Known Vulnerabilities for Enterprise Virtualization by Redhat
Listed below are 10 of the newest known vulnerabilities associated with "Enterprise Virtualization" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-1117 json | ovirt-ansible-roles before version 1.0.6 has a vulnerability due to a missing no_log directive, resulting in the 'Add oVirt P... | 9.8 - CRITICAL | 2018-06-20 | 2019-10-09 |
| CVE-2018-1111 json | DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a command injection flaw in the N... | 7.5 - HIGH | 2018-05-17 | 2023-02-12 |
| CVE-2018-1074 json | ovirt-engine API and administration web portal before versions 4.2.2.5, 4.1.11.2 is vulnerable to an exposure of Power Manage... | 7.2 - HIGH | 2018-04-26 | 2019-11-06 |
| CVE-2017-2614 json | When updating a password in the rhvm database the ovirt-aaa-jdbc-tool tools before 1.1.3 fail to correctly check for the curr... | 6.3 - MEDIUM | 2018-07-27 | 2019-10-09 |
| CVE-2016-6338 json | ovirt-engine-webadmin, as used in Red Hat Enterprise Virtualization Manager (aka RHEV-M) for Servers and RHEV-M 4.0, allows p... | 6.8 - MEDIUM | 2017-04-20 | 2023-02-12 |
| CVE-2016-6310 json | oVirt Engine discloses the ENGINE_HTTPS_PKI_TRUST_STORE_PASSWORD in /var/log/ovirt-engine/engine.log file in RHEV before 4.0. | 5.5 - MEDIUM | 2017-08-22 | 2017-08-30 |
| CVE-2016-5432 json | The ovirt-engine-provisiondb utility in Red Hat Enterprise Virtualization (RHEV) Engine 4.0 allows local users to obtain sens... | 3.3 - LOW | 2016-10-03 | 2023-02-12 |
| CVE-2016-4443 json | Red Hat Enterprise Virtualization (RHEV) Manager 3.6 allows local users to obtain encryption keys, certificates, and other se... | 5.5 - MEDIUM | 2016-12-14 | 2023-02-12 |
| CVE-2015-5201 json | VDSM and libvirt in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H) 7-7.x before 7-7.2-20151119.0 and 6-6.x before ... | 7.5 - HIGH | 2020-02-25 | 2023-02-13 |
| CVE-2015-3456 json | The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denia... | 7.7 - HIGH | 2015-05-13 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Redhat | Enterprise Virtualization | 4.0 | |||
| Application | Redhat | Enterprise Virtualization | 3.5.6 | |||
| Application | Redhat | Enterprise Virtualization | 3.4 | |||
| Application | Redhat | Enterprise Virtualization | 3.2 | |||
| Application | Redhat | Enterprise Virtualization | 3.0 | |||
| Application | Redhat | Enterprise Virtualization | 2.2 |