Redhat
redhat
5,653 CVEs • 536 products
Products (536)
Click to collapseToggle
Products (536)
Click to collapse
CVEs (5,653)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Fedoraproject Redhat20Enterprise Linux Enterprise Linux DesktopEnterprise Linux Eus+17 moreNov 21, 2024 Aug 23, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability was found in subscription-manager that allows local privilege escalation due to inadequate authorization. The D-Bus interface com.redhat.RHSM1 exposes a significant number of methods to all users that cou...Show more |
2Linux Redhat2Enterprise Linux Linux KernelNov 21, 2024 Aug 21, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A NULL pointer dereference flaw was found in vmxnet3_rq_cleanup in drivers/net/vmxnet3/vmxnet3_drv.c in the networking sub-component in vmxnet3 in the Linux Kernel. This issue may allow a local attacker with normal user...Show more |
A flaw was found in openshift-logging LokiStack. The key used for caching is just the token, which is too broad. This issue allows a user with a token valid for one action to execute other actions as long as the authoriz...Show more |
2Linux Redhat2Enterprise Linux Linux KernelJun 3, 2025 Aug 16, 2023 N/A· v4 7.1 HIGH· v3 N/A· v2 A use-after-free flaw was found in vmxnet3_rq_alloc_rx_buf in drivers/net/vmxnet3/vmxnet3_drv.c in VMware's vmxnet3 ethernet NIC driver in the Linux Kernel. This issue could allow a local attacker to crash the system due...Show more |
3Debian PostgresqlRedhat3Debian Linux Enterprise LinuxPostgresqlDec 6, 2024 Aug 11, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 A vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row security policies defined for UPDATE and SELECT. If UPDATE and SELECT policies forbid some rows that INS...Show more |
3Debian PostgresqlRedhat4Debian Linux Enterprise LinuxPostgresql+1 moreNov 21, 2024 Aug 11, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 IN THE EXTENSION SCRIPT, a SQL Injection vulnerability was found in PostgreSQL if it uses @extowner@, @extschema@, or @extschema:...@ inside a quoting construct (dollar quoting, '', or ""). If an administrator has instal...Show more |
5Debian IntelNetapp+2 more534All Flash Fabric Attached Storage 2820 All Flash Fabric Attached Storage 500fAll Flash Fabric Attached Storage 8300+531 moreNov 21, 2024 Aug 11, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure...Show more |
5Debian FedoraprojectLinux+2 more8Debian Linux Enterprise LinuxFedora+5 moreNov 21, 2024 Aug 9, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2 A flaw was found in the exFAT driver of the Linux kernel. The vulnerability exists in the implementation of the file name reconstruction function, which is responsible for reading file name entries from a directory index...Show more |
4Debian FedoraprojectLinux+1 more4Debian Linux Enterprise LinuxFedora+1 moreMar 24, 2026 Aug 7, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in the Linux kernel's TUN/TAP functionality. This issue could allow a local user to bypass network filters and gain unauthorized access to some resources. The original patches fixing CVE-2023-1076 are in...Show more |
4Debian FedoraprojectLinux+1 more8Debian Linux Enterprise LinuxEnterprise Linux Eus+5 moreNov 21, 2024 Aug 7, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID. This flaw allows a local user to crash or escalate their privileges on the system. |
1Redhat 5Keycloak Openshift Container PlatformOpenshift Container Platform For Ibm Linuxone+2 moreNov 21, 2024 Aug 4, 2023 N/A· v4 5.0 MEDIUM· v3 N/A· v2 A flaw was found in Keycloaks OpenID Connect user authentication, which may incorrectly authenticate requests. An authenticated attacker who could obtain information from a user request within the same realm could use th...Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelNov 21, 2024 Aug 3, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A use-after-free vulnerability was found in the cxgb4 driver in the Linux kernel. The bug occurs when the cxgb4 device is detaching due to a possible rearming of the flower_stats_timer from the work queue. This flaw allo...Show more |
4Debian FedoraprojectLinux+1 more6Debian Linux Enterprise LinuxEnterprise Linux For Real Time+3 moreNov 21, 2024 Aug 3, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device initialization when the siano device is plugged in. This flaw allows a local user to crash the system,...Show more |
4Artifex DebianFedoraproject+1 more4Debian Linux Enterprise LinuxFedora+1 moreNov 21, 2024 Aug 1, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a denial of service via outputting a crafted PDF file for a DEVN device with...Show more |
2Linux Redhat2Enterprise Linux Linux KernelNov 21, 2024 Jul 31, 2023 N/A· v4 4.6 MEDIUM· v3 N/A· v2 A flaw was found in the USB Host Controller Driver framework in the Linux kernel. The usb_giveback_urb function has a logic loophole in its implementation. Due to the inappropriate judgment condition of the goto statemen...Show more |
5Debian FedoraprojectLinux+2 more8Debian Linux Enterprise LinuxFedora+5 moreNov 21, 2024 Jul 31, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A use-after-free flaw was found in the Linux kernel's netfilter in the way a user triggers the nft_pipapo_remove function with the element, without a NFT_SET_EXT_KEY_END. This issue could allow a local user to crash the...Show more |
4Debian FedoraprojectLinux+1 more4Debian Linux Enterprise LinuxFedora+1 moreNov 21, 2024 Jul 25, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem). This issue may allow a malicious user with CAP_NET_ADMIN privileges to cause a 4 byte out-of-bounds read of XFRMA_MTIMER_THRE...Show more |
4Debian FedoraprojectLinux+1 more6Debian Linux Enterprise LinuxEnterprise Linux For Real Time+3 moreNov 21, 2024 Jul 25, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem). This issue may allow a malicious user with CAP_NET_ADMIN privileges to directly dereference a NULL pointer in xfrm_update_ae_...Show more |
An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security groups for an invalid project. This issue creates resources that are unco...Show more |
2Linux Redhat2Enterprise Linux Linux KernelNov 21, 2024 Jul 24, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 An out-of-bounds memory access flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user generates a malicious (too big) networking packet when napi frags is enabled. This flaw allows a local...Show more |