CVEs (1,858)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Opensc Project Redhat2Enterprise Linux OpenscJun 30, 2026 Sep 10, 2024 N/A· v4 2.9 LOW· v3 N/A· v2 A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` to...Show more |
2Opensc Project Redhat2Enterprise Linux OpenscJun 30, 2026 Sep 3, 2024 N/A· v4 3.9 LOW· v3 N/A· v2 A vulnerability was found in the pkcs15-init tool in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are partially...Show more |
2Opensc Project Redhat2Enterprise Linux OpenscJun 30, 2026 Sep 3, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs....Show more |
2Opensc Project Redhat2Enterprise Linux OpenscJun 30, 2026 Sep 3, 2024 N/A· v4 3.9 LOW· v3 N/A· v2 A vulnerability was found in pkcs15-init in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. Insufficient or missing checking...Show more |
2Opensc Project Redhat2Enterprise Linux OpenscJun 30, 2026 Sep 3, 2024 N/A· v4 3.9 LOW· v3 N/A· v2 A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs....Show more |
2Opensc Project Redhat2Enterprise Linux OpenscJun 30, 2026 Sep 3, 2024 N/A· v4 3.9 LOW· v3 N/A· v2 A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs....Show more |
2Opensc Project Redhat2Enterprise Linux OpenscJun 30, 2026 Sep 3, 2024 N/A· v4 3.9 LOW· v3 N/A· v2 A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK.
The problem is missing initialization of variables expected to be initialized (as arguments to other functions, etc.). |
2Frrouting Redhat2Enterprise Linux FrroutingJun 17, 2026 Aug 19, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual remaining stream length before taking the TLV value. |
2Libtiff Redhat5Enterprise Linux Enterprise Linux For Arm 64Enterprise Linux For Power Little Endian Eus+2 moreJun 17, 2026 Aug 12, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting...Show more |
3Fedoraproject Podman ProjectRedhat4Enterprise Linux FedoraOpenshift Container Platform+1 moreJun 17, 2026 Aug 2, 2024 N/A· v4 4.8 MEDIUM· v3 N/A· v2 A flaw was found in Podman. This issue may allow an attacker to create a specially crafted container that, when configured to share the same IPC with at least one other container, can create a large number of IPC resourc...Show more |
1Redhat 3389 Directory Server Directory ServerEnterprise LinuxJun 17, 2026 Jul 9, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in the 389 Directory Server. This flaw allows an unauthenticated user to cause a systematic server crash while sending a specific extended search request, leading to a denial of service. |
A flaw was found in the virtio-net device in QEMU. When enabling the RSS feature on the virtio-net network card, the indirections_table data within RSS becomes controllable. Setting excessively large values may cause an...Show more |
13Almalinux AmazonApple+10 more53500f Firmware 8300 Firmware8700 Firmware+50 moreJun 17, 2026 Jul 1, 2024 N/A· v4 8.1 HIGH· v3 N/A· v2 A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able t...Show more |
2Freedesktop Redhat2Enterprise Linux PopplerJun 17, 2026 Jun 21, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter with pdfinfo utility. By using certain malformed input files, an attacker could cause the utility to crash, leading to a de...Show more |
A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If Nano is killed while editing, a file it saves to an emergency file with the permissions of the runn...Show more |
1Redhat 5Enterprise Linux Enterprise Linux AusEnterprise Linux Eus+2 moreJun 17, 2026 Jun 12, 2024 N/A· v4 8.1 HIGH· v3 N/A· v2 A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it from brute force attacks. However, the tick...Show more |
2Clusterlabs Redhat8Booth Enterprise LinuxEnterprise Linux Eus+5 moreJun 17, 2026 Jun 6, 2024 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), it may allow an invalid HMAC to be accepted by the Booth server. |
2Fedoraproject Redhat23Codeready Linux Builder Codeready Linux Builder EusCodeready Linux Builder For Arm64+20 moreJun 17, 2026 Apr 18, 2024 N/A· v4 7.1 HIGH· v3 N/A· v2 A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately. |
4Debian FedoraprojectNet Snmp+1 more15Debian Linux Enterprise LinuxEnterprise Linux Eus+12 moreJun 17, 2026 Apr 16, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-only credentials can use a malformed OID in a `GET-NEXT` to the `nsVacmAccessTable` to cause a...Show more |
4Debian FedoraprojectNet Snmp+1 more15Debian Linux Enterprise LinuxEnterprise Linux Eus+12 moreJun 17, 2026 Apr 16, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-write credentials can use a malformed OID in a `SET` request to `NET-SNMP-AGENT-MIB::nsLogTable...Show more |