Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
Buscando: "Linux" — 1677 resultados ✕ Limpiar búsqueda
22,093
Total alertas
4671
Críticas
16834
Altas
8
Ransomware
1017
Esta semana
RSS
M Alto vulnerabilidad
30/09/2026
[CVE-2026-47501] NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user c…
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause an out-of-bounds write by supplying mismatched memory buffers during event buffer setup. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
M Alto vulnerabilidad
30/09/2026
[CVE-2026-47489] NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where permissi…
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where permissions on read-only memory might not be preserved. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
M Alto vulnerabilidad
30/09/2026
[CVE-2026-47491] NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unpri…
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user can cause improper release of memory resources, leaving a mapping accessible after the underlying memory is reused. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
M Alto vulnerabilidad
30/09/2026
[CVE-2026-47493] NVIDIA vGPU software for Windows and Linux contains a vulnerability in the GPU kernel driver where a…
NVIDIA vGPU software for Windows and Linux contains a vulnerability in the GPU kernel driver where a guest may access privileged host GPU resources for which it is not authorized. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.
M Alto vulnerabilidad
30/09/2026
[CVE-2026-47494] NVIDIA GPU Display Driver for Linux contains a vulnerability where a user might be able to cause a f…
NVIDIA GPU Display Driver for Linux contains a vulnerability where a user might be able to cause a format string issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.
M Alto vulnerabilidad
30/09/2026
Vulnerabilidad alta en RPM: desbordamiento de búfer por paquete RPM malformado
Se detectó un desbordamiento de búfer en la pila de RPM que permite a atacantes ejecutar código arbitrario mediante paquetes RPM sin firmar con etiqueta RPMTAG_FILESIGNATURES malformada. La vulnerabilidad es accesible a través de herramientas comunes como rpm2cpio, rpm2archive y rpm -qlvp, afectando sistemas Linux en infraestructuras altas de LATAM (servidores, contenedores, pipelines CI/CD). Con CVSS 7.1, representa riesgo alto para empresas que gestionan repositorios RPM o usan distribuciones basadas en Red Hat/CentOS.
M Alto vulnerabilidad
29/09/2026
[CVE-2026-92370] An improper access control vulnerability in TeamViewer Full Client, Host, and related affected modul…
An improper access control vulnerability in TeamViewer Full Client, Host, and related affected modules on Windows, Linux, and macOS allows an authenticated remote attacker to bypass user-configured permission settings during session establishment. By modifying access control parameters for restricted features, an attacker can perform actions that were explicitly denied by the victim's configuratio…

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
29/09/2026
[CVE-2026-92371] TeamViewer Full Client and Host for Linux prior version 15.82 contains an improper path validation v…
TeamViewer Full Client and Host for Linux prior version 15.82 contains an improper path validation vulnerability in the Cloud Session Recording (CSR) functionality. By exploiting a race condition during path validation and subsequent file access, a local authenticated attacker may cause privileged file operations in unintended locations on the affected system.
M Alto vulnerabilidad
29/09/2026
[CVE-2026-92368] TeamViewer Full Client and Host for Linux and macOS prior version 15.82 contain a heap-based buffer …
TeamViewer Full Client and Host for Linux and macOS prior version 15.82 contain a heap-based buffer overflow vulnerability in the processing of .tvs session recording files. A size mismatch during decompression of recorded session data can result in out-of-bounds heap writes. By convincing a user to open a specially crafted session recording through the "Play or convert recorded session…" feature,…
M Alto vulnerabilidad
29/09/2026
[CVE-2026-19743] Improper path validation in the local IPC service of TeamViewer Full Client and Host on Windows, Lin…
Improper path validation in the local IPC service of TeamViewer Full Client and Host on Windows, Linux, and macOS prior to version 15.82 allows a local authenticated user with low privileges to perform arbitrary file writes with elevated privileges (NT AUTHORITY/SYSTEM \ root). By sending crafted IPC commands to the local service daemon, an attacker could manipulate file paths, leading to local pr…
M Alto vulnerabilidad
29/09/2026
Desbordamiento de búfer en RPM permite ejecución de código mediante paquetes maliciosos
Se identificó una vulnerabilidad alta en RPM que permite a atacantes ejecutar código arbitrario al procesar paquetes RPM manipulados con entradas de enlace simbólico especialmente crafteadas. La falla explota un desbordamiento de enteros en la función iterReadArchiveNext() que reduce la asignación de búfer a un byte, permitiendo escribir datos controlados más allá de los límites de memoria. Esta vulnerabilidad afecta directamente a servidores Linux en infraestructuras cloud, on-premises y repositorios de paquetes en empresas LATAM que utilizan sistemas basados en RHEL, CentOS, Fedora u otras distribuciones RPM.
M Alto vulnerabilidad
28/09/2026
[CVE-2026-97335] Incorrect authorization in the custom storage volume creation endpoint in Canonical LXD versions 5.0…
Incorrect authorization in the custom storage volume creation endpoint in Canonical LXD versions 5.0.0 and later (fixed in 5.0.10, 5.21.8 and 6.10) on Linux allows an authenticated client with permission to create custom volumes in a project to copy, and so read, any custom storage volume from any other project on the server, including its snapshots and configuration. The client does this with a c…
M Crítico vulnerabilidad
28/09/2026
[CVE-2026-87799] Improper link resolution in the migration receive path in Canonical LXD versions 4.0 and later (fixe…
Improper link resolution in the migration receive path in Canonical LXD versions 4.0 and later (fixed in 4.0.14, 5.0.10, 5.21.8 and 6.10) on Linux allows an authenticated client that can create instances or custom storage volumes in a project, or a malicious migration source server, to write attacker-controlled files to arbitrary paths on the target host as root, leading to full host compromise. T…
M Crítico vulnerabilidad
28/09/2026
[CVE-2026-85185] Path traversal in the btrfs storage driver in Canonical LXD versions 4.0.2 and later (fixed in 4.0.1…
Path traversal in the btrfs storage driver in Canonical LXD versions 4.0.2 and later (fixed in 4.0.14, 5.0.10, 5.21.8 and 6.10) on Linux allows an authenticated client with permission to create instances in a project to delete arbitrary files on the host as root. On hosts whose root filesystem is btrfs, the client can also place attacker-controlled content at arbitrary host paths, leading to full …
M Crítico vulnerabilidad
28/09/2026
[CVE-2026-85526] Path traversal in the Btrfs storage driver (unpackVolume) in Canonical LXD on Linux allows an authen…
Path traversal in the Btrfs storage driver (unpackVolume) in Canonical LXD on Linux allows an authenticated user with instance creation privileges to delete or replace arbitrary files and directories on the host filesystem as root via a crafted subvolumes[].path entry in backup/optimized_header.yaml during a btrfs optimized backup import.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
27/09/2026
[CVE-2026-100839] Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.18.0, the guest ke…
Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.18.0, the guest kernel's ACPI/AML handling is vulnerable to an AML injection attack ("BadAML"). ACPI tables containing AML bytecode are passed from the untrusted host (QEMU) to the guest firmware (OVMF) and on to the Linux kernel, whose AML interpreter executes them. An attacker controlling the host — an assumed adve…
M Alto vulnerabilidad
26/09/2026
[CVE-2026-100560] OpenClaw versions before 2026.8.1 contain an authorization bypass vulnerability where Allow Always a…
OpenClaw versions before 2026.8.1 contain an authorization bypass vulnerability where Allow Always approvals for exact commands persist as path-only grants on macOS and Linux. Attackers can reuse the same executable with different arguments to execute commands without triggering new approval prompts, potentially accessing files or internal services.
M Crítico vulnerabilidad
25/09/2026
[CVE-2026-100075] In the Linux kernel, the following vulnerability has been resolved: RDMA/srpt: Fix srpt_alloc_rw_ct…
In the Linux kernel, the following vulnerability has been resolved: RDMA/srpt: Fix srpt_alloc_rw_ctxs() unwind counters When srpt_alloc_rw_ctxs() fails partway through a multi-buffer indirect descriptor, the unwind path destroys RDMA contexts but leaves stale n_rw_ctx and n_rdma values (and a dangling rw_ctxs pointer). Later sq_wr_avail accounting in srpt_queue_response() or srpt_write_pending()…
M Alto vulnerabilidad
25/09/2026
[CVE-2026-98154] In the Linux kernel, the following vulnerability has been resolved: nvme-rdma: fix -EIO cleanup ord…
In the Linux kernel, the following vulnerability has been resolved: nvme-rdma: fix -EIO cleanup order in queue_rq On -EIO, the RDMA queue_rq path reports a host path error and then still cleans up the command and unmaps the SQE DMA. The path error helper completes the request, so that is double cleanup and DMA unmap after the request is already complete. Unmap the SQE first, then report the hos…
M Alto vulnerabilidad
25/09/2026
[CVE-2026-98156] In the Linux kernel, the following vulnerability has been resolved: drm/virtio: use the DMA API for…
In the Linux kernel, the following vulnerability has been resolved: drm/virtio: use the DMA API for resource backing on Xen On a Xen PV domain page addresses bear no relation to the real machine addresses the host would have to use to reach it. virtio_ring.c handles this correctly, vring_use_map_api() returns true for any xen_domain() regardless of VIRTIO_F_ACCESS_PLATFORM. virtio-gpu makes the…