CVEs (1,858)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Canonical LinuxRedhat4Enterprise Linux Enterprise Linux EusLinux Kernel+1 moreApr 29, 2026 Jul 16, 2013 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation of memory slots for use in a guest's physical address space, which allows local users to gain privi...Show more |
A certain Red Hat patch to the KVM subsystem in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linux (RHEL) 6 does not properly implement the PV EOI feature, which allows guest OS users to cause a de...Show more |
The Tomcat 6 DIGEST authentication functionality as used in Red Hat Enterprise Linux 6 allows remote attackers to bypass intended access restrictions by performing a replay attack after a nonce becomes stale. NOTE: this...Show more |
1Redhat 2Enterprise Linux Jboss Enterprise Web ServerApr 29, 2026 Jul 9, 2013 N/A· v4 N/A· v3 6.9 MEDIUM· v2 The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the...Show more |
A certain Red Hat patch for the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 allows local users to cause a denial of service (invalid free operation and system crash) or possibly gain privileges via a sendmsg...Show more |
2Linux Redhat3Enterprise Linux Enterprise MrgLinux KernelApr 29, 2026 Jul 4, 2013 N/A· v4 N/A· v3 2.1 LOW· v2 The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10 allows local users to obtain sensitive information from kernel memory via a read operation on a malfunctioning CD-ROM drive...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Jun 8, 2013 N/A· v4 N/A· v3 5.7 MEDIUM· v2 A certain Red Hat patch to the vlan_hwaccel_do_receive function in net/8021q/vlan_core.c in the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 allows remote attackers to cause a denial of service (system crash)...Show more |
A certain Red Hat patch to the be2net implementation in the kernel package before 2.6.32-218.el6 on Red Hat Enterprise Linux (RHEL) 6, when promiscuous mode is enabled, allows remote attackers to cause a denial of servic...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Jun 8, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 A certain Red Hat patch to the __br_deliver function in net/bridge/br_forward.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (NULL pointer dereferen...Show more |
The perf subsystem in the kernel package 2.6.32-122.el6.x86_64 in Red Hat Enterprise Linux (RHEL) 6 does not properly handle NMIs, which might allow local users to cause a denial of service (excessive log messages) via u...Show more |
1Redhat 9Enterprise Linux Enterprise Linux DesktopEnterprise Linux Eus+6 moreApr 29, 2026 May 21, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 rhn-migrate-classic-to-rhsm tool in Red Hat subscription-manager does not verify the Red Hat Network Classic server's X.509 certificate when migrating to a Certificate-based Red Hat Network, which allows remote man-in-th...Show more |
3Linux RedhatSuse6Enterprise Linux Enterprise MrgLinux Enterprise Desktop+3 moreApr 29, 2026 Apr 29, 2013 N/A· v4 N/A· v3 7.2 HIGH· v2 The ftrace implementation in the Linux kernel before 3.8.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging the CAP_SYS_A...Show more |
2Linux Redhat3Enterprise Linux Enterprise MrgLinux KernelApr 29, 2026 Apr 29, 2013 N/A· v4 N/A· v3 4.7 MEDIUM· v2 The ext4_orphan_del function in fs/ext4/namei.c in the Linux kernel before 3.7.3 does not properly handle orphan-list entries for non-journal filesystems, which allows physically proximate attackers to cause a denial of...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Apr 29, 2013 N/A· v4 N/A· v3 4.7 MEDIUM· v2 The do_video_set_spu_palette function in fs/compat_ioctl.c in the Linux kernel before 3.6.5 on unspecified architectures lacks a certain error check, which might allow local users to obtain sensitive information from ker...Show more |
The default configuration for IPA servers in Red Hat Enterprise Linux 6, when revoking a certificate from an Identity Management replica, does not properly update another Identity Management replica, which causes inconsi...Show more |
7Canonical DebianMariadb+4 more9Debian Linux Enterprise LinuxLinux Enterprise Desktop+6 moreApr 29, 2026 Mar 28, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 MariaDB 5.5.x before 5.5.30, 5.3.x before 5.3.13, 5.2.x before 5.2.15, and 5.1.x before 5.1.68, and Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote attackers to cause a denial of...Show more |
2Redhat Rubyonrails3Enterprise Linux RailsRuby On RailsApr 29, 2026 Mar 19, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 The sanitize helper in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Action Pack component in Ruby on Rails before 2.3.18, 3.0.x and 3.1.x before 3.1.12, and 3.2.x before 3.2.13 does not properly han...Show more |
2Redhat Rubyonrails3Enterprise Linux RailsRuby On RailsApr 29, 2026 Mar 19, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 The sanitize_css method in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Action Pack component in Ruby on Rails before 2.3.18, 3.0.x and 3.1.x before 3.1.12, and 3.2.x before 3.2.13 does not properly...Show more |
2Redhat Rubyonrails3Enterprise Linux RailsRuby On RailsApr 29, 2026 Mar 19, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Active Record component in Ruby on Rails 2.3.x before 2.3.18, 3.1.x before 3.1.12, and 3.2.x before 3.2.13 processes certain queries by converting hash keys to symbols, which allows remote attackers to cause a denial...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The udf_encode_fh function in fs/udf/namei.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory via a crafted a...Show more |