Redhat
redhat
5,653 CVEs • 533 products
Products (533)
Click to collapseToggle
Products (533)
Click to collapse
CVEs (5,653)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Redhat SgiSysstat3Propack SysstatSysstatApr 16, 2026 Apr 15, 2004 N/A· v4 N/A· v3 4.6 MEDIUM· v2 The (1) post and (2) trigger scripts in sysstat 4.0.7 and earlier allow local users to overwrite arbitrary files via symlink attacks on temporary files, a different vulnerability than CVE-2004-0108. |
3Metamail Corporation RedhatSgi4Enterprise Linux Linux Advanced WorkstationMetamail+1 moreApr 16, 2026 Mar 3, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple buffer overflows in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code. |
3Metamail Corporation RedhatSgi4Enterprise Linux Linux Advanced WorkstationMetamail+1 moreApr 16, 2026 Mar 3, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple format string vulnerabilities in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code. |
4Linux NetwosixRedhat+1 more7Bigmem Kernel KernelKernel Doc+4 moreApr 16, 2026 Mar 3, 2004 N/A· v4 N/A· v3 7.2 HIGH· v2 The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors i...Show more |
tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057. |
The C-Media PCI sound driver in Linux before 2.4.22 does not use the get_user function to access userspace in certain conditions, which crosses security boundaries and may facilitate the exploitation of vulnerabilities,...Show more |
2Redhat Suse2Enterprise Linux Suse LinuxApr 16, 2026 Dec 31, 2003 N/A· v4 N/A· v3 2.1 LOW· v2 Unspecified vulnerability in xscreensaver 4.12, and possibly other versions, allows attackers to cause xscreensaver to crash via unspecified vectors "while verifying the user-password." |
2Linux Redhat2Enterprise Linux Linux KernelApr 16, 2026 Dec 31, 2003 N/A· v4 N/A· v3 1.7 LOW· v2 Various routines for the ppc64 architecture on Linux kernel 2.6 prior to 2.6.2 and 2.4 prior to 2.4.24 do not use the copy_from_user function when copying data from userspace to kernelspace, which crosses security bounda...Show more |
The (1) ipq_read and (2) ipulog_read functions in iptables allow local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface. |
4Andrew Tridgell EngardelinuxRedhat+1 more5Rsync RsyncSecure Community+2 moreApr 16, 2026 Dec 15, 2003 N/A· v4 N/A· v3 7.5 HIGH· v2 Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail. |
5Gnu IntelQuagga+2 more7Enterprise Linux GlibcIa64+4 moreApr 16, 2026 Dec 15, 2003 N/A· v4 N/A· v3 4.9 MEDIUM· v2 The getifaddrs function in GNU libc (glibc) 2.2.4 and earlier allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface. |
The default configuration of Apache 2.0.40, as shipped with Red Hat Linux 9.0, allows remote attackers to list directory contents, even if auto indexing is turned off and there is a default web page configured, via a GET...Show more |
The getgrouplist function in GNU libc (glibc) 2.2.4 and earlier allows attackers to cause a denial of service (segmentation fault) and execute arbitrary code when a user is a member of a large number of groups, which can...Show more |
6Compaq FreebsdOpenbsd+3 more6Freebsd IrixOpenbsd+3 moreApr 16, 2026 Oct 20, 2003 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an...Show more |
Buffer overflow in PAM SMB module (pam_smb) 1.1.6 and earlier, when authenticating to a remote service, allows remote attackers to execute arbitrary code. |
1Redhat 2Enterprise Linux Linux Advanced WorkstationApr 16, 2026 Aug 27, 2003 N/A· v4 N/A· v3 7.5 HIGH· v2 The C-Media PCI sound driver in Linux before 2.4.21 does not use the get_user function to access userspace, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerabil...Show more |
Linux 2.4.x allows remote attackers to spoof the bridge Forwarding table via forged packets whose source addresses are the same as the target. |
The STP protocol implementation in Linux 2.4.x does not properly verify certain lengths, which could allow attackers to cause a denial of service. |
The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient security by design, which allows attackers to modify the bridge topology. |
2Gnome Redhat4Enterprise Linux GdmKdebase+1 moreApr 16, 2026 Aug 27, 2003 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) via a short authorization key name. |