Known vulnerabilities in Red Hat OpenStack - page 19

Software CPE: cpe:2.3:a:red_hat:red_hat_openstack:*:*:*:*:*:*:*:*
Total vulnerabilities: 406
Public exploits: 29
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenStack Red Hat OpenStack is affected by 406 known vulnerabilities: 1 critical, 59 high, 203 medium, 143 low Critical High Medium Low

Vulnerabilities (406)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU14477 - Improper input validation
CVE-2018-14432
CWE-20 Low
No
No
- 17.08.2018 SB2018082105
SB2018082106
SB2018082210
and 2 more
#VU13375 - Heap-based Buffer Overflow
CVE-2018-11806
CWE-122 Low
No
No
- 16.06.2018 SB2018061802
SB2018080616
SB2018081714
and 9 more
#VU12911 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2018-3639
CWE-362 Low
No
No
- 22.05.2018 SB2018052201
SB2018052207
SB2018052208
and 142 more
#VU12886 - Uncontrolled Memory Allocation
CVE-2018-10237
CWE-789 Low
No
No
- 21.05.2018 SB2018052310
SB2018083005
SB2018092411
and 43 more
#VU12658 - Exposure of sensitive information to an unauthorized actor
CVE-2018-1059
CWE-200 Low
No
No
- 14.05.2018 SB2018021104
SB2018043010
SB2018060604
and 7 more
#VU12552 - Out-of-bounds read
CVE-2017-11334
CWE-125 Low
No
No
- 10.05.2018 SB2018031522
SB2017121450
SB2017121451
and 5 more
#VU12301 - Data Handling
CVE-2017-10664
CWE-19 Low
No
No
- 30.04.2018 SB2017061210
SB2017121450
SB2017121451
and 5 more
#VU12300 - Memory corruption
CVE-2017-14167
CWE-119 High
No
No
- 30.04.2018 SB2017122006
SB2017121450
SB2017121451
and 6 more
#VU11845 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2017-1000385
CWE-300 Low
Available
Exploited
- 16.04.2018 SB2017120816
SB2018041212
SB2018031524
and 6 more
#VU11790 - Out-of-bounds write
CVE-2017-15289
CWE-787 Low
No
No
- 12.04.2018 SB2017112934
SB2017120814
SB2017120815
and 17 more
#VU11818 - Improper input validation
CVE-2017-13673
CWE-20 Low
No
No
- 11.04.2018 SB2018041304
SB2019032903
SB2018041048
and 5 more
#VU11819 - Use After Free
CVE-2017-13711
CWE-416 Low
No
No
- 11.04.2018 SB2018041304
SB2018060814
SB2018041048
and 1 more
#VU11644 - Out-of-bounds read
CVE-2017-13672
CWE-125 Low
No
No
- 10.04.2018 SB2018041005
SB2017120814
SB2017120815
and 12 more
#VU11232 - Uncontrolled Memory Allocation
CVE-2017-15124
CWE-789 Medium
No
No
- 23.03.2018 SB2018032301
SB2018032302
SB2018032704
and 7 more
#VU11231 - Resource exhaustion
CVE-2017-15119
CWE-400 Medium
No
No
- 23.03.2018 SB2018032301
SB2018032302
SB2018032704
and 4 more
#VU11194 - Insufficient Control of Network Message Volume (Network Amplification)
CVE-2018-1000115
CWE-406 Low
Available
No
- 21.03.2018 SB2018030509
SB2018060712
SB2018082314
and 5 more
#VU11124 - Integer overflow
CVE-2018-1000127
CWE-190 Low
No
No
- 16.03.2018 SB2017052212
SB2018060712
SB2018073104
#VU10961 - Insufficiently Protected Credentials
CVE-2018-1000060
CWE-522 Low
No
No
- 13.03.2018 SB2018012001
SB2018032822
SB2018041203
and 1 more
#VU10565 - Double Free
CVE-2017-16820
CWE-415 Low
No
No
- 14.02.2018 SB2018010420
SB2018021414
SB2018032103
and 9 more
#VU8113 - Improper input validation
CVE-2017-7539
CWE-20 Low
No
No
- 06.09.2017 SB2017060234
SB2017090604
SB2017121450
and 5 more


Showing elements 361 - 380 out of 406