Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

610 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.8)7.4%—Pyyaml LibyamlCanonical Ubuntu LinuxRedhat OpenstackDebian Linux+26/2/201417/6/2026
The yaml_parser_scan_tag_uri function in scanner.c in LibYAML before 0.1.5 performs an incorrect cast, which allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted tags in a YAML document, which triggers a heap-based buffer overflow.
ModificadaAlta (7.1)2.4%—Openstack ComputeOpenstack GrizzlyOpenstack HavanaOpenstack Icehouse6/2/201417/6/2026
The i_create_images_and_backing (aka create_images_and_backing) method in libvirt driver in OpenStack Compute (Nova) Grizzly, Havana, and Icehouse, when using KVM live block migration, does not properly create all expected files, which allows attackers to obtain snapshot root disk contents of other users via ephemeral…
ModificadaBaja (2.1)0.37%—Openstack FolsomOpenstack GrizzlyOpenstack Havana6/2/201416/6/2026
OpenStack Compute (Nova) Folsom, Grizzly, and Havana does not properly verify the virtual size of a QCOW2 image, which allows local users to cause a denial of service (host file system disk consumption) via a compressed QCOW2 image. NOTE: this issue is due to an incomplete fix for CVE-2013-2096.
ModificadaMedia (4.3)1.9%—Openstack OsloRedhat Openstack2/2/201417/6/2026
The python-qpid client (common/rpc/impl_qpid.py) in OpenStack Oslo before 2013.2 does not enforce SSL connections when qpid_protocol is set to ssl, which allows remote attackers to obtain sensitive information by sniffing the network.
ModificadaBaja (3.3)0.48%—Openstack Nova23/1/201417/6/2026
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
ModificadaMedia (4.3)1.9%—Openstack Swift23/1/201417/6/2026
The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.
ModificadaMedia (5.5)2.1%—Openstack Python-keystoneclient21/1/201416/6/2026
python-keystoneclient before 0.2.4, as used in OpenStack Keystone (Folsom), does not properly check expiry for PKI tokens, which allows remote authenticated users to (1) retain use of a token after it has expired, or (2) use a revoked token once it expires.
ModificadaMedia (5)1.9%—Openstack Havana7/1/201417/6/2026
Interaction error in OpenStack Nova and Neutron before Havana 2013.2.1 and icehouse-1 does not validate the instance ID of the tenant making a request, which allows remote tenants to obtain sensitive metadata by spoofing the device ID that is bound to a port, which is not properly handled by (1)…
ModificadaBaja (2.1)0.24%—Openstack ComputeOpenstack FolsomOpenstack GrizzlyOpenstack Havana27/12/201316/6/2026
keystone/middleware/auth_token.py in OpenStack Nova Folsom, Grizzly, and Havana uses an insecure temporary directory for storing signing certificates, which allows local users to spoof servers by pre-creating this directory, which is reused by Nova, as demonstrated using /tmp/keystone-signing-nova on Fedora.
ModificadaAlta (9.3)5.3%—Rackspace Openstack Windows Guest Agent24/12/201317/6/2026
The Updater in Rackspace Openstack Windows Guest Agent for XenServer before 1.2.6.0 allows remote attackers to execute arbitrary code via a crafted serialized .NET object to TCP port 1984, which triggers the download and extraction of a ZIP file that overwrites the Agent service binary.
ModificadaMedia (4)1.7%—Openstack Heat14/12/201317/6/2026
The ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 allows remote authenticated users to bypass the tenant scoping restrictions via a modified tenant_id in the request path.
ModificadaMedia (4)1.0%—Openstack Heat14/12/201317/6/2026
The cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 does not properly enforce policy rules, which allows local in-instance users to bypass intended access restrictions and (1) create a stack via the CreateStack method or (2) update a stack via…
ModificadaMedia (5.8)2.2%—Openstack KeystoneCanonical Ubuntu LinuxRedhat Openstack14/12/201317/6/2026
The ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1 and Icehouse before icehouse-2 does not return a trust-scoped token when one is received, which allows remote trust users to gain privileges by generating EC2 credentials from a trust-scoped token and using them in an ec2tokens API request.
ModificadaBaja (1.9)0.41%—Openstack Ceilometer23/11/201317/6/2026
(1) impl_db2.py and (2) impl_mongodb.py in OpenStack Ceilometer 2013.2 and earlier, when the logging level is set to INFO, logs the connection string from ceilometer.conf, which allows local users to obtain sensitive information (the DB2 or MongoDB password) by reading the log file.
ModificadaMedia (4.3)1.7%—Openstack HorizonOpensuseCanonical Ubuntu Linux23/11/201317/6/2026
Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2013.2 and earlier allow local users to inject arbitrary web script or HTML via an instance name to (1) "Volumes" or (2) "Network Topology" page.
ModificadaBaja (2.1)0.35%—Openstack Image Registry AND Delivery Service (glance)23/11/201316/6/2026
The API before 2.1 in OpenStack Image Registry and Delivery Service (Glance) makes it easier for local users to inject images into arbitrary tenants by adding the tenant as a member of the image.
ModificadaMedia (6.3)0.36%—NagiosRedhat Openstack23/11/201316/6/2026
rss-newsfeed.php in Nagios Core 3.4.4, 3.5.1, and earlier, when MAGPIE_CACHE_ON is set to 1, allows local users to overwrite arbitrary files via a symlink attack on /tmp/magpie_cache.
ModificadaMedia (6.3)0.35%—Redhat Openstack23/11/201316/6/2026
nagios.upgrade_to_v3.sh, as distributed by Red Hat and possibly others for Nagios Core 3.4.4, 3.5.1, and earlier, allows local users to overwrite arbitrary files via a symlink attack on a temporary nagioscfg file with a predictable name in /tmp/.
ModificadaAlta (7.5)1.2%—Redhat OpenstackTheforeman Foreman20/11/201316/6/2026
Multiple SQL injection vulnerabilities in app/models/concerns/host_common.rb in Foreman before 1.2.3 allow remote attackers to execute arbitrary SQL commands via the (1) fqdn or (2) hostgroup parameter.
ModificadaMedia (6.4)1.8%—Openstack HavanaOpenstack GrizzlyOpenstack Folsom5/11/201316/6/2026
The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Havana before 2013.2 does not properly apply security groups (1) when resizing an image or (2) during live migration, which allows remote attackers to bypass intended restrictions.
ModificadaBaja (3.3)0.45%—Openstack GrizzlyOpenstack Havana2/11/201316/6/2026
The LDAP backend in OpenStack Identity (Keystone) Grizzly and Havana, when removing a role on a tenant for a user who does not have that role, adds the role to the user, which allows local users to gain privileges.
ModificadaBaja (1.9)0.44%—Openstack FolsomOpenstack GrizzlyOpenstack Havana2/11/201316/6/2026
OpenStack Compute (Nova) Folsom, Grizzly, and Havana, when use_cow_images is set to False, does not verify the virtual size of a QCOW2 image, which allows local users to cause a denial of service (host file system disk consumption) by transferring an image with a large virtual size that does not contain a large amount…
ModificadaBaja (3.5)1.7%—Openstack FolsomOpenstack GrizzlyRedhat Openstack29/10/201316/6/2026
OpenStack Compute (Nova) Folsom, Grizzly, and earlier, when using Apache Qpid for the RPC backend, does not properly handle errors that occur during messaging, which allows remote attackers to cause a denial of service (connection pool consumption), as demonstrated using multiple requests that send long strings to an…
ModificadaMedia (4)2.1%—Openstack ComputeRedhat Openstack29/10/201316/6/2026
Algorithmic complexity vulnerability in OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-3 does not properly handle network source security group policy updates, which allows remote authenticated users to cause a denial of service (nova-network consumption) via a large number of server-creation…
ModificadaBaja (3.5)3.1%—Openstack GlanceCanonical Ubuntu Linux27/10/201316/6/2026
OpenStack Image Registry and Delivery Service (Glance) Folsom, Grizzly before 2013.1.4, and Havana before 2013.2, when the download_image policy is configured, does not properly restrict access to cached images, which allows remote authenticated users to read otherwise restricted images via an image UUID.
Orbitaley — Vulnerabilidades