Vulnerabilities > Ovirt > Vdsm > 4.20.13

DATE CVE VULNERABILITY TITLE RISK
2019-03-25 CVE-2019-3831 A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8.
network
low complexity
ovirt redhat
critical
9.0
2018-08-09 CVE-2018-10908 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
It was found that vdsm before version 4.20.37 invokes qemu-img on untrusted inputs without limiting resources.
network
ovirt redhat CWE-770
7.1