Redhat
redhat
5,674 CVEs • 537 products
Products (537)
Click to collapseToggle
Products (537)
Click to collapse
CVEs (5,674)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Linux Redhat7Enterprise Linux Enterprise Linux AusEnterprise Linux Desktop+4 moreApr 29, 2026 Mar 1, 2013 N/A· v4 N/A· v3 3.6 LOW· v2 kernel/signal.c in the Linux kernel before 2.6.39 allows local users to spoof the uid and pid of a signal sender via a sigqueueinfo system call. |
The ldap_fluff gem for Ruby, as used in Red Hat CloudForms 1.1, when using Active Directory for authentication, allows remote attackers to bypass authentication via unspecified vectors. |
2Fedoraproject Redhat2Enterprise Linux FedoraApr 29, 2026 Mar 1, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not properly handle use of many shared libraries by a 32-bit executable file, wh...Show more |
2Linux Redhat3Enterprise Linux Enterprise MrgLinux KernelApr 29, 2026 Feb 28, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 The chase_port function in drivers/usb/serial/io_ti.c in the Linux kernel before 3.7.4 allows local users to cause a denial of service (NULL pointer dereference and system crash) via an attempted /dev/ttyUSB read or writ...Show more |
2Linux Redhat3Enterprise Linux Enterprise MrgLinux KernelApr 29, 2026 Feb 28, 2013 N/A· v4 N/A· v3 6.2 MEDIUM· v2 Buffer overflow in the VFAT filesystem implementation in the Linux kernel before 3.3 allows local users to gain privileges or cause a denial of service (system crash) via a VFAT write operation on a filesystem with the u...Show more |
4Adobe OpensuseRedhat+1 more8Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux Server+5 moreApr 21, 2026 Feb 27, 2013 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 Unspecified vulnerability in the ExternalInterface ActionScript functionality in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202...Show more |
4Adobe OpensuseRedhat+1 more8Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux Server+5 moreApr 21, 2026 Feb 27, 2013 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 The Firefox sandbox in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, does not properly restrict privileges, whic...Show more |
The lockwrap function in port-proxy/bin/openshift-port-proxy-cfg in Red Hat OpenShift Origin before 1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in...Show more |
rhc-chk.rb in Red Hat OpenShift Origin before 1.1, when -d (debug mode) is used, outputs the password and other sensitive information in cleartext, which allows context-dependent attackers to obtain sensitive information...Show more |
Open redirect vulnerability in node-util/www/html/restorer.php in Red Hat OpenShift Origin before 1.0.5-3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the PAT...Show more |
node-util/www/html/restorer.php in the Red Hat OpenShift Origin before 1.0.5-3 allows remote attackers to execute arbitrary commands via a crafted uuid in the PATH_INFO. |
Unspecified vulnerability in autofs, as used in Red Hat Enterprise Linux (RHEL) 5, allows local users to cause a denial of service (autofs crash and delayed mounts) or prevent "mount expiration" via unspecified vectors r...Show more |
2Fedoraproject Redhat2Enterprise Linux SssdApr 29, 2026 Feb 24, 2013 N/A· v4 N/A· v3 3.7 LOW· v2 System Security Services Daemon (SSSD) before 1.9.4, when (1) creating, (2) copying, or (3) removing a user home directory tree, allows local users to create, modify, or delete arbitrary files via a symlink attack on ano...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Feb 22, 2013 N/A· v4 N/A· v3 6.5 MEDIUM· v2 The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host OS privileges by leveraging KVM guest OS p...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Feb 22, 2013 N/A· v4 N/A· v3 6.6 MEDIUM· v2 The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impa...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 29, 2026 Feb 22, 2013 N/A· v4 N/A· v3 4.7 MEDIUM· v2 arch/x86/include/asm/pgtable.h in the Linux kernel before 3.6.2, when transparent huge pages are used, does not properly support PROT_NONE memory regions, which allows local users to cause a denial of service (system cra...Show more |
2Fedora Project Redhat2Enterprise Linux Fedora Release RawhideApr 29, 2026 Feb 22, 2013 N/A· v4 N/A· v3 6.2 MEDIUM· v2 A certain Red Hat build of the pam_ssh_agent_auth module on Red Hat Enterprise Linux (RHEL) 6 and Fedora Rawhide calls the glibc error function instead of the error function in the OpenSSH codebase, which allows local us...Show more |
5Canonical DebianMozilla+2 more12Debian Linux Enterprise Linux AusEnterprise Linux Desktop+9 moreApr 29, 2026 Feb 19, 2013 N/A· v4 N/A· v3 9.3 HIGH· v2 Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 19.0, Firefox ESR 17.x before 17.0.3, Thunderbird before 17.0.3, Thunderbird ESR 17.x before 17.0.3, and SeaMonkey before 2.16 allow re...Show more |
5Canonical DebianMozilla+2 more12Debian Linux Enterprise Linux AusEnterprise Linux Desktop+9 moreApr 29, 2026 Feb 19, 2013 N/A· v4 N/A· v3 9.3 HIGH· v2 Heap-based buffer overflow in the nsSaveAsCharset::DoCharsetConversion function in Mozilla Firefox before 19.0, Firefox ESR 17.x before 17.0.3, Thunderbird before 17.0.3, Thunderbird ESR 17.x before 17.0.3, and SeaMonkey...Show more |
5Canonical DebianMozilla+2 more12Debian Linux Enterprise Linux AusEnterprise Linux Desktop+9 moreApr 29, 2026 Feb 19, 2013 N/A· v4 N/A· v3 9.3 HIGH· v2 Use-after-free vulnerability in the nsOverflowContinuationTracker::Finish function in Mozilla Firefox before 19.0, Firefox ESR 17.x before 17.0.3, Thunderbird before 17.0.3, Thunderbird ESR 17.x before 17.0.3, and SeaMon...Show more |