CVEs (64)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Gnome Redhat5Ansible Tower Enterprise Linux DesktopEnterprise Linux Server+2 moreNov 21, 2024 May 6, 2018 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 There is a stack-based buffer over-read in calling GLib in the function gxps_images_guess_content_type of gxps-images.c in libgxps through 0.3.0 because it does not reject negative return values from a g_input_stream_rea...Show more |
3Gnome OpensuseRedhat6Ansible Tower Enterprise Linux DesktopEnterprise Linux Server+3 moreNov 21, 2024 May 4, 2018 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 There is a heap-based buffer over-read in the function ft_font_face_hash of gxps-fonts.c in libgxps through 0.3.0. A crafted input will lead to a remote denial of service attack. |
1Redhat 2Ansible Tower CloudformsNov 21, 2024 May 2, 2018 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 Ansible Tower through version 3.2.3 has a vulnerability that allows users only with access to define variables for a job template to execute arbitrary code on the Tower server. |
1Redhat 2Ansible Tower CloudformsNov 21, 2024 May 2, 2018 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Ansible Tower before version 3.2.4 has a flaw in the management of system and organization administrators that allows for privilege escalation. System administrators that are members of organizations can have their passw...Show more |