Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3005▼ 85 respecto a la semana anterior
Críticas / altas1403▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
97 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.9) | 0.49% | — | Redhat Libvirt | 30/9/2013 | 16/6/2026 | The virSecurityManagerSetProcessLabel function in libvirt 0.10.2.7, 1.0.5.5, and 1.1.1, when the domain has read an uid:gid label, does not properly set group memberships, which allows local users to gain privileges. | |
| Modificada | Media (4) | 2.0% | — | Redhat Libvirt | 30/9/2013 | 16/6/2026 | The xenDaemonListDefinedDomains function in xen/xend_internal.c in libvirt 1.1.1 allows remote authenticated users to cause a denial of service (memory corruption and crash) via vectors involving the virConnectListDefinedDomains API function. | |
| Modificada | Media (4.3) | 2.2% | — | Redhat Libvirt | 30/9/2013 | 16/6/2026 | The qemuAgentCommand function in libvirt before 1.1.1, when a guest agent is not configured, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to "agent based cpu (un)plug," as demonstrated by the "virsh vcpucount foobar --guest" command. | |
| Modificada | Media (5) | 1.7% | — | Redhat Libvirt | 30/9/2013 | 16/6/2026 | Double free vulnerability in the qemuAgentGetVCPUs function in qemu/qemu_agent.c in libvirt 1.0.6 through 1.1.0 allows remote attackers to cause a denial of service (daemon crash) via a cpu count request, as demonstrated by the "virsh vcpucount dom --guest" command. | |
| Modificada | Media (4) | 2.1% | — | Redhat Libvirt | 30/9/2013 | 16/6/2026 | The qemu driver (qemu/qemu_driver.c) in libvirt before 1.1.1 allows remote authenticated users to cause a denial of service (daemon crash) via unspecified vectors involving "multiple events registration." | |
| Modificada | Media (5) | 8.3% | — | Redhat Libvirt | 30/9/2013 | 16/6/2026 | Double free vulnerability in the virConnectListAllInterfaces method in interface/interface_backend_netcf.c in libvirt 1.0.6 allows remote attackers to cause a denial of service (libvirtd crash) via a filtering flag that causes an interface to be skipped, as demonstrated by the "virsh iface-list --inactive" command. | |
| Modificada | Media (5) | 3.5% | — | Redhat Libvirt | 29/5/2013 | 16/6/2026 | The remoteDispatchStoragePoolListAllVolumes function in the storage pool manager in libvirt 1.0.5 allows remote attackers to cause a denial of service (file descriptor consumption) via a large number of requests "to list all volumes for the particular pool." | |
| Modificada | Baja (3.6) | 0.38% | — | Redhat Libvirt | 20/3/2013 | 16/6/2026 | libvirt 1.0.2 and earlier sets the group owner to kvm for device files, which allows local users to write to these files via unspecified vectors. | |
| Modificada | Media (6.8) | 5.8% | — | Redhat LibvirtOpensuseSuse Linux Enterprise DesktopSuse Linux Enterprise Server+7 | 8/2/2013 | 16/6/2026 | Use-after-free vulnerability in the virNetMessageFree function in rpc/virnetserverclient.c in libvirt 1.0.x before 1.0.2, 0.10.2 before 0.10.2.3, 0.9.11 before 0.9.11.9, and 0.9.6 before 0.9.6.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by triggering certain… | |
| Modificada | Media (5) | 3.7% | — | Redhat Libvirt | 19/11/2012 | 16/6/2026 | The virNetServerProgramDispatchCall function in libvirt before 0.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and segmentation fault) via an RPC call with (1) an event as the RPC number or (2) an RPC number whose value is in a "gap" in the RPC dispatch table. | |
| Modificada | Baja (3.5) | 2.2% | — | Redhat Libvirt | 7/8/2012 | 16/6/2026 | The virTypedParameterArrayClear function in libvirt 0.9.13 does not properly handle virDomain* API calls with typed parameters, which might allow remote authenticated users to cause a denial of service (libvirtd crash) via an RPC command with nparams set to zero, which triggers an out-of-bounds read or a free of an… | |
| Modificada | Baja (3.7) | 0.33% | — | Redhat Libvirt | 17/6/2012 | 16/6/2026 | libvirt, possibly before 0.9.12, does not properly assign USB devices to virtual machines when multiple devices have the same vendor and product ID, which might cause the wrong device to be associated with a guest and might allow local users to access unintended USB devices. | |
| Modificada | Media (4) | 3.5% | — | Redhat Libvirt | 10/8/2011 | 16/6/2026 | Integer overflow in libvirt before 0.9.3 allows remote authenticated users to cause a denial of service (libvirtd crash) and possibly execute arbitrary code via a crafted VirDomainGetVcpus RPC call that triggers memory corruption. | |
| Modificada | Media (4.4) | 0.28% | — | Redhat Libvirt | 10/8/2011 | 16/6/2026 | The virSecurityManagerGetPrivateData function in security/security_manager.c in libvirt 0.8.8 through 0.9.1 uses the wrong argument for a sizeof call, which causes incorrect processing of "security manager private data" that "reopens disk probing" and might allow guest OS users to read arbitrary files on the host OS.… | |
| Modificada | Baja (3.3) | 1.2% | — | Redhat Libvirt | 31/5/2011 | 16/6/2026 | libvirtd in libvirt before 0.9.0 does not use thread-safe error reporting, which allows remote attackers to cause a denial of service (crash) by causing multiple threads to report errors at the same time. | |
| Modificada | Media (6.9) | 1.5% | — | Redhat Libvirt | 15/3/2011 | 16/6/2026 | libvirt.c in the API in Red Hat libvirt 0.8.8 does not properly restrict operations in a read-only connection, which allows remote attackers to cause a denial of service (host OS crash) or possibly execute arbitrary code via a (1) virNodeDeviceDettach, (2) virNodeDeviceReset, (3) virDomainRevertToSnapshot, (4)… | |
| Modificada | Baja (2.1) | 0.42% | — | Libvirt | 19/8/2010 | 16/6/2026 | Red Hat libvirt 0.2.0 through 0.8.2 creates iptables rules with improper mappings of privileged source ports, which allows guest OS users to bypass intended access restrictions by leveraging IP address and source-port values, as demonstrated by copying and deleting an NFS directory tree. | |
| Modificada | Media (4.4) | 0.33% | — | Libvirt | 19/8/2010 | 16/6/2026 | Red Hat libvirt, possibly 0.6.0 through 0.8.2, creates new images without setting the user-defined backing-store format, which allows guest OS users to read arbitrary files on the host OS via unspecified vectors. | |
| Modificada | Media (4.4) | 0.32% | — | Libvirt | 19/8/2010 | 16/6/2026 | Red Hat libvirt, possibly 0.7.2 through 0.8.2, recurses into disk-image backing stores without extracting the defined disk backing-store format, which might allow guest OS users to read arbitrary files on the host OS, and possibly have unspecified other impact, via unknown vectors. | |
| Modificada | Media (4.4) | 0.32% | — | Libvirt | 19/8/2010 | 16/6/2026 | Red Hat libvirt, possibly 0.6.1 through 0.8.2, looks up disk backing stores without referring to the user-defined main disk format, which might allow guest OS users to read arbitrary files on the host OS, and possibly have unspecified other impact, via unknown vectors. | |
| Modificada | Media (4.4) | 1.2% | — | Libvirt | 11/2/2009 | 16/6/2026 | Buffer overflow in the proxyReadClientSocket function in proxy/libvirt_proxy.c in libvirt_proxy 0.5.1 might allow local users to gain privileges by sending a portion of the header of a virProxyPacket packet, and then sending the remainder of the packet with crafted values in the header, related to use of uninitialized… | |
| Modificada | Alta (7.2) | 0.38% | — | Libvirt | 19/12/2008 | 16/6/2026 | Multiple methods in libvirt 0.3.2 through 0.5.1 do not check if a connection is read-only, which allows local users to bypass intended access restrictions and perform administrative actions. |