Redhat
redhat
5,674 CVEs • 537 products
Products (537)
Click to collapseToggle
Products (537)
Click to collapse
CVEs (5,674)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Gnu NetappRedhat4Cloud Backup Enterprise LinuxGlibc+1 moreNov 21, 2024 Dec 6, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 sysdeps/i386/ldbl2mpn.c in the GNU C Library (aka glibc or libc6) before 2.23 on x86 targets has a stack-based buffer overflow if the input to any of the printf family of functions is an 80-bit long double with a non-can...Show more |
3Debian ImagemagickRedhat3Debian Linux Enterprise LinuxImagemagickNov 21, 2024 Dec 4, 2020 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 A flaw was found in ImageMagick in MagickCore/gem-private.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type `unsig...Show more |
3Debian ImagemagickRedhat3Debian Linux Enterprise LinuxImagemagickNov 21, 2024 Dec 4, 2020 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 A flaw was found in ImageMagick in coders/bmp.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type `unsigned int`. Th...Show more |
2Imagemagick Redhat2Enterprise Linux ImagemagickNov 21, 2024 Dec 4, 2020 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type unsigned...Show more |
3Debian ImagemagickRedhat3Debian Linux Enterprise LinuxImagemagickNov 21, 2024 Dec 4, 2020 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type unsigned c...Show more |
3Debian ImagemagickRedhat3Debian Linux Enterprise LinuxImagemagickNov 21, 2024 Dec 4, 2020 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of a too large shift for 64-bit type `ssize_...Show more |
3Debian ImagemagickRedhat3Debian Linux Enterprise LinuxImagemagickNov 21, 2024 Dec 4, 2020 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 In RestoreMSCWarning() of /coders/pdf.c there are several areas where calls to GetPixelIndex() could result in values outside the range of representable for the unsigned char type. The patch casts the return value of Get...Show more |
3Debian ImagemagickRedhat3Debian Linux Enterprise LinuxImagemagickNov 21, 2024 Dec 4, 2020 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of types `float` a...Show more |
3Debian ImagemagickRedhat3Debian Linux Enterprise LinuxImagemagickNov 21, 2024 Dec 4, 2020 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 A flaw was found in ImageMagick in MagickCore/segment.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. This would most like...Show more |
6Debian FedoraprojectLxml+3 more8Communications Offline Mediation Controller Debian LinuxEnterprise Linux+5 moreDec 17, 2025 Dec 3, 2020 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could...Show more |
3Debian FreedesktopRedhat3Debian Linux Enterprise LinuxPopplerNov 21, 2024 Dec 3, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A flaw was found in Poppler in the way certain PDF files were converted into HTML. A remote attacker could exploit this flaw by providing a malicious PDF file that, when processed by the 'pdftohtml' program, would crash...Show more |
3Infinispan NetappRedhat3Active Iq Unified Manager Data GridInfinispanNov 21, 2024 Dec 3, 2020 N/A· v4 6.5 MEDIUM· v3 4.9 MEDIUM· v2 A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations l...Show more |
3Debian LinuxRedhat3Debian Linux Enterprise LinuxLinux KernelNov 21, 2024 Dec 3, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The...Show more |
A flaw was found in libvirt, where it leaked a file descriptor for `/dev/mapper/control` into the QEMU process. This file descriptor allows for privileged operations to happen against the device-mapper on the host. This...Show more |
2Redhat Samba3Enterprise Linux SambaStorageNov 21, 2024 Dec 3, 2020 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and directory information which otherwise would be unavailable to the att...Show more |
This release fixes a Cross Site Request Forgery vulnerability was found in Red Hat CloudForms which forces end users to execute unwanted actions on a web application in which the user is currently authenticated. An attac...Show more |
2Elastic Redhat2Kibana Openshift Container PlatformNov 21, 2024 Dec 2, 2020 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 The elasticsearch-operator does not validate the namespace where kibana logging resource is created and due to that it is possible to replace the original openshift-logging console link (kibana console) to different one,...Show more |
4Debian LinuxRedhat+1 more4Debian Linux Enterprise LinuxLinux Kernel+1 moreNov 21, 2024 Dec 2, 2020 N/A· v4 4.1 MEDIUM· v3 1.9 LOW· v2 A flaw was found in the Linux kernel. A use-after-free was found in the way the console subsystem was using ioctls KDGKBSENT and KDSKBSENT. A local user could use this flaw to get read memory access out of bounds. The hi...Show more |
2Redhat Samba2Enterprise Linux SambaNov 21, 2024 Dec 2, 2020 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A flaw was found in samba's DNS server. An authenticated user could use this flaw to the RPC server to crash. This RPC server, which also serves protocols other than dnsserver, will be restarted after a short delay, but...Show more |
3Debian Libvncserver ProjectRedhat3Debian Linux Enterprise LinuxLibvncserverNov 21, 2024 Nov 27, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A divide by zero issue was found to occur in libvncserver-0.9.12. A malicious client could use this flaw to send a specially crafted message that, when processed by the VNC server, would lead to a floating point exceptio...Show more |