Redhat Enterprise Virtualization vulnerabilities
36 known vulnerabilities affecting redhat/enterprise_virtualization.
Total CVEs
36
CISA KEV
0
Public exploits
2
Exploited in wild
1
Severity breakdown
CRITICAL3HIGH7MEDIUM18LOW8
Vulnerabilities
Page 1 of 2
CVE-2015-5201HIGHCVSS 7.5fixed in 3.5.62020-02-25
CVE-2015-5201 [HIGH] CWE-306 CVE-2015-5201: VDSM and libvirt in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H) 7-7.x before 7-7.2-201
VDSM and libvirt in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H) 7-7.x before 7-7.2-20151119.0 and 6-6.x before 6-6.7-20151117.0 as packaged in Red Hat Enterprise Virtualization before 3.5.6 when VSDM is run with -spice disable-ticketing and a VM is suspended and then restored, allows remote attackers to log in without authentication via un
nvd
CVE-2014-8167MEDIUMCVSS 5.9v3.02019-11-13
CVE-2014-8167 [MEDIUM] CWE-295 CVE-2014-8167: vdsm and vdsclient does not validate certficate hostname from another vdsm which could facilitate a
vdsm and vdsclient does not validate certficate hostname from another vdsm which could facilitate a man-in-the-middle attack
nvd
CVE-2013-4280MEDIUMCVSS 5.5v3.02019-11-04
CVE-2013-4280 [MEDIUM] CWE-668 CVE-2013-4280: Insecure temporary file vulnerability in RedHat vsdm 4.9.6.
Insecure temporary file vulnerability in RedHat vsdm 4.9.6.
nvd
CVE-2017-2614MEDIUMCVSS 6.3v4.02018-07-27
CVE-2017-2614 [MEDIUM] CWE-20 CVE-2017-2614: When updating a password in the rhvm database the ovirt-aaa-jdbc-tool tools before 1.1.3 fail to cor
When updating a password in the rhvm database the ovirt-aaa-jdbc-tool tools before 1.1.3 fail to correctly check for the current password if it is expired. This would allow access to an attacker with access to change the password on accounts with expired passwords, gaining access to those accounts.
nvd
CVE-2018-1117CRITICALCVSS 9.8v4.12018-06-20
CVE-2018-1117 [MEDIUM] CWE-532 CVE-2018-1117: ovirt-ansible-roles before version 1.0.6 has a vulnerability due to a missing no_log directive, resu
ovirt-ansible-roles before version 1.0.6 has a vulnerability due to a missing no_log directive, resulting in the 'Add oVirt Provider to ManageIQ/CloudForms' playbook inadvertently disclosing admin passwords in the provisioning log. In an environment where logs are shared with other parties, this could lead to privilege escalation.
nvd
CVE-2018-1111HIGHCVSS 7.5ExploitedPoCv4.0v4.22018-05-17
CVE-2018-1111 [HIGH] CWE-77 CVE-2018-1111: DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a comman
DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a command injection flaw in the NetworkManager integration script included in the DHCP client. A malicious DHCP server, or an attacker on the local network able to spoof DHCP responses, could use this flaw to execute arbitrary commands with root privileges on syst
nvd
CVE-2018-1074HIGHCVSS 7.2v4.02018-04-26
CVE-2018-1074 [HIGH] CWE-200 CVE-2018-1074: ovirt-engine API and administration web portal before versions 4.2.2.5, 4.1.11.2 is vulnerable to an
ovirt-engine API and administration web portal before versions 4.2.2.5, 4.1.11.2 is vulnerable to an exposure of Power Management credentials, including cleartext passwords to Host Administrators. A Host Administrator could use this flaw to gain access to the power management systems of hosts they control.
nvd
CVE-2016-6310MEDIUMCVSS 5.5≤ 3.62017-08-22
CVE-2016-6310 [MEDIUM] CWE-200 CVE-2016-6310: oVirt Engine discloses the ENGINE_HTTPS_PKI_TRUST_STORE_PASSWORD in /var/log/ovirt-engine/engine.log
oVirt Engine discloses the ENGINE_HTTPS_PKI_TRUST_STORE_PASSWORD in /var/log/ovirt-engine/engine.log file in RHEV before 4.0.
nvd
CVE-2016-6338MEDIUMCVSS 6.8v4.02017-04-20
CVE-2016-6338 [MEDIUM] CWE-284 CVE-2016-6338: ovirt-engine-webadmin, as used in Red Hat Enterprise Virtualization Manager (aka RHEV-M) for Servers
ovirt-engine-webadmin, as used in Red Hat Enterprise Virtualization Manager (aka RHEV-M) for Servers and RHEV-M 4.0, allows physically proximate attackers to bypass a webadmin session timeout restriction via vectors related to UI selections, which trigger repeating queries.
nvd
CVE-2016-4443MEDIUMCVSS 5.5v3.62016-12-14
CVE-2016-4443 [MEDIUM] CWE-532 CVE-2016-4443: Red Hat Enterprise Virtualization (RHEV) Manager 3.6 allows local users to obtain encryption keys, c
Red Hat Enterprise Virtualization (RHEV) Manager 3.6 allows local users to obtain encryption keys, certificates, and other sensitive information by reading the engine-setup log file.
nvd
CVE-2016-5432LOWCVSS 3.3v4.02016-10-03
CVE-2016-5432 [LOW] CWE-532 CVE-2016-5432: The ovirt-engine-provisiondb utility in Red Hat Enterprise Virtualization (RHEV) Engine 4.0 allows l
The ovirt-engine-provisiondb utility in Red Hat Enterprise Virtualization (RHEV) Engine 4.0 allows local users to obtain sensitive database provisioning information by reading log files.
nvd
CVE-2015-1841LOWCVSS 3.7v3.02015-09-08
CVE-2015-1841 [LOW] CWE-17 CVE-2015-1841: The Web Admin interface in Red Hat Enterprise Virtualization Manager (RHEV-M) allows local users to
The Web Admin interface in Red Hat Enterprise Virtualization Manager (RHEV-M) allows local users to bypass the timeout function by selecting a VM in the VM grid view.
nvd
CVE-2015-3456HIGHCVSS 7.7PoCv3.02015-05-13
CVE-2015-3456 [HIGH] CWE-119 CVE-2015-3456: The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local gue
The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denial of service (out-of-bounds write and guest crash) or possibly execute arbitrary code via the (1) FD_CMD_READ_ID, (2) FD_CMD_DRIVE_SPECIFICATION_COMMAND, or other unspecified commands, aka VENOM.
nvd
CVE-2014-3561LOWCVSS 2.1v3.42014-12-05
CVE-2014-3561 [LOW] CWE-200 CVE-2014-3561: The rhevm-log-collector package in Red Hat Enterprise Virtualization 3.4 uses the PostgreSQL databas
The rhevm-log-collector package in Red Hat Enterprise Virtualization 3.4 uses the PostgreSQL database password on the command line when calling sosreport, which allows local users to obtain sensitive information by listing the processes.
nvd
CVE-2014-3559LOWCVSS 3.5v3.42014-08-06
CVE-2014-3559 [LOW] CWE-264 CVE-2014-3559: The oVirt storage backend in Red Hat Enterprise Virtualization 3.4 does not wipe memory snapshots wh
The oVirt storage backend in Red Hat Enterprise Virtualization 3.4 does not wipe memory snapshots when deleting a VM, even when wipe-after-delete (WAD) is configured for the VM's disk, which allows remote authenticated users with certain credentials to read portions of the deleted VM's memory and obtain sensitive information via an uninitialized storage
nvd
CVE-2014-0179LOWCVSS 1.9v3.02014-08-03
CVE-2014-0179 [LOW] CWE-20 CVE-2014-0179: libvirt 0.7.5 through 1.2.x before 1.2.5 allows local users to cause a denial of service (read block
libvirt 0.7.5 through 1.2.x before 1.2.5 allows local users to cause a denial of service (read block and hang) via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virConnectCompareCPU or (2) virConnectBaselineCPU API method, related to an XML External Entity (XXE) issue. NOTE: this is
nvd
CVE-2014-5177LOWCVSS 1.2v3.02014-08-03
CVE-2014-5177 [LOW] CVE-2014-5177: libvirt 1.0.0 through 1.2.x before 1.2.5, when fine grained access control is enabled, allows local
libvirt 1.0.0 through 1.2.x before 1.2.5, when fine grained access control is enabled, allows local users to read arbitrary files via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virDomainDefineXML, (2) virNetworkCreateXML, (3) virNetworkDefineXML, (4) virStoragePoolCreateXML, (5) virStora
nvd
CVE-2014-3485MEDIUMCVSS 4.0v3.42014-07-11
CVE-2014-3485 [MEDIUM] CWE-200 CVE-2014-3485: The REST API in the ovirt-engine in oVirt, as used in Red Hat Enterprise Virtualization (rhevm) 3.4,
The REST API in the ovirt-engine in oVirt, as used in Red Hat Enterprise Virtualization (rhevm) 3.4, allows remote authenticated users to read arbitrary files and have other unspecified impact via unknown vectors, related to an XML External Entity (XXE) issue.
nvd
CVE-2012-3405MEDIUMCVSS 5.0v3.02014-02-10
CVE-2012-3405 [MEDIUM] CVE-2012-3405: The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.14 and other
The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.14 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (segmentation fault and crash) via a format string with a large number
nvd
CVE-2012-3404MEDIUMCVSS 5.0v3.02014-02-10
CVE-2012-3404 [MEDIUM] CWE-189 CVE-2012-3404: The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other
The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (stack corruption and crash) via a format string that uses posi
nvd
1 / 2Next →