Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2991▼ 71 respecto a la semana anterior
Críticas / altas1367▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)458▼ 52 respecto a la semana anterior
97 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.7) | 0.53% | — | Redhat LibvirtOpensuse Leap | 6/10/2020 | 17/6/2026 | A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain. This flaw affects the polkit access control driver. Specifically, clients connecting to the read-write socket with limited ACL… | |
| Modificada | Media (6.5) | 2.4% | — | Redhat Libvirt | 2/6/2020 | 17/6/2026 | A NULL pointer dereference was found in the libvirt API responsible introduced in upstream version 3.10.0, and fixed in libvirt 6.0.0, for fetching a storage pool based on its target path. In more detail, this flaw affects storage pools created without a target path such as network-based pools like gluster and RBD.… | |
| Modificada | Media (6.5) | 2.3% | — | Redhat LibvirtRedhat Enterprise Linux | 28/4/2020 | 17/6/2026 | An issue was discovered in qemuDomainGetStatsIOThread in qemu/qemu_driver.c in libvirt 4.10.0 though 6.x before 6.1.0. A memory leak was found in the virDomainListGetStats libvirt API that is responsible for retrieving domain statistics when managing QEMU guests. This flaw allows unprivileged users with a read-only… | |
| Modificada | Media (5.7) | 0.81% | — | Redhat LibvirtDebian LinuxFedoraproject Fedora | 19/3/2020 | 17/6/2026 | qemu/qemu_driver.c in libvirt before 6.0.0 mishandles the holding of a monitor job during a query to a guest agent, which allows attackers to cause a denial of service (API blockage). | |
| Modificada | Media (4.3) | 0.68% | — | Jenkins Libvirt Slaves | 23/10/2019 | 17/6/2026 | A missing permission check in Jenkins Libvirt Slaves Plugin in form-related methods allowed users with Overall/Read access to enumerate credentials ID of credentials stored in Jenkins. | |
| Modificada | Media (6.5) | 0.84% | — | Jenkins Libvirt Slaves | 23/10/2019 | 17/6/2026 | A missing permission check in Jenkins Libvirt Slaves Plugin allows attackers with Overall/Read permission to connect to an attacker-specified SSH server using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins. | |
| Modificada | Alta (8.8) | 0.68% | — | Jenkins Libvirt Slaves | 23/10/2019 | 17/6/2026 | A cross-site request forgery vulnerability in Jenkins Libvirt Slaves Plugin allows attackers to connect to an attacker-specified SSH server using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins. | |
| Modificada | Alta (7.8) | 0.55% | — | Redhat LibvirtRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+5 | 2/8/2019 | 17/6/2026 | The virConnectBaselineHypervisorCPU() and virConnectCompareHypervisorCPU() libvirt APIs, 4.x.x before 4.10.1 and 5.x.x before 5.4.1, accept an "emulator" argument to specify the program providing emulation for a domain. Since v1.2.19, libvirt will execute that program to probe the domain's capabilities. Read-only… | |
| Modificada | Alta (7.8) | 0.52% | — | Redhat LibvirtRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+5 | 2/8/2019 | 17/6/2026 | The virConnectGetDomainCapabilities() libvirt API, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, accepts an "emulatorbin" argument to specify the program providing emulation for a domain. Since v1.2.19, libvirt will execute that program to probe the domain's capabilities. Read-only clients could specify an… | |
| Modificada | Alta (7.8) | 0.47% | — | Redhat LibvirtRedhat Enterprise LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+5 | 2/8/2019 | 17/6/2026 | It was discovered that libvirtd, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, would permit readonly clients to use the virDomainManagedSaveDefineXML() API, which would permit them to modify managed save state files. If a managed save had already been created by a privileged user, a local attacker could modify… | |
| Modificada | Alta (7.8) | 0.52% | — | Redhat LibvirtRedhat Enterprise LinuxRedhat VirtualizationRedhat Virtualization Host+1 | 30/7/2019 | 17/6/2026 | It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attacker with access to the libvirtd socket could use this to probe the… | |
| Modificada | Alta (8.8) | 1.4% | — | Redhat LibvirtFedoraproject Fedora | 22/5/2019 | 17/6/2026 | A vulnerability was found in libvirt >= 4.1.0 in the virtlockd-admin.socket and virtlogd-admin.socket systemd units. A missing SocketMode configuration parameter allows any user on the host to connect using virtlockd-admin-sock or virtlogd-admin-sock and perform administrative tasks against the virtlockd and virtlogd… | |
| Modificada | Alta (7.5) | 2.1% | — | Redhat LibvirtDebian Linux | 18/4/2019 | 17/6/2026 | libvirt-domain.c in libvirt before 1.3.1 supports virDomainGetTime API calls by guest agents with an RO connection, even though an RW connection was supposed to be required, a different vulnerability than CVE-2019-3886. | |
| Modificada | Media (5.4) | 1.1% | — | Redhat LibvirtOpensuse LeapFedoraproject Fedora | 4/4/2019 | 17/6/2026 | An incorrect permissions check was discovered in libvirt 4.8.0 and above. The readonly permission was allowed to invoke APIs depending on the guest agent, which could lead to potentially disclosing unintended information or denial of service by causing libvirt to block. | |
| Modificada | Media (6.3) | 1.5% | — | Redhat LibvirtOpensuse Leap | 27/3/2019 | 17/6/2026 | A NULL pointer dereference flaw was discovered in libvirt before version 5.0.0 in the way it gets interface information through the QEMU agent. An attacker in a guest VM can use this flaw to crash libvirtd and cause a denial of service. | |
| Modificada | Media (6.5) | 1.5% | — | Redhat Libvirt | 22/8/2018 | 17/6/2026 | A NULL pointer deference flaw was found in the way libvirt from 2.5.0 to 3.0.0 handled empty drives. A remote authenticated attacker could use this flaw to crash libvirtd daemon resulting in denial of service. | |
| Modificada | Media (5.5) | 0.41% | — | LibvirtRedhat VirtualizationRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+6 | 20/8/2018 | 17/6/2026 | libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing. | |
| Modificada | Alta (7.5) | 2.9% | — | Debian LinuxRedhat Libvirt | 28/3/2018 | 17/6/2026 | libvirt version before 4.2.0-rc1 is vulnerable to a resource exhaustion as a result of an incomplete fix for CVE-2018-5748 that affects QEMU monitor but now also triggered via QEMU guest agent. | |
| Modificada | Alta (7.8) | 0.33% | — | Redhat LibvirtDebian LinuxRedhat VirtualizationRedhat Enterprise Linux Desktop+3 | 23/2/2018 | 17/6/2026 | util/virlog.c in libvirt does not properly determine the hostname on LXC container startup, which allows local guest OS users to bypass an intended container protection mechanism and execute arbitrary commands via a crafted NSS module. | |
| Modificada | Alta (7.5) | 3.2% | — | Redhat LibvirtDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+4 | 25/1/2018 | 17/6/2026 | qemu/qemu_monitor.c in libvirt allows attackers to cause a denial of service (memory consumption) via a large QEMU reply. | |
| Modificada | Alta (8.1) | 1.7% | — | Redhat LibvirtDebian Linux | 31/10/2017 | 17/6/2026 | libvirt version 2.3.0 and later is vulnerable to a bad default configuration of "verify-peer=no" passed to QEMU by libvirt resulting in a failure to validate SSL/TLS certificates by default. | |
| Modificada | Crítica (9.8) | 3.7% | — | Redhat LibvirtDebian Linux | 13/7/2016 | 17/6/2026 | libvirt before 2.0.0 improperly disables password checking when the password on a VNC server is set to an empty string, which allows remote attackers to bypass authentication and establish a VNC session by connecting to the server. | |
| Modificada | Media (6.5) | 0.49% | — | Redhat LibvirtXEN | 25/5/2016 | 17/6/2026 | The qemu implementation in libvirt before 1.3.0 and Xen allows local guest OS users to cause a denial of service (host disk consumption) by writing to stdout or stderr. | |
| Modificada | Media (6.5) | 1.4% | — | Redhat LibvirtCanonical Ubuntu Linux | 14/4/2016 | 17/6/2026 | The virStorageVolCreateXML API in libvirt 1.2.14 through 1.2.19 allows remote authenticated users with a read-write connection to cause a denial of service (libvirtd crash) by triggering a failed unlink after creating a volume on a root_squash NFS pool. | |
| Modificada | Media (5.9) | 1.8% | — | Canonical Ubuntu LinuxRedhat Libvirt | 14/4/2016 | 16/6/2026 | The networkReloadIptablesRules function in network/bridge_driver.c in libvirt before 0.9.9 does not properly handle firewall rules on bridge networks when libvirtd is restarted, which might allow remote attackers to bypass intended access restrictions via a (1) DNS or (2) DHCP query. |