Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3006▼ 69 respecto a la semana anterior
Críticas / altas1420▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

64 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaBaja (2.1)0.38%—Redhat Enterprise Virtualization5/12/201417/6/2026
The rhevm-log-collector package in Red Hat Enterprise Virtualization 3.4 uses the PostgreSQL database password on the command line when calling sosreport, which allows local users to obtain sensitive information by listing the processes.
ModificadaMedia (6.5)1.8%—Redhat Enterprise Virtualization Manager18/10/201417/6/2026
The oVirt Engine backend module, as used in Red Hat Enterprise Virtualization Manager before 3.4.2, uses an "insecure DocumentBuilderFactory," which allows remote attackers to read arbitrary files or possibly have other unspecified impact via a crafted XML/RSDL document, related to an XML External Entity (XXE) issue.
ModificadaBaja (3.5)1.4%—Redhat Enterprise Virtualization6/8/201417/6/2026
The oVirt storage backend in Red Hat Enterprise Virtualization 3.4 does not wipe memory snapshots when deleting a VM, even when wipe-after-delete (WAD) is configured for the VM's disk, which allows remote authenticated users with certain credentials to read portions of the deleted VM's memory and obtain sensitive…
ModificadaBaja (1.2)0.53%—Redhat Enterprise VirtualizationOpensuseRedhat Enterprise LinuxRedhat Libvirt3/8/201417/6/2026
libvirt 1.0.0 through 1.2.x before 1.2.5, when fine grained access control is enabled, allows local users to read arbitrary files via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virDomainDefineXML, (2) virNetworkCreateXML, (3)…
ModificadaBaja (1.9)0.56%—Redhat LibvirtRedhat Enterprise VirtualizationOpensuseRedhat Enterprise Linux3/8/201417/6/2026
libvirt 0.7.5 through 1.2.x before 1.2.5 allows local users to cause a denial of service (read block and hang) via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virConnectCompareCPU or (2) virConnectBaselineCPU API method, related to an XML…
ModificadaMedia (4)1.5%—Redhat Enterprise Virtualization11/7/201417/6/2026
The REST API in the ovirt-engine in oVirt, as used in Red Hat Enterprise Virtualization (rhevm) 3.4, allows remote authenticated users to read arbitrary files and have other unspecified impact via unknown vectors, related to an XML External Entity (XXE) issue.
ModificadaMedia (6.8)3.2%—GNU GlibcRedhat Enterprise VirtualizationCanonical Ubuntu LinuxRedhat Enterprise Linux10/2/201416/6/2026
The vfprintf function in stdio-common/vfprintf.c in GNU C Library (aka glibc) 2.5, 2.12, and probably other versions does not "properly restrict the use of" the alloca function when allocating the SPECS array, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and…
ModificadaMedia (5)2.1%—GNU GlibcRedhat Enterprise VirtualizationCanonical Ubuntu LinuxRedhat Enterprise Linux10/2/201416/6/2026
The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.14 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (segmentation fault and…
ModificadaMedia (5)2.2%—GNU GlibcRedhat Enterprise VirtualizationCanonical Ubuntu LinuxRedhat Enterprise Linux10/2/201416/6/2026
The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (stack corruption and crash)…
ModificadaMedia (4.3)0.97%—Redhat Enterprise Virtualization Manager24/1/201417/6/2026
The remote-viewer in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.3, when using a native SPICE client invocation method, initially makes insecure connections to the SPICE server, which allows man-in-the-middle attackers to spoof the SPICE server.
ModificadaAlta (7.2)0.41%—Redhat Enterprise Virtualization21/1/201416/6/2026
Unquoted Windows search path vulnerability in the SPICE service, as used in Red Hat Enterprise Virtualization (RHEV) 3.2, allows local users to gain privileges via a crafted application in an unspecified folder.
ModificadaAlta (7.2)0.41%—Redhat Enterprise Virtualization21/1/201416/6/2026
Unquoted Windows search path vulnerability in Red Hat Enterprise Virtualization (RHEV) 3 and 3.2 allows local users to gain privileges via a crafted application in an unspecified folder.
ModificadaAlta (7.5)16%—Redhat Cloudforms Management EngineRedhat Manageiq Enterprise Virtualization Manager11/1/201416/6/2026
SQL injection vulnerability in the miq_policy controller in Red Hat CloudForms 2.0 Management Engine (CFME) 5.1 and ManageIQ Enterprise Virtualization Manager 5.0 and earlier allows remote authenticated users to execute arbitrary SQL commands via the profile[] parameter in an explorer action.
ModificadaAlta (7.4)0.54%—Redhat Enterprise Virtualization Hypervisor27/12/201316/6/2026
libspice, as used in QEMU-KVM in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hypervisor) before 5.5-2.2 and possibly other products, allows guest OS users to read from or write to arbitrary QEMU memory by modifying the address that is used by Cairo for memory mappings.
ModificadaMedia (5)2.7%—Spice Project SpiceRedhat Enterprise VirtualizationRedhat Enterprise Linux2/11/201316/6/2026
Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0 allows remote attackers to cause a denial of service (crash) via a long password in a SPICE ticket.
ModificadaMedia (4.3)1.4%—Redhat Enterprise Virtualization16/9/201316/6/2026
Cross-site scripting (XSS) vulnerability in the addAlert function in the RedirectServlet servlet in oVirt Engine and Red Hat Enterprise Virtualization Manager (RHEV-M), as used in Red Hat Enterprise Virtualization 3 and 3.2, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
ModificadaAlta (7.2)0.46%—Redhat Enterprise Virtualization28/8/201316/6/2026
Unquoted Windows search path vulnerability in the Red Hat Enterprise Virtualization Application Provisioning Tool (RHEV-APT) in the rhev-guest-tools-iso package 3.2 allows local users to gain privileges via a Trojan horse application.
ModificadaBaja (2.7)0.56%—Redhat Enterprise Virtualization19/8/201316/6/2026
VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via invalid XML characters in a guest agent response. NOTE: this issue is due to an incomplete fix for CVE-2013-0167.
ModificadaBaja (2.7)0.56%—Redhat Enterprise Virtualization19/8/201316/6/2026
VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via guestInfo dictionaries with "unexpected fields."
ModificadaMedia (5)1.2%—Redhat Enterprise Virtualization Manager3/7/201316/6/2026
Red Hat Enterprise Virtualization Manager (RHEVM) before 3.2 does not properly check permissions for the target storage domain, which allows attackers to cause a denial of service (disk space consumption) by cloning a VM from a snapshot.
ModificadaMedia (4)1.9%—Redhat Enterprise Virtualization Manager12/3/201316/6/2026
The MoveDisk command in Red Hat Enterprise Virtualization Manager (RHEV-M) 3.1 and earlier does not properly check permissions on storage domains, which allows remote authenticated storage admins to cause a denial of service (free space consumption of other storage domains) via unspecified vectors.
ModificadaBaja (2.1)0.37%—Redhat Enterprise Virtualization Manager12/3/201316/6/2026
The domain management tool (rhevm-manage-domains) in Red Hat Enterprise Virtualization Manager (RHEV-M) 3.1 and earlier, when the validate action is enabled, logs the administrative password to a world-readable log file, which allows local users to obtain sensitive information by reading this file.
ModificadaCrítica (9.8)3.6%—Redhat Enterprise VirtualizationRedhat Enterprise LinuxPalemoon Pale Moon31/1/201316/6/2026
Stack-based buffer overflow in libpixman, as used in Pale Moon before 15.4 and possibly other products, has unspecified impact and context-dependent attack vectors. NOTE: this issue might be resultant from an integer overflow in the fast_composite_scaled_bilinear function in pixman-inlines.h, which triggers an…
ModificadaBaja (2.1)0.35%—Redhat Enterprise Virtualization Manager4/1/201316/6/2026
Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when moving disks between storage domains, does not properly wipe-after-delete, which prevents disks from being securely deleted and might allow local users to obtain sensitive information via unspecified vectors.
ModificadaBaja (2.7)0.78%—Redhat Enterprise Virtualization Manager4/1/201316/6/2026
The backend in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1 does not properly check privileges, which allows remote authenticated users to query arbitrary information via a (1) SOAP or (2) GWT request.