Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2997▼ 66 respecto a la semana anterior
Críticas / altas1460▲ 109 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)339▼ 171 respecto a la semana anterior
–

8 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)1.3%💥 PoCAMD Radeon SoftwareAMD Radeon RX Vega 56 FirmwareAMD Radeon RX Vega 64 FirmwareAMD Radeon PRO Vega 56 Firmware+114/11/202317/6/2026
Improper input validation in the AMD RadeonTM Graphics display driver may allow an attacker to corrupt the display potentially resulting in denial of service.
ModificadaMedia (6.7)0.16%—Intel Radeon RX Vega M FirmwareAMD Radeon SoftwareAMD Radeon RX Vega 56 FirmwareAMD Radeon RX Vega 64 Firmware+214/11/202317/6/2026
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch RadeonInstaller.exe without validating the file signature potentially leading to arbitrary code execution.
ModificadaMedia (6.7)0.16%—Intel Radeon RX Vega M FirmwareAMD Radeon SoftwareAMD Radeon RX Vega 56 FirmwareAMD Radeon RX Vega 64 Firmware+214/11/202317/6/2026
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature potentially leading to arbitrary code execution.
ModificadaMedia (5.5)0.21%—Intel Radeon RX Vega M FirmwareAMD Radeon SoftwareAMD Radeon RX Vega 56 FirmwareAMD Radeon RX Vega 64 Firmware+214/11/202317/6/2026
Insufficient bounds checking in the ASP (AMD Secure Processor) may allow an attacker to access memory outside the bounds of what is permissible to a TA (Trusted Application) resulting in a potential denial of service.
ModificadaMedia (5.5)0.26%—AMD Enterprise DriverAMD Radeon PRO SoftwareAMD Radeon SoftwareAMD Radeon RX Vega 56 Firmware+639/11/202217/6/2026
Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poison the contents of the process memory with attacker controlled data resulting in a loss of confidentiality.
ModificadaAlta (7.8)0.27%—AMD Enterprise DriverAMD Radeon PRO SoftwareAMD Radeon SoftwareAMD Radeon RX Vega 56 Firmware+999/11/202217/6/2026
Insufficient verification of missing size check in 'LoadModule' may lead to an out-of-bounds write potentially allowing an attacker with privileges to gain code execution of the OS/kernel by loading a malicious TA.
ModificadaAlta (7.8)0.18%—AMD Enterprise DriverAMD Radeon PRO SoftwareAMD Radeon SoftwareAMD Radeon RX Vega 56 Firmware+229/11/202217/6/2026
Insufficient verification of multiple header signatures while loading a Trusted Application (TA) may allow an attacker with privileges to gain code execution in that TA or the OS/kernel.
ModificadaAlta (7.8)0.26%—AMD Enterprise DriverAMD Radeon PRO SoftwareAMD Radeon SoftwareAMD Radeon RX Vega 56 Firmware+999/11/202217/6/2026
Improper parameters handling in AMD Secure Processor (ASP) drivers may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity.
Orbitaley — Vulnerabilidades