CVEs (313)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Libarchive Redhat3Enterprise Linux LibarchiveOpenshift Container PlatformJun 30, 2026 Jun 9, 2025 N/A· v4 6.6 MEDIUM· v3 N/A· v2 A vulnerability has been identified in the libarchive library. This flaw can lead to a heap buffer over-read due to the size of a filter block potentially exceeding the Lempel-Ziv-Storer-Schieber (LZSS) window. This mean...Show more |
2Libarchive Redhat3Enterprise Linux LibarchiveOpenshift Container PlatformJul 21, 2026 Jun 9, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condit...Show more |
5Debian LinuxOracle+2 more6Debian Linux Enterprise LinuxLinux+3 moreJun 30, 2026 May 30, 2025 N/A· v4 4.7 MEDIUM· v3 N/A· v2 A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to access the original's privileged process coredump, allowing the attack...Show more |
2Gnu Redhat3Enterprise Linux Grub2Openshift Container PlatformJun 30, 2026 Mar 3, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 A flaw was found in grub2. When reading data from a squash4 filesystem, grub's squash4 fs module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly...Show more |
2Gnu Redhat3Enterprise Linux Grub2Openshift Container PlatformJun 29, 2026 Mar 3, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 A flaw was found in the HFS filesystem. When reading an HFS volume's name at grub_fs_mount(), the HFS filesystem driver performs a strcpy() using the user-provided volume name as input without properly validating the vol...Show more |
2Gnu Redhat3Enterprise Linux Grub2Openshift Container PlatformJun 29, 2026 Mar 3, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A stack overflow flaw was found when reading a BFS file system. A crafted BFS filesystem may lead to an uncontrolled loop, causing grub2 to crash. |
4Debian NetappOpenbsd+1 more6Active Iq Unified Manager Debian LinuxEnterprise Linux+3 moreJul 14, 2026 Feb 18, 2025 N/A· v4 6.8 MEDIUM· v3 N/A· v2 A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled. A machine-in-the-middle attack can be performed by a malicious machine impersonating a legit server. This issue occurs due to how OpenSSH...Show more |
8Almalinux ArchlinuxGentoo+5 more20Almalinux Arch LinuxDiscovery+17 moreJun 30, 2026 Jan 14, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in rsync. When using the `--safe-links` option, the rsync client fails to properly verify if a symbolic link destination sent from the server contains another symbolic link within it. This results in a p...Show more |
8Almalinux ArchlinuxGentoo+5 more9Almalinux Arch LinuxEnterprise Linux+6 moreJun 30, 2026 Jan 14, 2025 N/A· v4 6.8 MEDIUM· v3 N/A· v2 A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, t...Show more |
8Almalinux ArchlinuxGentoo+5 more22Almalinux Arch LinuxEnterprise Linux+19 moreJul 20, 2026 Jan 14, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized...Show more |
1Redhat 1Openshift Container Platform Jun 17, 2026 Oct 22, 2024 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A vulnerability was found in GraphQL due to improper access controls on the GraphQL introspection query. This flaw allows unauthorized users to retrieve a comprehensive list of available queries and mutations. Exposure t...Show more |
1Redhat 1Openshift Container Platform Jun 17, 2026 Oct 22, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A denial of service (DoS) vulnerability was found in OpenShift. This flaw allows attackers to exploit the GraphQL batching functionality. The vulnerability arises when multiple queries can be sent within a single request...Show more |
1Redhat 15Enterprise Linux Enterprise Linux EusEnterprise Linux For Arm 64+12 moreJun 17, 2026 Oct 15, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability was found in Podman, Buildah, and CRI-O. A symlink traversal vulnerability in the containers/storage library can cause Podman, Buildah, and CRI-O to hang and result in a denial of service via OOM kill whe...Show more |
2Buildah Project Redhat14Buildah Enterprise LinuxEnterprise Linux Eus+11 moreJun 29, 2026 Oct 9, 2024 N/A· v4 4.4 MEDIUM· v3 N/A· v2 A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified paths for the cache are within our cache directory, allowing a `RUN` instruction in a Container file to mount an arbitrary d...Show more |
2Containers Redhat3Common Enterprise LinuxOpenshift Container PlatformJun 17, 2026 Oct 1, 2024 N/A· v4 8.2 HIGH· v3 N/A· v2 A flaw was found in Go. When FIPS mode is enabled on a system, container runtimes may incorrectly handle certain file paths due to improper validation in the containers/common Go library. This flaw allows an attacker to...Show more |
1Redhat 6Build Of Keycloak Openshift Container PlatformOpenshift Container Platform For Ibm Z+3 moreJun 17, 2026 Sep 19, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 A misconfiguration flaw was found in Keycloak. This issue can allow an attacker to redirect users to an arbitrary URL if a 'Valid Redirect URI' is set to http://localhost or http://127.0.0.1, enabling sensitive informati...Show more |
1Redhat 7Build Of Keycloak KeycloakOpenshift Container Platform+4 moreJun 17, 2026 Sep 3, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability was found in Keycloak. This flaw allows attackers to bypass brute force protection by exploiting the timing of login attempts. By initiating multiple login requests simultaneously, attackers can exceed th...Show more |
3Fedoraproject Podman ProjectRedhat4Enterprise Linux FedoraOpenshift Container Platform+1 moreJun 17, 2026 Aug 2, 2024 N/A· v4 4.8 MEDIUM· v3 N/A· v2 A flaw was found in Podman. This issue may allow an attacker to create a specially crafted container that, when configured to share the same IPC with at least one other container, can create a large number of IPC resourc...Show more |
1Redhat 1Openshift Container Platform Jun 17, 2026 Jul 24, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in the Openshift console. The /API/helm/verify endpoint is tasked to fetch and verify the installation of a Helm chart from a URI that is remote HTTP/HTTPS or local. Access to this endpoint is gated by t...Show more |
13Almalinux AmazonApple+10 more53500f Firmware 8300 Firmware8700 Firmware+50 moreJun 17, 2026 Jul 1, 2024 N/A· v4 8.1 HIGH· v3 N/A· v2 A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able t...Show more |