Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
609 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 24% | — | Redislabs RedisRedhat OpenstackRedhat Enterprise LinuxRedhat Enterprise Linux EUS+5 | 11/7/2019 | 17/6/2026 | A stack-buffer overflow vulnerability was found in the Redis hyperloglog data structure versions 3.x before 3.2.13, 4.x before 4.0.14 and 5.x before 5.0.4. By corrupting a hyperloglog using the SETRANGE command, an attacker could cause Redis to perform controlled increments of up to 12 bytes past the end of a… | |
| Modificada | Alta (7.2) | 26% | — | Redislabs RedisRedhat OpenstackRedhat Software CollectionsRedhat Enterprise Linux+6 | 11/7/2019 | 17/6/2026 | A heap-buffer overflow vulnerability was found in the Redis hyperloglog data structure versions 3.x before 3.2.13, 4.x before 4.0.14 and 5.x before 5.0.4. By carefully corrupting a hyperloglog using the SETRANGE command, an attacker could trick Redis interpretation of dense HLL encoding to write up to 3 bytes beyond… | |
| Modificada | Crítica (9.8) | 1.9% | — | Openstack Magnum | 21/6/2019 | 17/6/2026 | OpenStack Magnum passes OpenStack credentials into the Heat templates creating its instances. While these should just be used for retrieving the instances' SSL certificates, they allow full API access, though and can be used to perform any API operation the user is authorized to perform. | |
| Modificada | Alta (8) | 1.6% | — | Openstack OctaviaRedhat Openstack | 3/6/2019 | 17/6/2026 | An access-control flaw was found in the Octavia service when the cloud platform was deployed using Red Hat OpenStack Platform Director. An attacker could cause new amphorae to run based on any arbitrary image. This meant that a remote attacker could upload a new amphorae image and, if requested to spawn new amphorae,… | |
| Modificada | Alta (7.4) | 6.2% | — | Apache QpidRedhat Jboss AMQ Clients 2Redhat OpenstackRedhat Satellite+6 | 23/4/2019 | 17/6/2026 | While investigating bug PROTON-2014, we discovered that under some circumstances Apache Qpid Proton versions 0.9 to 0.27.0 (C library and its language bindings) can connect to a peer anonymously using TLS *even when configured to verify the peer certificate* while used with OpenSSL versions before 1.1.0. This means… | |
| Modificada | Alta (8.6) | 0.74% | — | Openstack Nova | 22/4/2019 | 16/6/2026 | Versions of nova before 2012.1 could expose hypervisor host files to a guest operating system when processing a maliciously constructed qcow filesystem. | |
| Modificada | Media (6.5) | 1.7% | — | Openstack NeutronRedhat Openstack | 5/4/2019 | 17/6/2026 | An issue was discovered in OpenStack Neutron 11.x before 11.0.7, 12.x before 12.0.6, and 13.x before 13.0.3. By creating two security groups with separate/overlapping port ranges, an authenticated user may prevent Neutron from being able to configure networks on any compute nodes where those security groups are… | |
| Modificada | Alta (7.8) | 0.39% | — | Openstack CeilometerRedhat Openstack | 26/3/2019 | 17/6/2026 | A vulnerability was found in ceilometer before version 12.0.0.0rc1. An Information Exposure in ceilometer-agent prints sensitive configuration data to log files without DEBUG logging being activated. | |
| Modificada | Alta (7.5) | 0.89% | — | Openstack OctaviaRedhat Openstack | 26/3/2019 | 17/6/2026 | In a default Red Hat Openstack Platform Director installation, openstack-octavia before versions openstack-octavia 2.0.2-5 and openstack-octavia-3.0.1-0.20181009115732 creates log files that are readable by all users. Sensitive information such as private keys can appear in these log files allowing for information… | |
| Modificada | Media (6.5) | 3.7% | — | Openstack NeutronRedhat OpenstackDebian Linux | 13/3/2019 | 17/6/2026 | An issue was discovered in the iptables firewall module in OpenStack Neutron before 10.0.8, 11.x before 11.0.7, 12.x before 12.0.6, and 13.x before 13.0.3. By setting a destination port in a security group rule along with a protocol that doesn't support that option (for example, VRRP), an authenticated user may block… | |
| Modificada | Media (5.3) | 2.5% | — | Redhat AnsibleDebian LinuxRedhat Ansible EngineRedhat Openstack+5 | 3/1/2019 | 17/6/2026 | ansible before versions 2.5.14, 2.6.11, 2.7.5 is vulnerable to a information disclosure flaw in vvv+ mode with no_log on that can lead to leakage of sensible data. | |
| Modificada | Media (5.3) | 1.1% | — | Openstack Keystone | 17/12/2018 | 17/6/2026 | OpenStack Keystone through 14.0.1 has a user enumeration vulnerability because invalid usernames have much faster responses than valid ones for a POST /v3/auth/tokens request. NOTE: the vendor's position is that this is a hardening opportunity, and not necessarily an issue that should have an OpenStack Security… | |
| Modificada | Alta (7.5) | 41% | — | Nodejs Node.jsSuse Enterprise StorageSuse Linux Enterprise ServerSuse Openstack Cloud | 28/11/2018 | 17/6/2026 | Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Slowloris HTTP Denial of Service: An attacker can cause a Denial of Service (DoS) by sending headers very slowly keeping HTTP or HTTPS connections and associated resources alive for a long period of time. | |
| Modificada | Alta (7.5) | 4.6% | — | Nodejs Node.jsSuse Enterprise StorageSuse Linux Enterprise ServerSuse Openstack Cloud | 28/11/2018 | 17/6/2026 | Node.js: All versions prior to Node.js 6.15.0 and 8.14.0: HTTP request splitting: If Node.js can be convinced to use unsanitized user-provided Unicode data for the `path` option of an HTTP request, then data can be provided which will trigger a second, unexpected, and user-defined HTTP request to made to the same… | |
| Modificada | Alta (7.5) | 0.98% | — | Huawei Fusionsphere Openstack | 27/11/2018 | 17/6/2026 | There is an information leakage vulnerability on several Huawei products. Due to insufficient communication protection for specific services, a remote, unauthorized attacker can exploit this vulnerability to connect to specific services to obtain additional information. Successful exploitation of this vulnerability… | |
| Modificada | Alta (7.5) | 1.5% | — | Redhat Openstack-mistral | 2/11/2018 | 17/6/2026 | A flaw was found in openstack-mistral. By manipulating the SSH private key filename, the std.ssh action can be used to disclose the presence of arbitrary files within the filesystem of the executor running the action. Since std.ssh private_key_filename can take an absolute path, it can be used to assess whether or not… | |
| Modificada | Media (5.5) | 0.37% | — | Redhat Openstack | 31/10/2018 | 17/6/2026 | A permissions flaw was found in redis, which sets weak permissions on certain files and directories that could potentially contain sensitive information. A local, unprivileged user could possibly use this flaw to access unauthorized system information. | |
| Modificada | Media (5.5) | 0.44% | — | QemuRedhat Enterprise LinuxRedhat Openstack | 19/10/2018 | 17/6/2026 | Qemu has integer overflows because IOReadHandler and its associated functions use a signed integer data type for a size value. | |
| Modificada | Crítica (9.8) | 4.7% | — | QemuDebian LinuxCanonical Ubuntu LinuxRedhat Openstack+2 | 9/10/2018 | 17/6/2026 | qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possibly have unspecified other impact. | |
| Modificada | Media (5.9) | 1.9% | — | Pyopenssl Project PyopensslCanonical Ubuntu LinuxRedhat Gluster StorageRedhat Openstack+3 | 8/10/2018 | 17/6/2026 | Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Release Memory Before Removing Last Reference vulnerability in PKCS #12 Store that can result in Denial of service if memory runs low or is exhausted. This attack appear to be exploitable via Depends upon calling… | |
| Modificada | Alta (8.1) | 4.1% | — | PyopensslCanonical Ubuntu LinuxRedhat OpenstackRedhat Enterprise Linux Desktop+2 | 8/10/2018 | 17/6/2026 | Python Cryptographic Authority pyopenssl version prior to version 17.5.0 contains a CWE-416: Use After Free vulnerability in X509 object handling that can result in Use after free can lead to possible denial of service or remote code execution.. This attack appear to be exploitable via Depends on the calling… | |
| Modificada | Media (4.9) | 2.0% | — | OpenvswitchRedhat OpenstackCanonical Ubuntu LinuxDebian Linux | 19/9/2018 | 17/6/2026 | An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding. | |
| Modificada | Alta (7.5) | 2.5% | — | OpenvswitchRedhat OpenstackCanonical Ubuntu Linux | 19/9/2018 | 17/6/2026 | An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, affecting ofproto_rule_insert__ in ofproto/ofproto.c. During bundle commit, flows that are added in a bundle are applied to ofproto in order. If a flow cannot be added (e.g., the flow action is a go-to for a group id that does not exist), OvS tries to… | |
| Modificada | Media (4.3) | 1.9% | — | OpenvswitchRedhat OpenstackCanonical Ubuntu LinuxDebian Linux | 19/9/2018 | 17/6/2026 | An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, affecting parse_group_prop_ntr_selection_method in lib/ofp-util.c. When decoding a group mod, it validates the group type and command after the whole group mod has been decoded. The OF1.5 decoder, however, tries to use the type and command earlier,… | |
| Modificada | Media (5.3) | 1.2% | — | Openstack Neutron | 10/9/2018 | 17/6/2026 | Live-migrated instances are briefly able to inspect traffic for other instances on the same hypervisor. This brief window could be extended indefinitely if the instance's port is set administratively down prior to live-migration and kept down after the migration is complete. This is possible due to the Open vSwitch… |