Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2860▼ 165 respecto a la semana anterior
Críticas / altas1382▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.2) | 0.67% | — | Xiph Vorbis-toolsAI | 15/5/2026 | 15/7/2026 | A buffer underflow vulnerability has been identified in the ogg123 utility from the vorbis-tools 1.4.3 package in function remotethread in remote.c. This vulnerability occurs in the remote control functionality when processing malformed input, leading to a stack buffer underflow that can cause application crashes and… | |
| Modificada | Alta (7.8) | 0.44% | — | Xiph Vorbis-tools | 2/10/2023 | 17/6/2026 | Buffer Overflow vulnerability in Vorbis-tools v.1.4.2 allows a local attacker to execute arbitrary code and cause a denial of service during the conversion of wav files to ogg files. | |
| Modificada | Media (5.5) | 3.8% | — | Xiph Vorbis-tools | 31/7/2017 | 17/6/2026 | The wav_open function in oggenc/audio.c in Xiph.Org vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (memory allocation error) via a crafted wav file. | |
| Modificada | Media (4.3) | 4.4% | — | Xiph Vorbis-tools | 21/9/2015 | 17/6/2026 | Buffer overflow in the aiff_open function in oggenc/audio.c in vorbis-tools 1.4.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted AIFF file. | |
| Modificada | Media (5) | 3.2% | — | Xiph Vorbis-toolsOpensuse | 23/1/2015 | 17/6/2026 | oggenc/oggenc.c in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted raw file. | |
| Modificada | Media (5) | 3.6% | — | Xiph Vorbis-toolsFedoraproject FedoraOpensuse | 23/1/2015 | 17/6/2026 | Integer overflow in oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (crash) via a crafted number of channels in a WAV file, which triggers an out-of-bounds memory access. | |
| Modificada | Media (5) | 3.6% | — | Fedoraproject FedoraOpensuseXiph Vorbis-tools | 23/1/2015 | 17/6/2026 | oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero. |