Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▲ 93 respecto a la semana anterior
Críticas / altas1464▲ 354 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)93▼ 418 respecto a la semana anterior
1559 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (6.4) | — | — | GNU GrubAI | 2/10/2026 | 2/10/2026 | A local attacker with control over GRUB's configuration can bypass lockdown restrictions when booting with Secure Boot and load an unsigned GRUB module, while GRUB continues to report lockdown is enabled. The vulnerability is caused by insufficient validation of the MMIO base address passed to the GRUB serial command.… | |
| Pendiente de análisis | Baja (3.7) | 0.29% | — | GNU GlibcAI | 28/9/2026 | 29/9/2026 | The strncasecmp function in the GNU C Library 2.24 and later optimized for the Power8 architecture may read one byte beyond the input size limit, which may crash a program when that byte is not readable. This condition may happen when the input strings to the strncasecmp function are attacker controlled in an… | |
| Pendiente de análisis | Alta (7.3) | 0.14% | — | GNU LibextractorAI | 25/9/2026 | 30/9/2026 | GNU libextractor before 1.16 loads plugins from an untrusted search path specified by the LIBEXTRACTOR_PREFIX environment variable without proper privilege checks. A local attacker can exploit this by setting LIBEXTRACTOR_PREFIX to a directory containing a malicious plugin that executes arbitrary code with elevated… | |
| Pendiente de análisis | Media (5.5) | 0.12% | — | GnumericAI | 25/9/2026 | 30/9/2026 | A heap use-after-free flaw was found in Gnumeric. When a user opens a crafted Gnumeric workbook containing a malformed SheetObjectComponent element, the XML parser can dereference a freed sheet-object component, causing Gnumeric to crash. | |
| Pendiente de análisis | Alta (7.8) | 0.17% | — | GNU EmacsAI | 23/9/2026 | 24/9/2026 | A code execution flaw was found in Emacs, affecting versions prior to 31.2. The Flymake mode using language backends other than Lisp would execute arbitrary code from the edited file while performing syntax checking. Viewing or editing untrusted files using Emacs could lead to arbitrary code execution with the… | |
| Pendiente de análisis | Alta (7.5) | 0.15% | — | GNU EmacsAI | 22/9/2026 | 24/9/2026 | GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it. | |
| Aplazada | Alta (7.8) | 0.12% | — | GNU WgetAI | 22/9/2026 | 23/9/2026 | A local cross-user code execution vulnerability exists in GNU wget (Windows builds from eternallybored.org) due to a hardcoded configuration file path (C:\msys64) that is writable by unprivileged users, allowing for arbitrary code execution via the use_askpass directive, potentially allowing local privilege escalation. | |
| Pendiente de análisis | Baja (3.6) | 0.13% | — | GNU GlibcAI | 22/9/2026 | 22/9/2026 | A stack-based buffer overflow in the dynamic loader (ld.so) of the GNU C Library (glibc) versions 2.14 through 2.44 allows a local attacker to crash or corrupt the memory of setuid/setgid (AT_SECURE) programs. When such a program's DT_RPATH or DT_RUNPATH begins with $ORIGIN and is followed by NUL or '/' the loader… | |
| Pendiente de análisis | Media (6.3) | 0.12% | — | GNU GlibcAI | 22/9/2026 | 23/9/2026 | A time-of-check to time-of-use (TOCTOU) race condition in the dynamic loader (ld.so) of the GNU C Library (glibc) versions 2.14 through 2.44 allows a local attacker to escalate privileges. When expanding $ORIGIN in DT_RPATH for setuid/setgid (AT_SECURE) programs, glibc validates the lexically normalized search path… | |
| Pendiente de análisis | Alta (7.7) | 0.36% | — | GNU Libstdc++AI | 22/9/2026 | 22/9/2026 | A flaw was found in libstdc++. An integer overflow can occur when processing large inputs to the aligned operator new in the C++ library. This vulnerability could lead to an undersized memory allocation, potentially causing memory corruption or application instability. | |
| Aplazada | Alta (8.8) | 0.66% | — | GhostscriptAIGnupgAISyslifters SysreptorAI | 18/9/2026 | 22/9/2026 | SysReptor is a fully customizable pentest reporting platform. Prior to 2026.61, authenticated users of SysReptor Professional can upload image files whose formats cause image processing to invoke Ghostscript, allowing embedded PostScript to operate in the shared temporary directory. An attacker can combine that… | |
| Pendiente de análisis | Media (5.3) | 0.34% | — | GNU GlibcAI | 17/9/2026 | 18/9/2026 | Initializing the DNS stub resolver from an /etc/resolv.conf file, or a LOCALDOMAIN environment variable, whose search list contains a domain of roughly 200 characters or more in the GNU C Library version 2.26 to 2.44 results in an assertion failure which aborts the process. The resolver truncates the search list when… | |
| Pendiente de análisis | Media (5.9) | 0.41% | — | GNU C LibraryAI | 15/9/2026 | 18/9/2026 | Converting crafted EUC_JISX0213 input to UCS-4 or the internal wide character encoding, for example with iconv, in the GNU C Library version 2.3 to 2.44 may result in the converter making no progress, causing the calling application to hang. Some EUC_JISX0213 sequences decode to two code points. If the output buffer… | |
| Pendiente de análisis | Media (5.9) | 0.41% | — | GNU C LibraryAI | 15/9/2026 | 18/9/2026 | Converting crafted SHIFT_JISX0213 input to UCS-4 or the internal wide character encoding, for example with iconv, in the GNU C Library version 2.3 to 2.44 may result in the converter making no progress, causing the calling application to hang. Some SHIFT_JISX0213 sequences decode to two code points. If the output… | |
| Analizada | Baja (1.9) | 0.18% | — | GNU Binutils | 15/9/2026 | 17/9/2026 | A vulnerability was detected in GNU Binutils 2.47. Affected by this vulnerability is the function elf_x86_allocate_dynrelocs of the file bfd/elfxx-x86.c of the component Dynamic Relocation Allocation. The manipulation results in null pointer dereference. The attack requires a local approach. The exploit is now public… | |
| Analizada | Baja (1.9) | 0.18% | — | GNU Binutils | 15/9/2026 | 16/9/2026 | A security vulnerability has been detected in GNU Binutils 2.47. Affected is the function elf_x86_64_common_section_index of the file bfd/elf64-x86-64.c of the component ELF Section Handler. The manipulation leads to null pointer dereference. The attack needs to be performed locally. The exploit has been disclosed… | |
| Analizada | Baja (1.9) | 0.17% | — | GNU Binutils | 15/9/2026 | 16/9/2026 | A weakness has been identified in GNU Binutils 2.47. This impacts the function elf_link_add_object_symbols of the file bfd/elflink.c. Executing a manipulation can lead to null pointer dereference. The attack needs to be launched locally. The exploit has been made available to the public and could be used for attacks.… | |
| Analizada | Baja (1.9) | 0.17% | — | GNU Binutils | 15/9/2026 | 16/9/2026 | A security flaw has been discovered in GNU Binutils 2.47. This affects the function _bfd_elf_eh_frame_section_offset of the file bfd/elf-eh-frame.c of the component Eh Frame Handler. Performing a manipulation results in null pointer dereference. The attack must be initiated from a local position. The exploit has been… | |
| Analizada | Baja (1.9) | 0.17% | — | GNU Binutils | 14/9/2026 | 16/9/2026 | A vulnerability was detected in GNU Binutils 2.47. The affected element is the function _bfd_elf_strtab_delref of the file bfd/elf-strtab.c of the component ELF String Table. The manipulation results in memory corruption. The attack requires a local approach. The exploit is now public and may be used. The project was… | |
| Analizada | Baja (1.9) | 0.17% | — | GNU Binutils | 14/9/2026 | 16/9/2026 | A security vulnerability has been detected in GNU Binutils 2.47. Impacted is the function _bfd_write_merged_section of the file bfd/merge.c of the component Section Merge. The manipulation leads to null pointer dereference. The attack needs to be performed locally. The exploit has been disclosed publicly and may be… | |
| Analizada | Baja (1.9) | 0.17% | — | GNU Binutils | 14/9/2026 | 16/9/2026 | A weakness has been identified in GNU Binutils 2.47. This issue affects the function bfd_elf_set_group_contents of the file bfd/elf.c of the component SHT_GROUP Section Handler. Executing a manipulation can lead to null pointer dereference. The attack needs to be launched locally. The exploit has been made available… | |
| Pendiente de análisis | Alta (8.7) | 0.74% | — | GNU LibextractorAI | 14/9/2026 | 24/9/2026 | GNU libextractor before 1.15 contains a stack-based buffer overflow vulnerability in the process_star_office function that sizes a variable-length stack array from attacker-controlled OLE2 stream data. Attackers can craft malicious StarOffice documents that allocate up to 4 MB on the stack, causing stack overflow and… | |
| Analizada | Baja (1.9) | 0.19% | — | GNU Binutils | 14/9/2026 | 21/9/2026 | A security flaw has been discovered in GNU Binutils 2.47. This vulnerability affects the function elf_orphan_compatible of the file ld/ldelf.c of the component ELF Orphan Section Handler. Performing a manipulation results in null pointer dereference. The attack must be initiated from a local position. The exploit has… | |
| Pendiente de análisis | Media (5.6) | 0.23% | — | GNU C LibraryAI | 14/9/2026 | 18/9/2026 | Calling tdelete on a sufficiently deep tree in the GNU C Library version 2.1 to 2.44 may write one pointer past the end of an alloca-allocated array on the stack, which may crash the application. The tdelete implementation keeps an explicit stack of parent nodes for rebalancing, which is grown as needed while… | |
| Pendiente de análisis | Alta (7.7) | 0.30% | — | GNU C LibraryAI | 14/9/2026 | 18/9/2026 | Calling strfmon and strfmon_l in the GNU C Library version 2.38 to 2.44 can write past the end of the caller-supplied output buffer when a conversion uses right-justified width padding. Exploitation requires an application code path that calls strfmon or strfmon_l with right-justified width padding into a destination… |