Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3006▼ 69 respecto a la semana anterior
Críticas / altas1420▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
64 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (2.1) | 0.38% | — | Redhat Enterprise Virtualization | 5/12/2014 | 17/6/2026 | The rhevm-log-collector package in Red Hat Enterprise Virtualization 3.4 uses the PostgreSQL database password on the command line when calling sosreport, which allows local users to obtain sensitive information by listing the processes. | |
| Modificada | Media (6.5) | 1.8% | — | Redhat Enterprise Virtualization Manager | 18/10/2014 | 17/6/2026 | The oVirt Engine backend module, as used in Red Hat Enterprise Virtualization Manager before 3.4.2, uses an "insecure DocumentBuilderFactory," which allows remote attackers to read arbitrary files or possibly have other unspecified impact via a crafted XML/RSDL document, related to an XML External Entity (XXE) issue. | |
| Modificada | Baja (3.5) | 1.4% | — | Redhat Enterprise Virtualization | 6/8/2014 | 17/6/2026 | The oVirt storage backend in Red Hat Enterprise Virtualization 3.4 does not wipe memory snapshots when deleting a VM, even when wipe-after-delete (WAD) is configured for the VM's disk, which allows remote authenticated users with certain credentials to read portions of the deleted VM's memory and obtain sensitive… | |
| Modificada | Baja (1.2) | 0.53% | — | Redhat Enterprise VirtualizationOpensuseRedhat Enterprise LinuxRedhat Libvirt | 3/8/2014 | 17/6/2026 | libvirt 1.0.0 through 1.2.x before 1.2.5, when fine grained access control is enabled, allows local users to read arbitrary files via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virDomainDefineXML, (2) virNetworkCreateXML, (3)… | |
| Modificada | Baja (1.9) | 0.56% | — | Redhat LibvirtRedhat Enterprise VirtualizationOpensuseRedhat Enterprise Linux | 3/8/2014 | 17/6/2026 | libvirt 0.7.5 through 1.2.x before 1.2.5 allows local users to cause a denial of service (read block and hang) via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virConnectCompareCPU or (2) virConnectBaselineCPU API method, related to an XML… | |
| Modificada | Media (4) | 1.5% | — | Redhat Enterprise Virtualization | 11/7/2014 | 17/6/2026 | The REST API in the ovirt-engine in oVirt, as used in Red Hat Enterprise Virtualization (rhevm) 3.4, allows remote authenticated users to read arbitrary files and have other unspecified impact via unknown vectors, related to an XML External Entity (XXE) issue. | |
| Modificada | Media (6.8) | 3.2% | — | GNU GlibcRedhat Enterprise VirtualizationCanonical Ubuntu LinuxRedhat Enterprise Linux | 10/2/2014 | 16/6/2026 | The vfprintf function in stdio-common/vfprintf.c in GNU C Library (aka glibc) 2.5, 2.12, and probably other versions does not "properly restrict the use of" the alloca function when allocating the SPECS array, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and… | |
| Modificada | Media (5) | 2.1% | — | GNU GlibcRedhat Enterprise VirtualizationCanonical Ubuntu LinuxRedhat Enterprise Linux | 10/2/2014 | 16/6/2026 | The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.14 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (segmentation fault and… | |
| Modificada | Media (5) | 2.2% | — | GNU GlibcRedhat Enterprise VirtualizationCanonical Ubuntu LinuxRedhat Enterprise Linux | 10/2/2014 | 16/6/2026 | The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (stack corruption and crash)… | |
| Modificada | Media (4.3) | 0.97% | — | Redhat Enterprise Virtualization Manager | 24/1/2014 | 17/6/2026 | The remote-viewer in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.3, when using a native SPICE client invocation method, initially makes insecure connections to the SPICE server, which allows man-in-the-middle attackers to spoof the SPICE server. | |
| Modificada | Alta (7.2) | 0.41% | — | Redhat Enterprise Virtualization | 21/1/2014 | 16/6/2026 | Unquoted Windows search path vulnerability in the SPICE service, as used in Red Hat Enterprise Virtualization (RHEV) 3.2, allows local users to gain privileges via a crafted application in an unspecified folder. | |
| Modificada | Alta (7.2) | 0.41% | — | Redhat Enterprise Virtualization | 21/1/2014 | 16/6/2026 | Unquoted Windows search path vulnerability in Red Hat Enterprise Virtualization (RHEV) 3 and 3.2 allows local users to gain privileges via a crafted application in an unspecified folder. | |
| Modificada | Alta (7.5) | 16% | — | Redhat Cloudforms Management EngineRedhat Manageiq Enterprise Virtualization Manager | 11/1/2014 | 16/6/2026 | SQL injection vulnerability in the miq_policy controller in Red Hat CloudForms 2.0 Management Engine (CFME) 5.1 and ManageIQ Enterprise Virtualization Manager 5.0 and earlier allows remote authenticated users to execute arbitrary SQL commands via the profile[] parameter in an explorer action. | |
| Modificada | Alta (7.4) | 0.54% | — | Redhat Enterprise Virtualization Hypervisor | 27/12/2013 | 16/6/2026 | libspice, as used in QEMU-KVM in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hypervisor) before 5.5-2.2 and possibly other products, allows guest OS users to read from or write to arbitrary QEMU memory by modifying the address that is used by Cairo for memory mappings. | |
| Modificada | Media (5) | 2.7% | — | Spice Project SpiceRedhat Enterprise VirtualizationRedhat Enterprise Linux | 2/11/2013 | 16/6/2026 | Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0 allows remote attackers to cause a denial of service (crash) via a long password in a SPICE ticket. | |
| Modificada | Media (4.3) | 1.4% | — | Redhat Enterprise Virtualization | 16/9/2013 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in the addAlert function in the RedirectServlet servlet in oVirt Engine and Red Hat Enterprise Virtualization Manager (RHEV-M), as used in Red Hat Enterprise Virtualization 3 and 3.2, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Alta (7.2) | 0.46% | — | Redhat Enterprise Virtualization | 28/8/2013 | 16/6/2026 | Unquoted Windows search path vulnerability in the Red Hat Enterprise Virtualization Application Provisioning Tool (RHEV-APT) in the rhev-guest-tools-iso package 3.2 allows local users to gain privileges via a Trojan horse application. | |
| Modificada | Baja (2.7) | 0.56% | — | Redhat Enterprise Virtualization | 19/8/2013 | 16/6/2026 | VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via invalid XML characters in a guest agent response. NOTE: this issue is due to an incomplete fix for CVE-2013-0167. | |
| Modificada | Baja (2.7) | 0.56% | — | Redhat Enterprise Virtualization | 19/8/2013 | 16/6/2026 | VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via guestInfo dictionaries with "unexpected fields." | |
| Modificada | Media (5) | 1.2% | — | Redhat Enterprise Virtualization Manager | 3/7/2013 | 16/6/2026 | Red Hat Enterprise Virtualization Manager (RHEVM) before 3.2 does not properly check permissions for the target storage domain, which allows attackers to cause a denial of service (disk space consumption) by cloning a VM from a snapshot. | |
| Modificada | Media (4) | 1.9% | — | Redhat Enterprise Virtualization Manager | 12/3/2013 | 16/6/2026 | The MoveDisk command in Red Hat Enterprise Virtualization Manager (RHEV-M) 3.1 and earlier does not properly check permissions on storage domains, which allows remote authenticated storage admins to cause a denial of service (free space consumption of other storage domains) via unspecified vectors. | |
| Modificada | Baja (2.1) | 0.37% | — | Redhat Enterprise Virtualization Manager | 12/3/2013 | 16/6/2026 | The domain management tool (rhevm-manage-domains) in Red Hat Enterprise Virtualization Manager (RHEV-M) 3.1 and earlier, when the validate action is enabled, logs the administrative password to a world-readable log file, which allows local users to obtain sensitive information by reading this file. | |
| Modificada | Crítica (9.8) | 3.6% | — | Redhat Enterprise VirtualizationRedhat Enterprise LinuxPalemoon Pale Moon | 31/1/2013 | 16/6/2026 | Stack-based buffer overflow in libpixman, as used in Pale Moon before 15.4 and possibly other products, has unspecified impact and context-dependent attack vectors. NOTE: this issue might be resultant from an integer overflow in the fast_composite_scaled_bilinear function in pixman-inlines.h, which triggers an… | |
| Modificada | Baja (2.1) | 0.35% | — | Redhat Enterprise Virtualization Manager | 4/1/2013 | 16/6/2026 | Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when moving disks between storage domains, does not properly wipe-after-delete, which prevents disks from being securely deleted and might allow local users to obtain sensitive information via unspecified vectors. | |
| Modificada | Baja (2.7) | 0.78% | — | Redhat Enterprise Virtualization Manager | 4/1/2013 | 16/6/2026 | The backend in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1 does not properly check privileges, which allows remote authenticated users to query arbitrary information via a (1) SOAP or (2) GWT request. |