Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
223 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 5.0% | — | PythonFedoraproject FedoraCanonical Ubuntu LinuxRedhat Ansible Tower+4 | 18/6/2018 | 17/6/2026 | python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in pop3lib's apop() method. An attacker could use this flaw to cause denial of service. | |
| Modificada | Media (4.7) | 0.89% | — | Gnupg LibgcryptCanonical Ubuntu LinuxDebian LinuxRedhat Ansible Tower+4 | 13/6/2018 | 17/6/2026 | Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an… | |
| Modificada | Media (5.5) | 1.9% | — | Freedesktop PopplerCanonical Ubuntu LinuxRedhat Ansible TowerRedhat Enterprise Linux Desktop+3 | 10/5/2018 | 17/6/2026 | The FoFiType1C::cvtGlyph function in fofi/FoFiType1C.cc in Poppler through 0.64.0 allows remote attackers to cause a denial of service (infinite recursion) via a crafted PDF file, as demonstrated by pdftops. | |
| Modificada | Media (6.5) | 2.4% | — | Freedesktop PopplerCanonical Ubuntu LinuxDebian LinuxRedhat Ansible Tower+3 | 6/5/2018 | 17/6/2026 | There is a NULL pointer dereference in the AnnotPath::getCoordsLength function in Annot.h in an Ubuntu package for Poppler 0.24.5. A crafted input will lead to a remote denial of service attack. Later Ubuntu packages such as for Poppler 0.41.0 are not affected. | |
| Modificada | Media (6.5) | 2.2% | — | Gnome LibgxpsRedhat Ansible TowerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 6/5/2018 | 17/6/2026 | There is a stack-based buffer over-read in calling GLib in the function gxps_images_guess_content_type of gxps-images.c in libgxps through 0.3.0 because it does not reject negative return values from a g_input_stream_read call. A crafted input will lead to a remote denial of service attack. | |
| Modificada | Alta (7.4) | 1.9% | — | Redhat Ansible | 4/5/2018 | 16/6/2026 | Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys. | |
| Modificada | Media (6.5) | 2.2% | — | Gnome LibgxpsRedhat Ansible TowerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+2 | 4/5/2018 | 17/6/2026 | There is a heap-based buffer over-read in the function ft_font_face_hash of gxps-fonts.c in libgxps through 0.3.0. A crafted input will lead to a remote denial of service attack. | |
| Modificada | Alta (8.8) | 2.5% | — | Redhat Ansible TowerRedhat Cloudforms | 2/5/2018 | 17/6/2026 | Ansible Tower through version 3.2.3 has a vulnerability that allows users only with access to define variables for a job template to execute arbitrary code on the Tower server. | |
| Modificada | Alta (7.2) | 2.0% | — | Redhat Ansible TowerRedhat Cloudforms | 2/5/2018 | 17/6/2026 | Ansible Tower before version 3.2.4 has a flaw in the management of system and organization administrators that allows for privilege escalation. System administrators that are members of organizations can have their passwords reset by organization administrators, allowing organization administrators access to the… | |
| Modificada | Alta (8.1) | 17% | 💥 Exploit | Redhat AnsibleAnsibleRedhat Openstack | 24/4/2018 | 17/6/2026 | Ansible before versions 2.1.4, 2.2.1 is vulnerable to an improper input validation in Ansible's handling of data sent from client systems. An attacker with control over a client system being managed by Ansible and the ability to send facts back to the Ansible server could use this flaw to execute arbitrary code on the… | |
| Modificada | Media (5.6) | 0.70% | — | Jenkins Ansible | 5/4/2018 | 17/6/2026 | A man in the middle vulnerability exists in Jenkins Ansible Plugin 0.8 and older in AbstractAnsibleInvocation.java, AnsibleAdHocCommandBuilder.java, AnsibleAdHocCommandInvocationTest.java, AnsibleContext.java, AnsibleJobDslExtension.java, AnsiblePlaybookBuilder.java, AnsiblePlaybookStep.java that disables host key… | |
| Modificada | Crítica (9.8) | 27% | 💥 Exploit | ParamikoRedhat Ansible EngineRedhat CloudformsRedhat Virtualization+7 | 13/3/2018 | 17/6/2026 | transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.18.5, 2.0.x before 2.0.8, 2.1.x before 2.1.5, 2.2.x before 2.2.3, 2.3.x before 2.3.2, and 2.4.x before 2.4.1 does not properly check whether authentication is completed before processing other requests, as demonstrated by… | |
| Modificada | Crítica (9.8) | 3.6% | — | Redhat AnsibleRedhat Enterprise Linux Server | 21/11/2017 | 17/6/2026 | A flaw was found in the way Ansible (2.3.x before 2.3.3, and 2.4.x before 2.4.1) passed certain parameters to the jenkins_plugin module. Remote attackers could use this flaw to expose sensitive information from a remote host's logs. This flaw was fixed by not allowing passwords to be specified in the "params"… | |
| Modificada | Alta (7.8) | 3.0% | — | Ansible-vault Project Ansible-vault | 14/9/2017 | 17/6/2026 | An exploitable vulnerability exists in the yaml loading functionality of ansible-vault before 1.0.5. A specially crafted vault can execute arbitrary python commands resulting in command execution. An attacker can insert python into the vault to trigger this vulnerability. | |
| Modificada | Alta (8.8) | 2.5% | — | Redhat Ansible | 8/6/2017 | 17/6/2026 | The user module in ansible before 1.6.6 allows remote authenticated users to execute arbitrary commands. | |
| Modificada | Alta (7.8) | 0.45% | — | Redhat Ansible | 7/6/2017 | 17/6/2026 | The chroot, jail, and zone connection plugins in ansible before 1.9.2 allow local users to escape a restricted environment via a symlink attack. | |
| Modificada | Alta (7.8) | 0.47% | — | Fedoraproject FedoraRedhat Ansible | 3/6/2016 | 17/6/2026 | The create_script function in the lxc_container module in Ansible before 1.9.6-1 and 2.x before 2.0.2.0 allows local users to write to arbitrary files or gain privileges via a symlink attack on (1) /opt/.lxc-attach-script, (2) the archived container in the archive_path directory, or the (3) lxc-attach-script.log or… | |
| Modificada | Media (4.3) | 0.95% | — | Redhat Ansible | 12/8/2015 | 17/6/2026 | Ansible before 1.9.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | |
| Modificada | Media (5) | 8.5% | 💥 Exploit | Ansible Tower | 4/2/2015 | 17/6/2026 | Ansible Tower (aka Ansible UI) before 2.0.5 allows remote attackers to bypass authentication and obtain sensitive information via a websocket connection to socket.io/1/. | |
| Modificada | Media (6.5) | 6.1% | 💥 Exploit | Ansible Tower | 4/2/2015 | 17/6/2026 | Ansible Tower (aka Ansible UI) before 2.0.5 allows remote organization administrators to gain privileges by creating a superuser account. | |
| Modificada | Media (4.3) | 5.2% | 💥 Exploit | Ansible Tower | 27/1/2015 | 17/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in Ansible Tower (aka Ansible UI) before 2.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) order_by parameter to credentials/, (2) inventories/, (3) projects/, or (4) users/3/permissions/ in api/v1/ or the (5) next_run parameter to… | |
| Modificada | Baja (3.3) | 0.33% | — | Redhat Ansible | 16/9/2013 | 16/6/2026 | lib/ansible/playbook/__init__.py in Ansible 1.2.x before 1.2.3, when playbook does not run due to an error, allows local users to overwrite arbitrary files via a symlink attack on a retry file with a predictable name in /var/tmp/ansible/. | |
| Modificada | Baja (1.9) | 0.34% | — | Redhat Ansible | 16/9/2013 | 16/6/2026 | runner/connection_plugins/ssh.py in Ansible before 1.2.3, when using ControlPersist, allows local users to redirect a ssh session via a symlink attack on a socket file with a predictable name in /tmp/. |