAI | 24/9/2026 | 24/9/2026 | An out-of-bounds read in libXi's XI2 class parsing via size_classes() and copy_classes() in libXi before 1.8.4 could be used by malicous servers to crash the X client. | |
| Pendiente de análisis | Media (6.5) | 0.24% | — | X.org LibxiAI | 24/9/2026 | 24/9/2026 | An out-of-bounds read in libXi's XQueryDeviceState() in libXi before 1.8.4 could be used by a | |
| Modificada | Alta (7.5) | 3.0% | — | X.org LibxiFedoraproject Fedora | 13/12/2016 | 17/6/2026 | X.org libXi before 1.7.7 allows remote X servers to cause a denial of service (infinite loop) via vectors involving length fields. | |
| Modificada | Alta (7.5) | 3.0% | — | Fedoraproject FedoraX.org Libxi | 13/12/2016 | 17/6/2026 | Multiple integer overflows in X.org libXi before 1.7.7 allow remote X servers to cause a denial of service (out-of-bounds memory access or infinite loop) via vectors involving length fields. | |
| Modificada | Media (6.8) | 2.8% | — | X.org Libxi | 15/6/2013 | 16/6/2026 | Multiple buffer overflows in X.org libXi 1.7.1 and earlier allow X servers to cause a denial of service (crash) and possibly execute arbitrary code via crafted length or index values to the (1) XGetDeviceButtonMapping, (2) XIPassiveGrabDevice, and (3) XQueryDeviceState functions. | |
| Modificada | Media (6.8) | 1.9% | — | X.org Libxi | 15/6/2013 | 16/6/2026 | X.org libXi 1.7.1 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to an unexpected sign extension in the XListInputDevices function. | |
| Modificada | Media (6.8) | 1.8% | — | Libxinerama | 15/6/2013 | 16/6/2026 | Integer overflow in X.org libXinerama 1.1.2 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the XineramaQueryScreens function. | |
| Modificada | Media (6.8) | 1.8% | — | X.org Libxi | 15/6/2013 | 16/6/2026 | Multiple integer overflows in X.org libXi 1.7.1 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XGetDeviceControl, (2) XGetFeedbackControl, (3) XGetDeviceDontPropagateList, (4) XGetDeviceMotionEvents, (5) XIGetProperty, (6)… |