Redhat
redhat
5,899 CVEs • 544 products
Products (544)
Click to collapseToggle
Products (544)
Click to collapse
CVEs (5,899)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Infoblox IscMandrakesoft+2 more11Dhcpd Dns One ApplianceFedora Core+8 moreApr 16, 2026 Aug 6, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 The DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13, when compiled in environments that do not provide the vsnprintf function, uses C include files that define vsnprintf to use the less safe vsprintf function, w...Show more |
5Infoblox IscMandrakesoft+2 more11Dhcpd Dns One ApplianceFedora Core+8 moreApr 16, 2026 Aug 6, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via multi...Show more |
4Avaya PhpRedhat+1 more8Converged Communications Server Fedora CoreIntegrated Management+5 moreApr 16, 2026 Jul 27, 2004 N/A· v4 N/A· v3 6.8 MEDIUM· v2 The strip_tags function in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, does not filter null (\0) characters within tag names when restricting input to allowed tags, which allows dangerous tags to be processed by web bro...Show more |
3Apache DebianRedhat4Debian Linux Enterprise Linux ServerEnterprise Linux Workstation+1 moreApr 16, 2026 Jul 7, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Stack-based buffer overflow in the ssl_util_uuencode_binary function in ssl_util.c for Apache mod_ssl, when mod_ssl is configured to trust the issuing CA, may allow remote attackers to execute arbitrary code via a client...Show more |
3Gnome RedhatSgi5Enterprise Linux Gdk PixbufGdkpixbuf+2 moreApr 16, 2026 Apr 15, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 gdk-pixbuf before 0.20 allows attackers to cause a denial of service (crash) via a malformed bitmap (BMP) file. |
3Redhat SgiSysstat3Propack SysstatSysstatApr 16, 2026 Apr 15, 2004 N/A· v4 N/A· v3 4.6 MEDIUM· v2 The isag utility, which processes sysstat data, allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CAN-2004-0107. |
3Redhat SgiSysstat3Propack SysstatSysstatApr 16, 2026 Apr 15, 2004 N/A· v4 N/A· v3 4.6 MEDIUM· v2 The (1) post and (2) trigger scripts in sysstat 4.0.7 and earlier allow local users to overwrite arbitrary files via symlink attacks on temporary files, a different vulnerability than CVE-2004-0108. |
3Metamail Corporation RedhatSgi4Enterprise Linux Linux Advanced WorkstationMetamail+1 moreApr 16, 2026 Mar 3, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple buffer overflows in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code. |
3Metamail Corporation RedhatSgi4Enterprise Linux Linux Advanced WorkstationMetamail+1 moreApr 16, 2026 Mar 3, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple format string vulnerabilities in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code. |
4Linux NetwosixRedhat+1 more7Bigmem Kernel KernelKernel Doc+4 moreApr 16, 2026 Mar 3, 2004 N/A· v4 N/A· v3 7.2 HIGH· v2 The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not properly check the return value from the do_munmap function when the maximum number of VMA descriptors i...Show more |
tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057. |
The C-Media PCI sound driver in Linux before 2.4.22 does not use the get_user function to access userspace in certain conditions, which crosses security boundaries and may facilitate the exploitation of vulnerabilities,...Show more |
2Redhat Suse2Enterprise Linux Suse LinuxApr 16, 2026 Dec 31, 2003 N/A· v4 N/A· v3 2.1 LOW· v2 Unspecified vulnerability in xscreensaver 4.12, and possibly other versions, allows attackers to cause xscreensaver to crash via unspecified vectors "while verifying the user-password." |
2Linux Redhat2Enterprise Linux Linux KernelApr 16, 2026 Dec 31, 2003 N/A· v4 N/A· v3 1.7 LOW· v2 Various routines for the ppc64 architecture on Linux kernel 2.6 prior to 2.6.2 and 2.4 prior to 2.4.24 do not use the copy_from_user function when copying data from userspace to kernelspace, which crosses security bounda...Show more |
The (1) ipq_read and (2) ipulog_read functions in iptables allow local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface. |
4Andrew Tridgell EngardelinuxRedhat+1 more5Rsync RsyncSecure Community+2 moreApr 16, 2026 Dec 15, 2003 N/A· v4 N/A· v3 7.5 HIGH· v2 Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail. |
5Gnu IntelQuagga+2 more7Enterprise Linux GlibcIa64+4 moreApr 16, 2026 Dec 15, 2003 N/A· v4 N/A· v3 4.9 MEDIUM· v2 The getifaddrs function in GNU libc (glibc) 2.2.4 and earlier allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface. |
The default configuration of Apache 2.0.40, as shipped with Red Hat Linux 9.0, allows remote attackers to list directory contents, even if auto indexing is turned off and there is a default web page configured, via a GET...Show more |
The getgrouplist function in GNU libc (glibc) 2.2.4 and earlier allows attackers to cause a denial of service (segmentation fault) and execute arbitrary code when a user is a member of a large number of groups, which can...Show more |
6Compaq FreebsdOpenbsd+3 more6Freebsd IrixOpenbsd+3 moreApr 16, 2026 Oct 20, 2003 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an...Show more |