Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2853▼ 343 respecto a la semana anterior
Críticas / altas1376▼ 50 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)298▼ 212 respecto a la semana anterior
–

609 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.5)2.5%—Redhat OpenstackOpenstack Neutron10/9/201817/6/2026
When using the Linux bridge ml2 driver, non-privileged tenants are able to create and attach ports without specifying an IP address, bypassing IP address validation. A potential denial of service could occur if an IP address, conflicting with existing guests or routers, is then assigned from outside of the allowed…
ModificadaCrítica (9.8)0.60%—Redhat Openstack10/9/201817/6/2026
The OpenStack RabbitMQ container image insecurely retrieves the rabbitmq_clusterer component over HTTP during the build stage. This could potentially allow an attacker to serve malicious code to the image builder and install in the resultant container image. Version of openstack-rabbitmq-container and…
ModificadaAlta (7.5)1.2%—Openstack CinderRedhat Openstack27/8/201817/6/2026
A vulnerability was found in openstack-cinder releases up to and including Queens, allowing newly created volumes in certain storage volume configurations to contain previous data. It specifically affects ScaleIO volumes using thin volumes and zero padding. This could lead to leakage of sensitive information between…
ModificadaAlta (8.2)0.66%—Redhat OpenstackOpenstack Tripleo-common22/8/201817/6/2026
A flaw was found in openstack-tripleo-common as shipped with Red Hat Openstack Enterprise 10 and 11. The sudoers file as installed with OSP's openstack-tripleo-common package is much too permissive. It contains several lines for the mistral user that have wildcards that allow directory traversal with '..' and it…
ModificadaBaja (3.3)0.35%—Canonical Ubuntu LinuxLinuxcontainers LXCSuse Caas PlatformSuse Openstack Cloud+210/8/201817/6/2026
lxc-user-nic when asked to delete a network interface will unconditionally open a user provided path. This code path may be used by an unprivileged user to check for the existence of a path which they wouldn't otherwise be able to reach. It may also be used to trigger side effects by causing a (read-only) open of…
ModificadaAlta (7.5)5.2%—Redhat OpenstackRedhat VirtualizationRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+59/8/201817/6/2026
A vulnerability was found in libpq, the default PostgreSQL client library where libpq failed to properly reset its internal state between connections. If an affected version of libpq was used with "host" or "hostaddr" connection parameters from untrusted input, attackers could bypass client-side connection security…
ModificadaMedia (6.5)2.3%—Openstack Glance31/7/201817/6/2026
A vulnerability was found in Openstack Glance. No limits are enforced within the Glance image service for both v1 and v2 `/images` API POST method for authenticated users, resulting in possible denial of service attacks through database table saturation.
ModificadaMedia (5.3)1.6%—Debian LinuxRedhat OpenstackOpenstack Keystone31/7/201817/6/2026
In the Federation component of OpenStack Keystone before 11.0.4, 12.0.0, and 13.0.0, an authenticated "GET /v3/OS-FEDERATION/projects" request may bypass intended access restrictions on listing projects. An authenticated user may discover projects they have no authority to access, leaking all projects in the…
ModificadaAlta (8.8)0.89%—Redhat OpenstackOpenstack Tripleo Heat Templates30/7/201817/6/2026
A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40. When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.
ModificadaAlta (7.5)3.2%—Python-cryptographyRedhat OpenstackCanonical Ubuntu Linux30/7/201817/6/2026
A flaw was found in python-cryptography versions between >=1.9.0 and <2.3. The finalize_with_tag API did not enforce a minimum tag length. If a user did not validate the input length prior to passing it to finalize_with_tag an attacker could craft an invalid payload with a shortened tag (e.g. 1 byte) such that they…
ModificadaCrítica (9.9)4.4%—QemuCitrix XenserverRedhat OpenstackDebian Linux+527/7/201817/6/2026
A heap buffer overflow flaw was found in QEMU's Cirrus CLGD 54xx VGA emulator's VNC display driver support before 2.9; the issue could occur when a VNC client attempted to update its display after a VGA operation is performed by a guest. A privileged user/process inside a guest could use this flaw to crash the QEMU…
ModificadaCrítica (9.9)3.6%—QemuCitrix XenserverRedhat OpenstackDebian Linux+627/7/201817/6/2026
Quick emulator (QEMU) before 2.8 built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to an out-of-bounds access issue. The issue could occur while copying VGA data in cirrus_bitblt_cputovideo. A privileged user inside guest could use this flaw to crash the QEMU process OR potentially execute arbitrary…
ModificadaMedia (5.5)0.41%—Openstack HeatRedhat Openstack27/7/201817/6/2026
An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.
ModificadaMedia (5.5)0.38%—Redhat Openstack27/7/201817/6/2026
An accessibility flaw was found in the OpenStack Workflow (mistral) service where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.
ModificadaMedia (5.9)1.8%—Openstack NeutronRedhat Openstack26/7/201817/6/2026
A race-condition flaw was discovered in openstack-neutron before 7.2.0-12.1, 8.x before 8.3.0-11.1, 9.x before 9.3.1-2.1, and 10.x before 10.0.2-1.1, where, following a minor overcloud update, neutron security groups were disabled. Specifically, the following were reset to 0: net.bridge.bridge-nf-call-ip6tables and…
ModificadaAlta (7.5)5.5%—QemuRedhat OpenstackRedhat Virtualization26/7/201817/6/2026
An assertion-failure flaw was found in Qemu before 2.10.1, in the Network Block Device (NBD) server's initial connection negotiation, where the I/O coroutine was undefined. This could crash the qemu-nbd server if a client sent unexpected data during connection negotiation. A remote user or process could use this flaw…
ModificadaCrítica (10)4.6%—Redhat Openstack26/7/201817/6/2026
A design flaw issue was found in the Red Hat OpenStack Platform director use of TripleO to enable libvirtd based live-migration. Libvirtd is deployed by default (by director) listening on 0.0.0.0 (all interfaces) with no-authentication or encryption. Anyone able to make a TCP connection to any compute host IP address,…
ModificadaCrítica (9.8)4.8%—Redhat Openshift Container PlatformRedhat OpenstackRedhat Storage ConsoleRedhat Virtualization+519/7/201817/6/2026
Ansible before versions 2.3.1.0 and 2.4.0.0 fails to properly mark lookup-plugin results as unsafe. If an attacker could control the results of lookup() calls, they could inject Unicode strings to be parsed by the jinja2 templating system, resulting in code execution. By default, the jinja2 templating language is now…
ModificadaAlta (7.2)2.1%—Redhat Openstack19/7/201817/6/2026
An authorization-check flaw was discovered in federation configurations of the OpenStack Identity service (keystone). An authenticated federated user could request permissions to a project and unintentionally be granted all related roles including administrative roles.
ModificadaBaja (3.1)1.6%—Oracle MysqlDebian LinuxCanonical Ubuntu LinuxRedhat Openstack+1018/7/201817/6/2026
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to…
ModificadaAlta (7.8)0.59%—Redhat Ansible EngineRedhat Ceph StorageRedhat Gluster StorageRedhat Openshift+613/7/201817/6/2026
A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an attacker, thus allowing the attacker to execute arbitrary code.
ModificadaMedia (5.3)1.1%—DockerMobyproject MobyRedhat OpenstackRedhat Enterprise Linux+26/7/201817/6/2026
The default OCI linux spec in oci/defaults{_linux}.go in Docker/Moby from 1.11 to current does not block /proc/acpi pathnames. The flaw allows an attacker to modify host's hardware like enabling/disabling bluetooth or turning up/down keyboard brightness.
ModificadaMedia (5.9)3.1%—Redhat Ansible EngineRedhat CloudformsRedhat OpenstackRedhat Virtualization+23/7/201817/6/2026
Ansible 2.5 prior to 2.5.5, and 2.4 prior to 2.4.5, do not honor the no_log task flag for failed tasks. When the no_log flag has been used to protect sensitive data passed to a task from being logged, and that task does not run successfully, Ansible will expose sensitive data in log files and on the terminal of the…
ModificadaCrítica (9.1)3.6%—QemuCitrix XenserverRedhat OpenstackDebian Linux+63/7/201817/6/2026
Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue. It could occur while copying VGA data via bitblt copy in backward mode. A privileged user inside a guest could use this flaw to crash the QEMU process resulting in DoS or potentially execute…
ModificadaAlta (7.8)0.49%—Redhat Ansible EngineRedhat OpenstackRedhat VirtualizationRedhat Virtualization Host2/7/201817/6/2026
In ansible it was found that inventory variables are loaded from current working directory when running ad-hoc command which are under attacker's control, allowing to run arbitrary code as a result.
Orbitaley — Vulnerabilidades