Redhat
redhat
5,653 CVEs • 536 products
Products (536)
Click to collapseToggle
Products (536)
Click to collapse
CVEs (5,653)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Fedoraproject RedhatSound Exchange Project4Enterprise Linux Extra Packages For Enterprise LinuxFedora+1 moreNov 21, 2024 Jul 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure. |
3Fedoraproject RedhatSound Exchange Project4Enterprise Linux Extra Packages For Enterprise LinuxFedora+1 moreJun 27, 2025 Jul 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:160:41. This flaw can lead to a denial of service, code execution, or information disclosure. |
3Fedoraproject RedhatSound Exchange Project4Enterprise Linux Extra Packages For Enterprise LinuxFedora+1 moreJun 27, 2025 Jul 10, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A floating point exception vulnerability was found in sox, in the read_samples function at sox/src/voc.c:334:18. This flaw can lead to a denial of service. |
3Fedoraproject RedhatSound Exchange Project4Enterprise Linux Extra Packages For Enterprise LinuxFedora+1 moreJun 27, 2025 Jul 10, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58. This flaw can lead to a denial of service. |
3Fedoraproject LibreofficeRedhat3Enterprise Linux FedoraLibreofficeNov 21, 2024 Jul 10, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in the Libreoffice package. An attacker can craft an odb containing a "database/script" file with a SCRIPT command where the contents of the file could be written to a new file whose location was determi...Show more |
1Redhat 5Keycloak Openshift Container PlatformOpenshift Container Platform For Ibm Linuxone+2 moreNov 21, 2024 Jul 7, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Keycloak, an open-source identity and access management solution, has a cross-site scripting (XSS) vulnerability in the SAML or OIDC providers. The vulnerability can allow an attacker to execute malicious scripts by sett...Show more |
1Redhat 5Openshift Container Platform Openshift Container Platform For Arm64Openshift Container Platform For Linuxone+2 moreNov 21, 2024 Jul 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A compliance problem was found in the Red Hat OpenShift Container Platform. Red Hat discovered that, when FIPS mode was enabled, not all of the cryptographic modules in use were FIPS-validated. |
A vulnerability was found in quarkus-core. This vulnerability occurs because the TLS protocol configured with quarkus.http.ssl.protocols is not enforced, and the client can force the selection of the weaker supported TLS...Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelNov 21, 2024 Jun 30, 2023 N/A· v4 5.7 MEDIUM· v3 N/A· v2 A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth...Show more |
A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not check that the values provided for the Request, Event, or Error IDs are within the bounds of the array...Show more |
5Debian FedoraprojectLinux+2 more9Debian Linux Enterprise LinuxFedora+6 moreNov 21, 2024 Jun 23, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 A NULL pointer dereference issue was found in the gfs2 file system in the Linux kernel. It occurs on corrupt gfs2 file systems when the evict code tries to reference the journal descriptor structure after it has been fre...Show more |
3Apple RedhatWebkitgtk8Enterprise Linux IpadosIphone Os+5 moreOct 23, 2025 Jun 23, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing mal...Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelMar 11, 2025 Jun 12, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in the Framebuffer Console (fbcon) in the Linux Kernel. When providing font->width and font->height greater than 32 to fbcon_set_font, since there are no checks in place, a shift-out-of-bounds occurs lea...Show more |
3Fedoraproject PostgresqlRedhat4Enterprise Linux FedoraPostgresql+1 moreJan 6, 2025 Jun 9, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Row security policies disregard user ID changes after inlining; PostgreSQL could permit incorrect policies to be applied in certain cases where role-specific policies are used and a given query is planned under one role...Show more |
3Fedoraproject PostgresqlRedhat4Enterprise Linux FedoraPostgresql+1 moreJan 6, 2025 Jun 9, 2023 N/A· v4 7.2 HIGH· v3 N/A· v2 schema_element defeats protective search_path changes; It was found that certain database calls in PostgreSQL could permit an authed attacker with elevated database-level privileges to execute arbitrary code. |
4Debian FedoraprojectLibcap Project+1 more4Debian Linux Enterprise LinuxFedora+1 moreDec 2, 2025 Jun 6, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB. |
4Debian FedoraprojectLibcap Project+1 more4Debian Linux Enterprise LinuxFedora+1 moreNov 21, 2024 Jun 6, 2023 N/A· v4 3.3 LOW· v3 N/A· v2 A vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicious actor to use cause __real_pthread_create() to return an error, which can exhaust the process memory. |
1Redhat 3Openshift Api For Data Protection Openshift Container PlatformOpenshift Developer Tools And ServicesJan 7, 2025 Jun 6, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records returned (query string: `n`). This vulnerability allows a malicious user to...Show more |
1Redhat 1Advanced Cluster Management For Kubernetes Jan 8, 2025 Jun 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 The grc-policy-propagator allows security escalation within the cluster. The propagator allows policies which contain some dynamically obtained values (instead of the policy apply a static manifest on a managed cluster)...Show more |
2Opensc Project Redhat2Enterprise Linux OpenscNov 3, 2025 Jun 1, 2023 N/A· v4 7.1 HIGH· v3 N/A· v2 A vulnerbility was found in OpenSC. This security flaw cause a buffer overrun vulnerability in pkcs15 cardos_have_verifyrc_package. The attacker can supply a smart card package with malformed ASN1 context. The cardos_hav...Show more |