Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada hace 1 hora
Buscando: "Linux" — 1392 resultados ✕ Limpiar búsqueda
22,181
Total alertas
4701
Críticas
16892
Altas
8
Ransomware
1051
Esta semana
RSS
M Alto vulnerabilidad
26/08/2026
[CVE-2026-74748] In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix refcount …
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix refcount race between list:set GC and swap __ip_set_put_byindex() resolved the index to a set pointer under RCU, then took ip_set_ref_lock in __ip_set_put() to decrement set->ref. ip_set_swap() holds that same lock while swapping both the ip_set_list slots and the two sets' ref counters, so it can interleav…
M Alto vulnerabilidad
26/08/2026
[CVE-2026-74736] In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_bpf: reject dev-…
In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_bpf: reject dev-bound programs bound to a different device cls_bpf_prog_from_efd() obtained a SCHED_CLS program via bpf_prog_get_type_dev() but never verified that a device-bound (offloaded) program's bound netdev matches the TC netdev the classifier is being attached to. This let a program loaded with prog_ifinde…
M Alto vulnerabilidad
26/08/2026
[CVE-2026-74739] In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: skip hash t…
In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: skip hash tables in u32_bind_class() u32_walk() enumerates both struct tc_u_hnode and struct tc_u_knode through the walker callback. u32_bind_class() unconditionally casts the passed fh to tc_u_knode and accesses &n->res, so when fh is actually a tc_u_hnode, which has no tcf_result member, this results in a s…
M Alto vulnerabilidad
26/08/2026
[CVE-2026-74741] In the Linux kernel, the following vulnerability has been resolved: net: ngbe: fix NULL pointer der…
In the Linux kernel, the following vulnerability has been resolved: net: ngbe: fix NULL pointer dereference in non-MSI-X interrupt enabling In non-MSI-X mode (such as legacy INTx or single MSI), wx->msix_entry is not allocated or initialized. Calling NGBE_INTR_MISC(wx) dereferences wx->msix_entry->entry, leading to a NULL pointer dereference crash. This issue was introduced by fixing the IRQ ve…
M Alto vulnerabilidad
26/08/2026
[CVE-2026-74742] In the Linux kernel, the following vulnerability has been resolved: veth: fix queue index used to w…
In the Linux kernel, the following vulnerability has been resolved: veth: fix queue index used to wake the peer txq in veth_poll veth_poll() derives the index of the peer TX queue to wake from rq->xdp_rxq.queue_index. That field is only initialized by xdp_rxq_info_reg() in veth_enable_xdp_range(), which runs only when an XDP program is attached. On the plain GRO/NAPI path (veth_napi_enable_range…
M Alto vulnerabilidad
26/08/2026
[CVE-2026-19042] A command injection vulnerability in TeamViewer Full Client and Host for Linux prior to version 15.8…
A command injection vulnerability in TeamViewer Full Client and Host for Linux prior to version 15.81.5 allows a remote attacker to execute arbitrary commands in the context of the current user via a specially crafted URL sent through the out-of-session chat feature. Exploitation requires user interaction by clicking the malicious link.
M Alto vulnerabilidad
25/08/2026
Vulnerabilidad alta de buffer overflow en BlueZ afecta stack Bluetooth de Linux
Una vulnerabilidad de desbordamiento de búfer en la pila Bluetooth de Linux (BlueZ) permite a atacantes remotos dentro del rango de radio enviar paquetes Extended Inquiry Response (EIR) malformados que causan bloqueos del servicio bluetoothd. Afecta servidores Linux, dispositivos IoT y sistemas embebidos comunes en infraestructura LATAM, con potencial de denegación de servicio y ejecución de código remoto.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
25/08/2026
Vulnerabilidad de traversal de ruta en NVIDIA OpenShell Sandbox para Linux (CVE-2026-65092)
NVIDIA OpenShell Sandbox para Linux contiene una vulnerabilidad que permite a atacantes eludir la política de seguridad de red L7 REST mediante traversal de ruta, facilitando acceso no autorizado a información sensible y manipulación de datos. Esta falla afecta infraestructuras de contenedorización y edge computing en datacenters de LATAM que dependen de OpenShell para aislamiento de cargas de trabajo.
M Alto vulnerabilidad
25/08/2026
Vulnerabilidad alta en NVIDIA NemoClaw para Linux permite inyección de comandos del SO
NVIDIA NemoClaw para Linux contiene una vulnerabilidad en el componente Telegram bridge que permite a atacantes inyectar comandos del sistema operativo. La explotación exitosa podría resultar en ejecución de código arbitrario, escalada de privilegios, divulgación de información y manipulación de datos en servidores altas de empresas en LATAM.
M Alto vulnerabilidad
25/08/2026
Vulnerabilidad alta en NVIDIA NemoClaw para Linux permite ejecución de código remoto
NVIDIA NemoClaw para Linux contiene una vulnerabilidad en sus scripts de instalación que permite descargar código sin validar su integridad. Un atacante puede explotar esto para ejecutar código arbitrario, escalar privilegios, acceder a información sensible o modificar datos. Afecta especialmente a centros de datos y empresas que utilizan herramientas de IA basadas en NVIDIA en infraestructura on-premise.
M Alto vulnerabilidad
25/08/2026
[CVE-2026-65098] NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helper workflow, where an at…
NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helper workflow, where an attacker could cause weak authentication. A successful exploit of this vulnerability might lead to code execution, information disclosure, and data tampering.
M Alto vulnerabilidad
25/08/2026
Vulnerabilidad alta de inyección de comandos en NVIDIA NemoClaw para Linux (CVE-2026-65099)
NVIDIA NemoClaw para Linux contiene una vulnerabilidad en su interfaz de línea de comandos que permite inyección de comandos del sistema operativo. Un atacante podría explotar esta falla para ejecutar código arbitrario, modificar datos, acceder a información confidencial o provocar denegación de servicio. Afecta principalmente a servidores y estaciones de trabajo con GPU NVIDIA en entornos de desarrollo e IA.
M Alto vulnerabilidad
25/08/2026
[CVE-2026-65105] NVIDIA NemoClaw for Linux contains a vulnerability in its inference server setup, where a remote att…
NVIDIA NemoClaw for Linux contains a vulnerability in its inference server setup, where a remote attacker may access the inference service without authentication. A successful exploit of this vulnerability may lead to information disclosure and denial of service.
M Alto vulnerabilidad
25/08/2026
[CVE-2026-65084] NVIDIA NemoClaw for Linux contains a vulnerability in its deployment process, where an attacker coul…
NVIDIA NemoClaw for Linux contains a vulnerability in its deployment process, where an attacker could cause improper certificate validation. A successful exploit of this vulnerability might lead to information disclosure, data tampering, code execution, and escalation of privileges.
M Alto vulnerabilidad
25/08/2026
[CVE-2026-65089] NVIDIA NemoClaw for Linux contains a vulnerability in its status and logs plugin commands, where an …
NVIDIA NemoClaw for Linux contains a vulnerability in its status and logs plugin commands, where an attacker could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
25/08/2026
[CVE-2026-65090] NVIDIA NemoClaw for Linux contains a vulnerability in its NIM management component, where an attacke…
NVIDIA NemoClaw for Linux contains a vulnerability in its NIM management component, where an attacker could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service.
M Alto vulnerabilidad
25/08/2026
[CVE-2026-65081] NVIDIA NemoClaw for Linux contains a vulnerability in its installation process, where an attacker co…
NVIDIA NemoClaw for Linux contains a vulnerability in its installation process, where an attacker could cause execution of untrusted code. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, information disclosure, and denial of service.
M Alto vulnerabilidad
25/08/2026
[CVE-2026-65082] NVIDIA NemoClaw for Linux contains a vulnerability in its migration command, where a local attacker …
NVIDIA NemoClaw for Linux contains a vulnerability in its migration command, where a local attacker could cause code injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service.
M Alto vulnerabilidad
25/08/2026
[CVE-2026-66152] A Path traversal vulnerability in OPSWAT tarball in the SonicWall NetExtender Linux client allows an…
A Path traversal vulnerability in OPSWAT tarball in the SonicWall NetExtender Linux client allows an attacker to write arbitrary file as root.
M Alto vulnerabilidad
25/08/2026
[CVE-2026-66153] The NEService auto-upgrade process insecurely handles temporary files in SonicWall NetExtender Linux…
The NEService auto-upgrade process insecurely handles temporary files in SonicWall NetExtender Linux client which allows an attacker to manipulate file paths.