Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2636▼ 212 respecto a la semana anterior
Críticas / altas1386▲ 155 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.28% | — | Amazon FreertosTI Simplelink Cc13xx Software Development KITTI Simplelink Cc26xx Software Development KITTI Simplelink Cc32xx Software Development KIT+2 | 21/11/2023 | 17/6/2026 | Texas Instruments devices running FREERTOS, malloc returns a valid pointer to a small buffer on extremely large values, which can trigger an integer overflow vulnerability in 'malloc' for FreeRTOS, resulting in code execution. | |
| Modificada | Alta (7.8) | 0.28% | — | Real-time Operating SystemTI Simplelink Cc13xx Software Development KITTI Simplelink Cc26xx Software Development KITTI Simplelink Cc32xx Software Development KIT+2 | 21/11/2023 | 17/6/2026 | Texas Instruments TI-RTOS, when configured to use HeapMem heap(default), malloc returns a valid pointer to a small buffer on extremely large values, which can trigger an integer overflow vulnerability in 'HeapMem_allocUnprotected' and result in code execution. | |
| Modificada | Alta (7.8) | 0.28% | — | Real-time Operating SystemTI Simplelink Cc13xx Software Development KITTI Simplelink Cc26xx Software Development KITTI Simplelink Cc32xx Software Development KIT+2 | 20/11/2023 | 17/6/2026 | Texas Instruments TI-RTOS returns a valid pointer to a small buffer on extremely large values. This can trigger an integer overflow vulnerability in 'HeapTrack_alloc' and result in code execution. | |
| Modificada | Alta (7.8) | 0.28% | — | Real-time Operating SystemTI Simplelink Cc13xx Software Development KITTI Simplelink Cc26xx Software Development KITTI Simplelink Cc32xx Software Development KIT+2 | 20/11/2023 | 17/6/2026 | Texas Instruments TI-RTOS, when configured to use HeapMem heap(default), malloc returns a valid pointer to a small buffer on extremely large values, which can trigger an integer overflow vulnerability in 'HeapMem_allocUnprotected' and result in code execution. | |
| Modificada | Media (5.3) | 1.4% | — | TI Simplelink Cc32xx Software Development KITTI Cc3100 FirmwareTI Cc3200 Firmware | 16/2/2022 | 17/6/2026 | An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an uninitialized read. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Alta (7.8) | 0.30% | — | TI Cc3100 Software Development KITTI Cc3200 Software Development KITTI Simplelink Cc13x0 Software Development KITTI Simplelink Cc13x2 Software Development KIT+3 | 7/5/2021 | 17/6/2026 | An integer overflow exists in the APIs of the host MCU while trying to connect to a WIFI network may lead to issues such as a denial-of-service condition or code execution on the SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00.12 and prior, CC32XX SDK v4.30.00.06 and prior, CC13X0 SDK versions prior to v4.10.03, CC13X2 and… | |
| Modificada | Alta (8) | 1.2% | — | TI Cc3100 Software Development KITTI Cc3200 Software Development KITTI Simplelink Cc13x0 Software Development KITTI Simplelink Cc13x2 Software Development KIT+3 | 7/5/2021 | 17/6/2026 | The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from the CDN server, which may allow an attacker to remotely execute code on the SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00.12 and prior, CC32XX SDK v4.30.00.06 and prior, CC13X0 SDK versions prior to… | |
| Modificada | Crítica (9.8) | 1.8% | — | TI Cc3100 Software Development KITTI Cc3200 Software Development KITTI Simplelink Cc13x0 Software Development KITTI Simplelink Cc13x2 Software Development KIT+3 | 7/5/2021 | 17/6/2026 | Multiple integer overflow issues exist while processing long domain names, which may allow an attacker to remotely execute code on the SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00.12 and prior, CC32XX SDK v4.30.00.06 and prior, CC13X0 SDK versions prior to v4.10.03, CC13X2 and CC26XX SDK versions prior to v4.40.00, CC3200… | |
| Modificada | Crítica (9.8) | 1.8% | — | TI Cc3100 Software Development KITTI Cc3200 Software Development KITTI Simplelink Cc13x0 Software Development KITTI Simplelink Cc13x2 Software Development KIT+3 | 7/5/2021 | 17/6/2026 | The affected product is vulnerable to an integer overflow while processing HTTP headers, which may allow an attacker to remotely execute code on the SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00.12 and prior, CC32XX SDK v4.30.00.06 and prior, CC13X0 SDK versions prior to v4.10.03, CC13X2 and CC26XX SDK versions prior to… | |
| Modificada | Alta (7.2) | 1.4% | — | TI Cc3100 Software Development KITTI Cc3200 Software Development KITTI Simplelink Cc13x0 Software Development KITTI Simplelink Cc13x2 Software Development KIT+3 | 7/5/2021 | 17/6/2026 | The affected product is vulnerable to integer overflow while parsing malformed over-the-air firmware update files, which may allow an attacker to remotely execute code on SimpleLink Wi-Fi (MSP432E4 SDK: v4.20.00.12 and prior, CC32XX SDK v4.30.00.06 and prior, CC13X0 SDK versions prior to v4.10.03, CC13X2 and CC26XX… |