Redhat
redhat
5,653 CVEs • 536 products
Products (536)
Click to collapseToggle
Products (536)
Click to collapse
CVEs (5,653)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another th...Show more |
2Linux Redhat2Enterprise Linux Linux KernelApr 15, 2025 Jul 24, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A possible unauthorized memory access flaw was found in the Linux kernel's cpu_entry_area mapping of X86 CPU data to memory, where a user may guess the location of exception stacks or other important data. Based on the p...Show more |
3Canonical LinuxRedhat3Enterprise Linux Linux KernelUbuntu LinuxNov 21, 2024 Jul 24, 2023 N/A· v4 7.1 HIGH· v3 N/A· v2 A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue may allow an attacker with local user access to cause a system crash or leak internal kernel informat...Show more |
A flaw was found in the Quay registry. While the image labels created through Quay undergo validation both in the UI and backend by applying a regex (validation.py), the same validation is not performed when the label c...Show more |
A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of...Show more |
3Fedoraproject KeylimeRedhat9Enterprise Linux Enterprise Linux EusEnterprise Linux For Ibm Z Systems+6 moreNov 21, 2024 Jul 24, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections. This flaw allows an attacker to exhaust all available connections. |
2Linux Redhat4Enterprise Linux Enterprise Linux For Real TimeEnterprise Linux For Real Time For Nfv+1 moreNov 21, 2024 Jul 24, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2 A double-free vulnerability was found in handling vmw_buffer_object objects in the vmwgfx driver in the Linux kernel. This issue occurs due to the lack of validating the existence of an object prior to performing further...Show more |
2Linux Redhat4Enterprise Linux Enterprise Linux For Real TimeEnterprise Linux For Real Time For Nfv+1 moreFeb 18, 2026 Jul 24, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A race condition vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists within the handling of GEM objects. The issue results from improper locking when performing operations on an object. This...Show more |
3Fedoraproject RedhatSamba4Enterprise Linux FedoraSamba+1 moreDec 6, 2024 Jul 20, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A vulnerability was found in Samba's SMB2 packet signing mechanism. The SMB2 packet signing is not enforced if an admin configured "server signing = required" or for SMB2 connections to Domain Controllers where SMB2 pack...Show more |
4Debian FedoraprojectRedhat+1 more5Debian Linux Enterprise LinuxFedora+2 moreDec 6, 2024 Jul 20, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A path disclosure vulnerability was found in Samba. As part of the Spotlight protocol, Samba discloses the server-side absolute path of shares, files, and directories in the results for search queries. This flaw allows a...Show more |
4Debian FedoraprojectRedhat+1 more4Debian Linux Enterprise LinuxFedora+1 moreNov 21, 2024 Jul 20, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC packets, one encoded data structure is a key-value style dictionary where the keys are character str...Show more |
4Debian FedoraprojectRedhat+1 more4Debian Linux Enterprise LinuxFedora+1 moreNov 21, 2024 Jul 20, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 An infinite loop vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC packets sent by the client, the core unmarshalling function sl_unpack_loop() did not validate a fiel...Show more |
4Debian FedoraprojectRedhat+1 more4Debian Linux Enterprise LinuxFedora+1 moreNov 21, 2024 Jul 20, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server...Show more |
There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables; The handle_image() function takes into account the SizeOfRawData field from each section to be loaded. An attacke...Show more |
3Fedoraproject RedhatTats4Enterprise Linux Extra Packages For Enterprise LinuxFedora+1 moreNov 21, 2024 Jul 14, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file. |
3Fedoraproject RedhatTats4Enterprise Linux Extra Packages For Enterprise LinuxFedora+1 moreFeb 8, 2025 Jul 14, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file. |
3Debian LibtiffRedhat3Debian Linux Enterprise LinuxLibtiffNov 3, 2025 Jul 12, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libtiff. A specially crafted tiff file can lead to a segmentation fault due to a buffer overflow in the Fax3Encode function in libtiff/tif_fax3.c, resulting in a denial of service. |
3Fedoraproject QemuRedhat4Enterprise Linux FedoraOpenstack Platform+1 moreNov 21, 2024 Jul 11, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection....Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelNov 21, 2024 Jul 11, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be...Show more |
3Fedoraproject RedhatTang Project3Enterprise Linux FedoraTangNov 21, 2024 Jul 11, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host. |