Redhat
redhat
5,674 CVEs • 537 products
Products (537)
Click to collapseToggle
Products (537)
Click to collapse
CVEs (5,674)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The ATM implementation in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application. |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel memory via a crafted application. |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application tha...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain circumstances, which allows local users to obtain sensitive information from kernel stack memory via...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The copy_to_user_auth function in net/xfrm/xfrm_user.c in the Linux kernel before 3.6 uses an incorrect C library function for copying a string, which allows local users to obtain sensitive information from kernel heap m...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability. |
2Condor Project Redhat2Condor Enterprise MrgApr 29, 2026 Mar 14, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 aviary/jobcontrol.py in Condor, as used in Red Hat Enterprise MRG 2.3, when removing a job, allows remote attackers to cause a denial of service (condor_schedd restart) via square brackets in the cproc option. |
1Redhat 1Enterprise Virtualization Manager Apr 29, 2026 Mar 12, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 The MoveDisk command in Red Hat Enterprise Virtualization Manager (RHEV-M) 3.1 and earlier does not properly check permissions on storage domains, which allows remote authenticated storage admins to cause a denial of ser...Show more |
1Redhat 1Enterprise Virtualization Manager Apr 29, 2026 Mar 12, 2013 N/A· v4 N/A· v3 2.1 LOW· v2 The domain management tool (rhevm-manage-domains) in Red Hat Enterprise Virtualization Manager (RHEV-M) 3.1 and earlier, when the validate action is enabled, logs the administrative password to a world-readable log file,...Show more |
1Redhat 1Automatic Bug Reporting Tool Apr 29, 2026 Mar 12, 2013 N/A· v4 N/A· v3 6.9 MEDIUM· v2 abrt-action-install-debuginfo in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to set world-writable permissions for arbitrary files and possibly gain privileges via a symlink attack on "the di...Show more |
Untrusted search path vulnerability in plugins/abrt-action-install-debuginfo-to-abrt-cache.c in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to load and execute arbitrary Python modules by mod...Show more |
1Redhat 2Jboss Enterprise Application Platform Jboss Enterprise Web PlatformApr 29, 2026 Mar 12, 2013 N/A· v4 N/A· v3 7.5 HIGH· v2 The default configuration of the (1) LdapLoginModule and (2) LdapExtLoginModule modules in JBoss Enterprise Application Platform (EAP) 4.3.0 CP10, 5.2.0, and 6.0.1, and Enterprise Web Platform (EWP) 5.2.0 allow remote at...Show more |
The Administer tab in Aeolus Conductor allows remote authenticated users to bypass intended quota restrictions by updating the Maximum Running Instances quota user setting. |
Aeolus Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions for /var/log/aeolus-configserver/configserver.log, which allows local users to read plaintext password...Show more |
aeolus-configserver-setup in the Aeolas Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions for a temporary file in /tmp, which allows local users to read creden...Show more |
4Adobe OpensuseRedhat+1 more9Air Enterprise Linux DesktopEnterprise Linux Eus+6 moreApr 29, 2026 Mar 11, 2013 N/A· v4 N/A· v3 10.0 HIGH· v2 Integer overflow in Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x before 11.2.202.280 on Linux, before 11.1.111.50 on Android 2.x and 3.x, and bef...Show more |
3Gnome OracleRedhat5Enterprise Linux Desktop Enterprise Linux ServerEnterprise Linux Workstation+2 moreApr 29, 2026 Mar 8, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 GNOME Evolution before 3.2.3 allows user-assisted remote attackers to read arbitrary files via the attachment parameter to a mailto: URL, which attaches the file to the email. |
2Hp Redhat2Enterprise Linux Linux Imaging And Printing ProjectApr 29, 2026 Mar 6, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 HP Linux Imaging and Printing (HPLIP) through 3.12.4 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/hpcupsfilterc_#.bmp, (2) /tmp/hpcupsfilterk_#.bmp, (3) /tmp/hpcups_job#.out, (4) /...Show more |
2Redhat Thekelleys4Dnsmasq Enterprise Linux DesktopEnterprise Linux Server+1 moreApr 29, 2026 Mar 5, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Dnsmasq before 2.63test1, when used with certain libvirt configurations, replies to requests from prohibited interfaces, which allows remote attackers to cause a denial of service (traffic amplification) via a spoofed DN...Show more |
2Linux Redhat4Enterprise Linux Desktop Enterprise Linux ServerEnterprise Linux Workstation+1 moreApr 29, 2026 Mar 1, 2013 N/A· v4 N/A· v3 4.9 MEDIUM· v2 The Network Lock Manager (NLM) protocol implementation in the NFS client functionality in the Linux kernel before 3.0 allows local users to cause a denial of service (system hang) via a LOCK_UN flock system call. |