← Back

Enterprise Mrg

enterprise_mrg

Vendor: Redhat • 73 CVEs

CVEs (73)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Redhat
Trevor Mckay
2Cumin
Enterprise Mrg
Apr 29, 2026
Sep 28, 2012
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, does not properly restrict access to resources, which allows remote attackers to obtain sensitive information via unspecified...Show more
Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, does not properly restrict access to resources, which allows remote attackers to obtain sensitive information via unspecified vectors related to (1) "web pages," (2) "export functionality," and (3) "image viewing."Show less
2Linux
Redhat
3Enterprise Linux
Enterprise MrgLinux Kernel
Apr 29, 2026
May 24, 2012
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for each destination, which makes it easier for remote attackers to cause a denial of service (disrupted...Show more
The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for each destination, which makes it easier for remote attackers to cause a denial of service (disrupted networking) by predicting these values and sending crafted packets.Show less
3Linux
RedhatSuse
6Enterprise Linux
Enterprise MrgLinux Enterprise Desktop+3 more
Apr 29, 2026
May 17, 2012
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and .set methods, which allows local users to cause a denial of service (NULL pointer dereference) or p...Show more
The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and .set methods, which allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a (1) PTRACE_GETREGSET or (2) PTRACE_SETREGSET ptrace call.Show less
3Linux
RedhatSuse
5Enterprise Mrg
Linux Enterprise DesktopLinux Enterprise High Availability Extension+2 more
Apr 29, 2026
May 17, 2012
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
The cifs_lookup function in fs/cifs/dir.c in the Linux kernel before 3.2.10 allows local users to cause a denial of service (OOPS) via attempted access to a special file, as demonstrated by a FIFO.
4Canonical
DebianLinux+1 more
5Debian Linux
Enterprise LinuxEnterprise Mrg+2 more
Apr 29, 2026
Oct 10, 2011
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not properly handle a high rate of creation and cleanup of network namespaces, which makes it easier for remote attackers to cause a denial of service...Show more
net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not properly handle a high rate of creation and cleanup of network namespaces, which makes it easier for remote attackers to cause a denial of service (memory consumption) via requests to a daemon that requires a separate namespace per connection, as demonstrated by vsftpd.Show less
1Redhat
1Enterprise Mrg
Apr 29, 2026
Sep 20, 2011
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Cumin in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0 records broker authentication credentials in a log file, which allows local users to bypass authentication and perform unauthorized actions on jobs and...Show more
Cumin in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0 records broker authentication credentials in a log file, which allows local users to bypass authentication and perform unauthorized actions on jobs and message queues via a direct connection to the broker.Show less
3Linux
RedhatVmware
3Enterprise Mrg
EsxLinux Kernel
Apr 29, 2026
Jan 11, 2011
N/A· v4
N/A· v3
7.1 HIGH· v2
Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unreachable message to a s...Show more
Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unreachable message to a socket that is already locked by a user, which causes the socket to be freed and triggers list corruption, related to the sctp_wait_for_connect function.Show less
1Redhat
1Enterprise Mrg
Apr 29, 2026
Dec 7, 2010
N/A· v4
N/A· v3
7.5 HIGH· v2
The installation documentation for Red Hat Enterprise Messaging, Realtime and Grid (MRG) 1.3 recommends that Condor should be configured so that the MRG Management Console (cumin) can submit jobs for users, which creates...Show more
The installation documentation for Red Hat Enterprise Messaging, Realtime and Grid (MRG) 1.3 recommends that Condor should be configured so that the MRG Management Console (cumin) can submit jobs for users, which creates a trusted channel with insufficient access control that allows local users with the ability to publish to a broker to run jobs as arbitrary users via Condor QMF plug-ins.Show less
2Apache
Redhat
2Enterprise Mrg
Qpid
Apr 29, 2026
Oct 18, 2010
N/A· v4
N/A· v3
4.0 MEDIUM· v2
The SessionAdapter::ExchangeHandlerImpl::checkAlternate function in broker/SessionAdapter.cpp in the C++ Broker component in Apache Qpid before 0.6, as used in Red Hat Enterprise MRG before 1.3 and other products, allows...Show more
The SessionAdapter::ExchangeHandlerImpl::checkAlternate function in broker/SessionAdapter.cpp in the C++ Broker component in Apache Qpid before 0.6, as used in Red Hat Enterprise MRG before 1.3 and other products, allows remote authenticated users to cause a denial of service (NULL pointer dereference, daemon crash, and cluster outage) by attempting to modify the alternate of an exchange.Show less
2Apache
Redhat
2Enterprise Mrg
Qpid
Apr 29, 2026
Oct 18, 2010
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The Cluster::deliveredEvent function in cluster/Cluster.cpp in Apache Qpid, as used in Red Hat Enterprise MRG before 1.3 and other products, allows remote attackers to cause a denial of service (daemon crash and cluster...Show more
The Cluster::deliveredEvent function in cluster/Cluster.cpp in Apache Qpid, as used in Red Hat Enterprise MRG before 1.3 and other products, allows remote attackers to cause a denial of service (daemon crash and cluster outage) via invalid AMQP data.Show less
1Redhat
1Enterprise Mrg
Apr 29, 2026
Oct 12, 2010
N/A· v4
N/A· v3
4.0 MEDIUM· v2
lib/MessageStoreImpl.cpp in Red Hat Enterprise MRG before 1.2.2 allows remote authenticated users to cause a denial of service (stack memory exhaustion and broker crash) via a large persistent message.
2Apache
Redhat
2Enterprise Mrg
Qpid
Apr 29, 2026
Oct 12, 2010
N/A· v4
N/A· v3
4.3 MEDIUM· v2
sys/ssl/SslSocket.cpp in qpidd in Apache Qpid, as used in Red Hat Enterprise MRG before 1.2.2 and other products, when SSL is enabled, allows remote attackers to cause a denial of service (daemon outage) by connecting to...Show more
sys/ssl/SslSocket.cpp in qpidd in Apache Qpid, as used in Red Hat Enterprise MRG before 1.2.2 and other products, when SSL is enabled, allows remote attackers to cause a denial of service (daemon outage) by connecting to the SSL port but not participating in an SSL handshake.Show less
2Condor Project
Redhat
2Condor
Enterprise Mrg
Apr 23, 2026
Dec 23, 2009
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Condor 6.5.4 through 7.2.4, 7.3.x, and 7.4.0, as used in MRG, Grid for MRG, and Grid Execute Node for MRG, allows remote authenticated users to queue jobs as an arbitrary user, and thereby gain privileges, by using a Con...Show more
Condor 6.5.4 through 7.2.4, 7.3.x, and 7.4.0, as used in MRG, Grid for MRG, and Grid Execute Node for MRG, allows remote authenticated users to queue jobs as an arbitrary user, and thereby gain privileges, by using a Condor command-line tool to modify an unspecified job attribute.Show less