Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
368 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 1.5% | — | Redhat Jboss BPM SuiteRedhat Jboss Data Virtualization & Services | 27/7/2018 | 17/6/2026 | It was discovered that the Dashbuilder login page as used in Red Hat JBoss BPM Suite before 6.4.2 and Red Hat JBoss Data Virtualization & Services before 6.4.3 could be opened in an IFRAME, which made it possible to intercept and manipulate requests. An attacker could use this flaw to trick a user into performing… | |
| Modificada | Media (6.3) | 0.28% | — | Redhat Enterprise Virtualization | 27/7/2018 | 17/6/2026 | When updating a password in the rhvm database the ovirt-aaa-jdbc-tool tools before 1.1.3 fail to correctly check for the current password if it is expired. This would allow access to an attacker with access to change the password on accounts with expired passwords, gaining access to those accounts. | |
| Modificada | Alta (8.6) | 3.3% | — | QemuRedhat VirtualizationCanonical Ubuntu LinuxDebian Linux | 27/7/2018 | 17/6/2026 | The Network Block Device (NBD) server in Quick Emulator (QEMU) before 2.11 is vulnerable to a denial of service issue. It could occur if a client sent large option requests, making the server waste CPU time on reading up to 4GB per request. A client could use this flaw to keep the NBD server from serving other… | |
| Modificada | Media (6.6) | 1.1% | — | OvirtRedhat Virtualization | 27/7/2018 | 17/6/2026 | ovirt-engine before version 4.1.7.6 with log level set to DEBUG includes passwords in the log file without masking. Only administrators can change the log level and only administrators can access the logs. This presents a risk when debug-level logs are shared with vendors or other parties to troubleshoot issues. | |
| Modificada | Media (5.5) | 1.3% | — | Redhat VirtualizationRedhat Jboss Enterprise Application PlatformRedhat Wildfly Core | 27/7/2018 | 17/6/2026 | WildFly Core before version 6.0.0.Alpha3 does not properly validate file paths in .war archives, allowing for the extraction of crafted .war archives to overwrite arbitrary files. This is an instance of the 'Zip Slip' vulnerability. | |
| Modificada | Alta (7.5) | 5.5% | — | QemuRedhat OpenstackRedhat Virtualization | 26/7/2018 | 17/6/2026 | An assertion-failure flaw was found in Qemu before 2.10.1, in the Network Block Device (NBD) server's initial connection negotiation, where the I/O coroutine was undefined. This could crash the qemu-nbd server if a client sent unexpected data during connection negotiation. A remote user or process could use this flaw… | |
| Modificada | Media (4.9) | 1.4% | — | Redhat Ansible EngineRedhat Virtualization | 26/7/2018 | 17/6/2026 | An input validation vulnerability was found in Ansible's mysql_user module before 2.2.1.0, which may fail to correctly change a password in certain circumstances. Thus the previous password would still be active when it should have been changed. | |
| Modificada | Crítica (9.8) | 4.8% | — | Redhat Openshift Container PlatformRedhat OpenstackRedhat Storage ConsoleRedhat Virtualization+5 | 19/7/2018 | 17/6/2026 | Ansible before versions 2.3.1.0 and 2.4.0.0 fails to properly mark lookup-plugin results as unsafe. If an attacker could control the results of lookup() calls, they could inject Unicode strings to be parsed by the jinja2 templating system, resulting in code execution. By default, the jinja2 templating language is now… | |
| Modificada | Alta (7.8) | 0.59% | — | Redhat Ansible EngineRedhat Ceph StorageRedhat Gluster StorageRedhat Openshift+6 | 13/7/2018 | 17/6/2026 | A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an attacker, thus allowing the attacker to execute arbitrary code. | |
| Modificada | Alta (7.8) | 1.0% | 💥 Exploit | Linux KernelDebian LinuxCanonical Ubuntu LinuxFedoraproject Fedora+23 | 6/7/2018 | 17/6/2026 | The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a… | |
| Modificada | Media (5.9) | 3.1% | — | Redhat Ansible EngineRedhat CloudformsRedhat OpenstackRedhat Virtualization+2 | 3/7/2018 | 17/6/2026 | Ansible 2.5 prior to 2.5.5, and 2.4 prior to 2.4.5, do not honor the no_log task flag for failed tasks. When the no_log flag has been used to protect sensitive data passed to a task from being logged, and that task does not run successfully, Ansible will expose sensitive data in log files and on the terminal of the… | |
| Modificada | Alta (7.8) | 0.49% | — | Redhat Ansible EngineRedhat OpenstackRedhat VirtualizationRedhat Virtualization Host | 2/7/2018 | 17/6/2026 | In ansible it was found that inventory variables are loaded from current working directory when running ad-hoc command which are under attacker's control, allowing to run arbitrary code as a result. | |
| Modificada | Crítica (9.8) | 0.99% | — | OvirtRedhat Enterprise Virtualization Manager | 26/6/2018 | 17/6/2026 | ovirt-engine before version ovirt 4.2.2 is vulnerable to an information exposure through log files. When engine-backup was run with one of the options "--provision*db", the database username and password were logged in cleartext. Sharing the provisioning log might inadvertently leak database passwords. | |
| Modificada | Alta (8.8) | 3.0% | — | Tibco Data Virtualization | 20/6/2018 | 17/6/2026 | The version control adapters component of TIBCO Data Virtualization (formerly known as Cisco Information Server) contains vulnerabilities that may allow for arbitrary command execution. Affected releases are TIBCO Data Virtualization: 7.0.5; 7.0.6. | |
| Modificada | Media (5.3) | 7.2% | 💥 Exploit | Linux KernelRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+3 | 20/6/2018 | 17/6/2026 | A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory containing command line arguments (or environment strings), an attacker can cause utilities from psutils or procps (such as ps, w) or any other program which makes a read() call to the… | |
| Modificada | Crítica (9.8) | 1.4% | — | Ovirt-ansible-rolesRedhat Enterprise Virtualization | 20/6/2018 | 17/6/2026 | ovirt-ansible-roles before version 1.0.6 has a vulnerability due to a missing no_log directive, resulting in the 'Add oVirt Provider to ManageIQ/CloudForms' playbook inadvertently disclosing admin passwords in the provisioning log. In an environment where logs are shared with other parties, this could lead to… | |
| Modificada | Media (5.3) | 1.9% | — | Ovirt-engineRedhat VirtualizationRedhat Virtualization Host | 19/6/2018 | 17/6/2026 | The web console login form in ovirt-engine before version 4.2.3 returned different errors for non-existent users and invalid passwords, allowing an attacker to discover the names of valid user accounts. | |
| Modificada | Alta (8.2) | 0.82% | — | QemuCanonical Ubuntu LinuxRedhat OpenstackRedhat Enterprise Linux Desktop+7 | 13/6/2018 | 17/6/2026 | m_cat in slirp/mbuf.c in Qemu has a heap-based buffer overflow via incoming fragmented datagrams. | |
| Modificada | Alta (7.8) | 0.35% | — | Google AndroidRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+2 | 12/6/2018 | 17/6/2026 | In the function wmi_set_ie(), the length validation code does not handle unsigned integer overflow properly. As a result, a large value of the 'ie_len' argument can cause a buffer overflow in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Kernel. | |
| Modificada | Media (5.5) | 0.84% | 💥 PoC | Linux KernelDebian LinuxRedhat Virtualization HostRedhat Enterprise Linux Desktop+2 | 12/6/2018 | 17/6/2026 | In the Linux Kernel before version 4.15.8, 4.14.25, 4.9.87, 4.4.121, 4.1.51, and 3.2.102, an error in the "_sctp_make_chunk()" function (net/sctp/sm_make_chunk.c) when handling SCTP packets length can be exploited to cause a kernel crash. | |
| Modificada | Alta (7.5) | 3.6% | — | Bouncycastle Bc-javaBouncycastle Fips Java APIDebian LinuxOracle API Gateway+16 | 5/6/2018 | 17/6/2026 | Bouncy Castle BC 1.54 - 1.59, BC-FJA 1.0.0, BC-FJA 1.0.1 and earlier have a flaw in the Low-level interface to RSA key pair generator, specifically RSA Key Pairs generated in low-level API with added certainty may have less M-R tests than expected. This appears to be fixed in versions BC 1.60 beta 4 and later, BC-FJA… | |
| Modificada | Media (5.5) | 61% | 💥 Exploit | Intel Atom CIntel Atom EIntel Atom X5-e3930Intel Atom X5-e3940+278 | 22/5/2018 | 17/6/2026 | Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB),… | |
| Modificada | Media (6.1) | 1.8% | — | Redhat UndertowRedhat Jboss Enterprise Application PlatformRedhat Virtualization Host | 21/5/2018 | 17/6/2026 | In Undertow before versions 7.1.2.CR1, 7.1.2.GA it was found that the fix for CVE-2016-4993 was incomplete and Undertow web server is vulnerable to the injection of arbitrary HTTP headers, and also response splitting, due to insufficient sanitization and validation of user input before the input is used as part of an… | |
| Modificada | Alta (7.8) | 0.88% | — | GNU GlibcRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+6 | 18/5/2018 | 17/6/2026 | An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper. | |
| Modificada | Crítica (9.8) | 7.1% | — | GNU GlibcRedhat Virtualization HostRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+5 | 18/5/2018 | 17/6/2026 | stdlib/canonicalize.c in the GNU C Library (aka glibc or libc6) 2.27 and earlier, when processing very long pathname arguments to the realpath function, could encounter an integer overflow on 32-bit architectures, leading to a stack-based buffer overflow and, potentially, arbitrary code execution. |