Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2636▼ 301 respecto a la semana anterior
Críticas / altas1352▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)58▼ 469 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.9)1.6%—ApparmorCanonical Ubuntu CoreCanonical Ubuntu Touch24/3/201717/6/2026
An issue was discovered in AppArmor before 2.12. Incorrect handling of unknown AppArmor profiles in AppArmor init scripts, upstart jobs, and/or systemd unit files allows an attacker to possibly have increased attack surfaces of processes that were intended to be confined by AppArmor. This is due to the common logic to…
ModificadaCrítica (9.8)3.5%—Canonical Ubuntu-core-launcher13/5/201617/6/2026
The setup_snappy_os_mounts function in the ubuntu-core-launcher package before 1.0.27.1 improperly determines the mount point of bind mounts when using snaps, which might allow remote attackers to obtain sensitive information or gain privileges via a snap with a name starting with "ubuntu-core."
ModificadaAlta (7.8)1.1%—Canonical Ubuntu CoreCanonical Ubuntu LinuxCanonical Ubuntu TouchLinux Kernel2/5/201617/6/2026
The overlayfs implementation in the Linux kernel through 4.5.2 does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an overlayfs filesystem on top of a FUSE filesystem, and then executing a crafted setuid program.
ModificadaAlta (7.8)0.92%—Linux KernelCanonical Ubuntu CoreCanonical Ubuntu LinuxCanonical Ubuntu Touch2/5/201617/6/2026
The overlayfs implementation in the Linux kernel through 4.5.2 does not properly maintain POSIX ACL xattr data, which allows local users to gain privileges by leveraging a group-writable setgid directory.
ModificadaAlta (7.8)0.60%—Debian LinuxOpenbsd OpensshCanonical Ubuntu CoreCanonical Ubuntu Linux+11/5/201617/6/2026
The do_setup_env function in session.c in sshd in OpenSSH through 7.2p2, when the UseLogin feature is enabled and PAM is configured to read .pam_environment files in user home directories, allows local users to gain privileges by triggering a crafted environment for the /bin/login program, as demonstrated by an…