Known vulnerabilities in Red Hat OpenStack - page 5

Software CPE: cpe:2.3:a:red_hat:red_hat_openstack:*:*:*:*:*:*:*:*
Total vulnerabilities: 407
Public exploits: 29
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenStack Red Hat OpenStack is affected by 407 known vulnerabilities: 1 critical, 59 high, 203 medium, 144 low Critical High Medium Low

Vulnerabilities (407)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU88822 - Memory corruption
CVE-2024-2961
CWE-119 High
Available
Exploited
16.2 18.04.2024 SB2024041855
SB2024041856
SB2024041857
and 107 more
#VU83900 - Exposure of sensitive information to an unauthorized actor
CVE-2023-46218
CWE-200 Low
No
No
16.2 06.12.2023 SB2023120612
SB2023120644
SB2023120661
and 87 more
#VU83484 - Insufficiently Protected Credentials
CVE-2023-1633
CWE-522 Low
No
No
- 24.11.2023 SB2023112463
SB2023112464
#VU82547 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-46137
CWE-444 Medium
No
No
- 30.10.2023 SB2023103002
SB2023112046
SB2023112942
and 16 more
#VU82064 - Resource exhaustion
CVE-2023-39325
CWE-400 Medium
No
No
16.2.5, 17.1.1 16.10.2023 SB2023101651
SB2023101652
SB2023101653
and 341 more
#VU81863 - External Control of File Name or Path
CVE-2023-38546
CWE-73 Low
No
No
16.2, 17.1.1 11.10.2023 SB2023101129
SB2023101135
SB2023101149
and 125 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
16.2.5, 17.1.1 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 652 more
#VU81044 - Out-of-bounds read
CVE-2023-39615
CWE-125 Medium
No
No
16.2 21.09.2023 SB2023092155
SB2023092202
SB2023092203
and 61 more
#VU79523 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35939
CWE-59 Low
No
No
16.2 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU78913 - Improper Certificate Validation
CVE-2023-29409
CWE-295 Medium
No
No
16.2.5, 17.1.1 03.08.2023 SB2023080320
SB2023080321
SB2023080370
and 98 more
#VU78327 - Improper Neutralization of HTTP Headers for Scripting Syntax
CVE-2023-29406
CWE-644 Medium
No
No
16.2.5 17.07.2023 SB2023071737
SB2023071738
SB2023071739
and 94 more
#VU76757 - Missing release of memory after effective lifetime
CVE-2023-2602
CWE-401 Medium
No
No
17.1.1 01.06.2023 SB2023060126
SB2023061452
SB2023070343
and 74 more
#VU76238 - Expected Behavior Violation
CVE-2023-28322
CWE-440 Medium
No
No
16.2 17.05.2023 SB2023051752
SB2023051760
SB2023051761
and 88 more
#VU74574 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-24538
CWE-94 High
No
No
16.2.5 06.04.2023 SB2023040668
SB2023040678
SB2023040679
and 85 more
#VU74573 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2023-24537
CWE-835 Medium
No
No
16.2.5 06.04.2023 SB2023040668
SB2023040678
SB2023040679
and 87 more
#VU74572 - Resource Management Errors
CVE-2023-24536
CWE-399 Medium
No
No
16.2.5 06.04.2023 SB2023040668
SB2023040678
SB2023040679
and 80 more
#VU74571 - Resource exhaustion
CVE-2023-24534
CWE-400 Medium
No
No
16.2.5 06.04.2023 SB2023040668
SB2023040678
SB2023040679
and 85 more
#VU73722 - Resource exhaustion
CVE-2022-41725
CWE-400 Medium
No
No
16.2.5 15.03.2023 SB2023030130
SB2023031537
SB2023031538
and 80 more
#VU72685 - Resource Management Errors
CVE-2022-41724
CWE-399 Medium
No
No
16.2.5 01.03.2023 SB2023030130
SB2023030131
SB2023030211
and 87 more
#VU63553 - Integer overflow
CVE-2021-43618
CWE-190 Medium
No
No
16.2 24.05.2022 SB2021121654
SB2022052401
SB2021120223
and 85 more


Showing elements 81 - 100 out of 407