Redhat Enterprise Virtualization Hypervisor vulnerabilities
3 known vulnerabilities affecting redhat/enterprise_virtualization_hypervisor.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2LOW1
Vulnerabilities
Page 1 of 1
CVE-2015-5201HIGHCVSS 7.5≥ 6-6.0, < 6-6.7-20151117.0≥ 7-7.0, < 7-7.2-20151119.02020-02-25
CVE-2015-5201 [HIGH] CWE-306 CVE-2015-5201: VDSM and libvirt in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H) 7-7.x before 7-7.2-201
VDSM and libvirt in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H) 7-7.x before 7-7.2-20151119.0 and 6-6.x before 6-6.7-20151117.0 as packaged in Red Hat Enterprise Virtualization before 3.5.6 when VSDM is run with -spice disable-ticketing and a VM is suspended and then restored, allows remote attackers to log in without authentication via un
nvd
CVE-2010-0430HIGHCVSS 7.4≤ 5.4-2.12013-12-27
CVE-2010-0430 [HIGH] CWE-119 CVE-2010-0430: libspice, as used in QEMU-KVM in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hy
libspice, as used in QEMU-KVM in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hypervisor) before 5.5-2.2 and possibly other products, allows guest OS users to read from or write to arbitrary QEMU memory by modifying the address that is used by Cairo for memory mappings.
nvd
CVE-2010-2223LOWCVSS 2.1≤ 5.4-2.12010-06-24
CVE-2010-2223 [LOW] CWE-264 CVE-2010-2223: Virtual Desktop Server Manager (VDSM) in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or
Virtual Desktop Server Manager (VDSM) in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hypervisor) before 5.5-2.2 does not properly perform VM post-zeroing after the removal of a virtual machine's data, which allows guest OS users to obtain sensitive information by examining the disk blocks associated with a deleted virtual machine.
nvd