Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2783▲ 27 respecto a la semana anterior
Críticas / altas1477▲ 294 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)68▼ 441 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.3) | 0.18% | — | AMD Secure ProcessorAIAMD Secure OSAI | 13/8/2024 | 17/6/2026 | Insufficient checking of memory buffer in AMD Secure Processor (ASP) Secure OS may allow an attacker with a malicious trusted application to read/write to the ASP Secure OS kernel virtual address space, potentially resulting in privilege escalation. | |
| Aplazada | Media (5.2) | 0.15% | — | AMD ASP Secure OSAI | 13/8/2024 | 17/6/2026 | Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may allow a privileged attacker with access to AMD signing keys to c006Frrupt the return address, causing a stack-based buffer overrun, potentially leading to a denial of service. | |
| Modificada | Media (5) | 3.3% | — | Debian LinuxHP Secure OSRedhat Linux | 4/11/2002 | 16/6/2026 | Memory leak in ypdb_open in yp_db.c for ypserv before 2.5 in the NIS package 3.9 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of requests for a map that does not exist. | |
| Modificada | Alta (7.5) | 8.0% | — | HP Secure OSMandrakesoft Mandrake LinuxRedhat Linux | 28/10/2002 | 16/6/2026 | dvips converter for Postscript files in the tetex package calls the system() function insecurely, which allows remote attackers to execute arbitrary commands via certain print jobs, possibly involving fonts. | |
| Modificada | Media (5) | 6.9% | — | Caldera Openlinux ServerCaldera Openlinux WorkstationRedhat Pre-execution EnvironmentHP Secure OS | 4/10/2002 | 16/6/2026 | Preboot eXecution Environment (PXE) server allows remote attackers to cause a denial of service (crash) via certain DHCP packets from Voice-Over-IP (VOIP) phones. | |
| Modificada | Media (6.2) | 0.53% | — | Mandrakesoft Mandrake Single Network FirewallHP Secure OSMandrakesoft Mandrake LinuxMandrakesoft Mandrake Linux Corporate Server+1 | 12/8/2002 | 16/6/2026 | setpwnam.c in the util-linux package, as included in Red Hat Linux 7.3 and earlier, and other operating systems, does not properly lock a temporary file when modifying /etc/passwd, which may allow local users to gain privileges via a complex race condition that uses an open file descriptor in utility programs such as… | |
| Modificada | Media (4.6) | 0.55% | — | HP Secure OS | 31/12/2001 | 16/6/2026 | Unknown vulnerability in the file system protection subsystem in HP Secure OS Software for Linux 1.0 allows additional user privileges on some files beyond what is specified in the file system protection rules, which allows local users to conduct unauthorized operations on restricted files. | |
| Modificada | Alta (7.5) | 4.9% | — | Apache TomcatHP Secure OS | 31/12/2001 | 16/6/2026 | Unknown vulnerability in Tomcat 3.2.1 running on HP Secure OS for Linux 1.0 allows attackers to access servlet resources. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this issue is already covered by other CVE identifiers. |