CVEs (779)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Redhat Squid Cache8Enterprise Linux Enterprise Linux EusEnterprise Linux For Arm 64+5 moreDec 18, 2024 Nov 3, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 SQUID is vulnerable to HTTP request smuggling, caused by chunked decoder lenience, allows a remote attacker to perform Request/Response smuggling past firewall and frontend security systems. |
1Redhat 19Enterprise Linux Enterprise Linux AusEnterprise Linux Desktop+16 moreNov 21, 2024 Nov 1, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability was found in insights-client. This security issue occurs because of insecure file operations or unsafe handling of temporary files and directories that lead to local privilege escalation. Before the insig...Show more |
2Linux Redhat22Codeready Linux Builder Codeready Linux Builder EusCodeready Linux Builder For Arm64+19 moreFeb 25, 2026 Oct 23, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 The reference count changes made as part of the CVE-2023-33951 and CVE-2023-33952 fixes exposed a use-after-free flaw in the way memory objects were handled when they were being used to store a surface. When running insi...Show more |
7Canonical DebianFedoraproject+4 more39Bootstrap Os Codeready Linux BuilderCodeready Linux Builder Eus+36 moreMay 12, 2026 Oct 3, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to use maliciously crafted GLIBC_TUNABLES env...Show more |
3Fedoraproject MariadbRedhat12Enterprise Linux Enterprise Linux EusEnterprise Linux For Arm 64+9 moreOct 1, 2025 Sep 27, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability was found in MariaDB. An OpenVAS port scan on ports 3306 and 4567 allows a malicious remote client to cause a denial of service. |
3Fedoraproject GnuRedhat22Codeready Linux Builder Eus Codeready Linux Builder Eus For Power Little EndianCodeready Linux Builder Eus For Power Little Endian Eus+19 moreMay 12, 2026 Sep 18, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A flaw has been identified in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module imp...Show more |
4Fedoraproject GnuNetapp+1 more27Codeready Linux Builder Eus Codeready Linux Builder Eus For Power Little EndianCodeready Linux Builder Eus For Power Little Endian Eus+24 moreMay 12, 2026 Sep 18, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in glibc. When the getaddrinfo function is called with the AF_UNSPEC address family and the system is configured with no-aaaa mode via /etc/resolv.conf, a DNS response via TCP larger than 2048 bytes can...Show more |
4Fedoraproject GnuNetapp+1 more16Active Iq Unified Manager Enterprise LinuxEnterprise Linux Eus+13 moreSep 26, 2025 Sep 12, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A flaw has been identified in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is...Show more |
3Fedoraproject KeylimeRedhat9Enterprise Linux Enterprise Linux EusEnterprise Linux For Ibm Z Systems+6 moreNov 21, 2024 Aug 25, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in the Keylime registrar that could allow a bypass of the challenge-response protocol during agent registration. This issue may allow an attacker to impersonate an agent and hide the true status of a mon...Show more |
2Fedoraproject Redhat20Enterprise Linux Enterprise Linux DesktopEnterprise Linux Eus+17 moreNov 21, 2024 Aug 23, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability was found in subscription-manager that allows local privilege escalation due to inadequate authorization. The D-Bus interface com.redhat.RHSM1 exposes a significant number of methods to all users that cou...Show more |
4Debian FedoraprojectLinux+1 more8Debian Linux Enterprise LinuxEnterprise Linux Eus+5 moreNov 21, 2024 Aug 7, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID. This flaw allows a local user to crash or escalate their privileges on the system. |
3Fedoraproject KeylimeRedhat9Enterprise Linux Enterprise Linux EusEnterprise Linux For Ibm Z Systems+6 moreNov 21, 2024 Jul 24, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections. This flaw allows an attacker to exhaust all available connections. |
2Libreswan Redhat5Enterprise Linux Enterprise Linux EusEnterprise Linux Server Aus+2 moreJan 22, 2025 May 17, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptable crypto algorithms, and the response packet is not sent with a zero re...Show more |
2Gnu Redhat5Emacs Enterprise LinuxEnterprise Linux Eus+2 moreJan 22, 2025 May 17, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A flaw was found in the Emacs text editor. Processing a specially crafted org-mode code with the "org-babel-execute:latex" function in ob-latex.el can result in arbitrary command execution. This CVE exists because of a C...Show more |
2Redhat Webkitgtk5Enterprise Linux Enterprise Linux EusEnterprise Linux Server Aus+2 moreJan 22, 2025 May 17, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability. This flaw allows attackers with network access to pass specially crafted web content files, causin...Show more |
4Canonical FedoraprojectLinux+1 more13Codeready Linux Builder Enterprise LinuxEnterprise Linux Eus+10 moreNov 21, 2024 Mar 27, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Escalation to the root...Show more |
3Fedoraproject RedhatX.org18Enterprise Linux Enterprise Linux AusEnterprise Linux Desktop+15 moreFeb 24, 2025 Mar 27, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. Th...Show more |
3Redhat WebkitgtkWpewebkit23Codeready Linux Builder Codeready Linux Builder EusCodeready Linux Builder For Arm64 Eus+20 moreNov 18, 2025 Mar 6, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 A vulnerability was found in WebKit. The flaw is triggered when processing maliciously crafted web content that may lead to arbitrary code execution. Improved memory handling addresses the multiple memory corruption issu...Show more |
3Fedoraproject GnuRedhat8Enterprise Linux Eus Enterprise Linux For Power Little Endian EusEnterprise Linux Server Aus+5 moreMay 27, 2026 Dec 14, 2022 N/A· v4 8.6 HIGH· v3 N/A· v2 A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this furt...Show more |
3Ibm RedhatSuse8Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux Server+5 moreNov 21, 2024 Sep 29, 2022 N/A· v4 5.5 MEDIUM· v3 N/A· v2 IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR1 FP10, 7 R1 before SR3 FP10, 7 before SR9 FP10, 6 R1 before SR8 FP7, 6 before SR16 FP7, and 5.0 before SR16 FP13 stores plaintext information i...Show more |