Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2783▲ 27 respecto a la semana anterior
Críticas / altas1477▲ 294 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)68▼ 441 respecto a la semana anterior
–

8 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (7.3)0.18%—AMD Secure ProcessorAIAMD Secure OSAI13/8/202417/6/2026
Insufficient checking of memory buffer in AMD Secure Processor (ASP) Secure OS may allow an attacker with a malicious trusted application to read/write to the ASP Secure OS kernel virtual address space, potentially resulting in privilege escalation.
AplazadaMedia (5.2)0.15%—AMD ASP Secure OSAI13/8/202417/6/2026
Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may allow a privileged attacker with access to AMD signing keys to c006Frrupt the return address, causing a stack-based buffer overrun, potentially leading to a denial of service.
ModificadaMedia (5)3.3%—Debian LinuxHP Secure OSRedhat Linux4/11/200216/6/2026
Memory leak in ypdb_open in yp_db.c for ypserv before 2.5 in the NIS package 3.9 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of requests for a map that does not exist.
ModificadaAlta (7.5)8.0%—HP Secure OSMandrakesoft Mandrake LinuxRedhat Linux28/10/200216/6/2026
dvips converter for Postscript files in the tetex package calls the system() function insecurely, which allows remote attackers to execute arbitrary commands via certain print jobs, possibly involving fonts.
ModificadaMedia (5)6.9%—Caldera Openlinux ServerCaldera Openlinux WorkstationRedhat Pre-execution EnvironmentHP Secure OS4/10/200216/6/2026
Preboot eXecution Environment (PXE) server allows remote attackers to cause a denial of service (crash) via certain DHCP packets from Voice-Over-IP (VOIP) phones.
ModificadaMedia (6.2)0.53%—Mandrakesoft Mandrake Single Network FirewallHP Secure OSMandrakesoft Mandrake LinuxMandrakesoft Mandrake Linux Corporate Server+112/8/200216/6/2026
setpwnam.c in the util-linux package, as included in Red Hat Linux 7.3 and earlier, and other operating systems, does not properly lock a temporary file when modifying /etc/passwd, which may allow local users to gain privileges via a complex race condition that uses an open file descriptor in utility programs such as…
ModificadaMedia (4.6)0.55%—HP Secure OS31/12/200116/6/2026
Unknown vulnerability in the file system protection subsystem in HP Secure OS Software for Linux 1.0 allows additional user privileges on some files beyond what is specified in the file system protection rules, which allows local users to conduct unauthorized operations on restricted files.
ModificadaAlta (7.5)4.9%—Apache TomcatHP Secure OS31/12/200116/6/2026
Unknown vulnerability in Tomcat 3.2.1 running on HP Secure OS for Linux 1.0 allows attackers to access servlet resources. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this issue is already covered by other CVE identifiers.