← Back

Redhat

redhat

5,899 CVEs • 544 products

Products (544)

Click to collapse
Toggle
Satellite
satellite
Linux
linux
Openstack
openstack
Openshift
openshift
Keycloak
keycloak
Fedora Core
fedora_core
Libvirt
libvirt
Ansible Tower
ansible_tower
Cloudforms
cloudforms
Ansible
ansible
Ceph Storage
ceph_storage
Linux Desktop
linux_desktop
Linux Server
linux_server
Jboss Fuse
jboss_fuse
Undertow
undertow
Quay
quay
Storage
storage
Fuse
fuse
Data Grid
data_grid
Resteasy
resteasy
Wildfly
wildfly
Jboss A Mq
jboss_a-mq
Ceph
ceph

CVEs (5,899)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
4Immunix
NetbsdOpenbsd+1 more
4Immunix
LinuxNetbsd+1 more
Apr 16, 2026
Aug 12, 2002
N/A· v4
N/A· v3
7.2 HIGH· v2
Format string vulnerability in startprinting() function of printjob.c in BSD-based lpr lpd package may allow local users to gain privileges via an improper syslog call that uses format strings from the checkremote() call...Show more
Format string vulnerability in startprinting() function of printjob.c in BSD-based lpr lpd package may allow local users to gain privileges via an improper syslog call that uses format strings from the checkremote() call.Show less
1Redhat
2Docbook Stylesheets
Docbook Utils
Apr 16, 2026
May 29, 2002
N/A· v4
N/A· v3
4.6 MEDIUM· v2
The default stylesheet for DocBook on Red Hat Linux 6.2 through 7.2 is installed with an insecure option enabled, which could allow users to overwrite files outside of the current directory from an untrusted document by...Show more
The default stylesheet for DocBook on Red Hat Linux 6.2 through 7.2 is installed with an insecure option enabled, which could allow users to overwrite files outside of the current directory from an untrusted document by using a full pathname as an element identifier.Show less
9Conectiva
EngardelinuxImmunix+6 more
11Immunix
LinuxLinux+8 more
Apr 16, 2026
Mar 15, 2002
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
2Redhat
Samba
2Linux
Rsync
Apr 16, 2026
Mar 15, 2002
N/A· v4
N/A· v3
2.1 LOW· v2
rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then read certain files that would otherwise be...Show more
rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then read certain files that would otherwise be disallowed.Show less
2Redhat
Squid
2Linux
Squid
Apr 16, 2026
Mar 8, 2002
N/A· v4
N/A· v3
2.6 LOW· v2
Memory leak in SNMP in Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service.
2Redhat
Squid
2Linux
Squid
Apr 16, 2026
Mar 8, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service (core dump) and possibly execute arbitrary code with an ftp:// URL with a larger number of special characters, which exceed the buffer wh...Show more
Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service (core dump) and possibly execute arbitrary code with an ftp:// URL with a larger number of special characters, which exceed the buffer when Squid URL-escapes the characters.Show less
2Redhat
Squid
2Linux
Squid
Apr 16, 2026
Mar 8, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
Squid 2.4 STABLE3 and earlier does not properly disable HTCP, even when "htcp_port 0" is specified in squid.conf, which could allow remote attackers to bypass intended access restrictions.
6Debian
FreebsdGnu+3 more
6Debian Linux
FreebsdLinux+3 more
Jul 23, 2026
Mar 8, 2002
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in ncurses 5.0, and the ncurses4 compatibility package as used in Red Hat Linux, allows local users to gain privileges, related to "routines for moving the physical cursor and scrolling."
8Caldera
DebianFreebsd+5 more
9Debian Linux
FreebsdLinux+6 more
Apr 16, 2026
Feb 27, 2002
N/A· v4
N/A· v3
7.2 HIGH· v2
Heap corruption vulnerability in the "at" program allows local users to execute arbitrary code via a malformed execution time, which causes at to free the same memory twice.
2Openldap
Redhat
2Linux
Openldap
Apr 16, 2026
Jan 31, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
slapd in OpenLDAP 2.0 through 2.0.19 allows local users, and anonymous users before 2.0.8, to conduct a "replace" action on access controls without any values, which causes OpenLDAP to delete non-mandatory attributes tha...Show more
slapd in OpenLDAP 2.0 through 2.0.19 allows local users, and anonymous users before 2.0.8, to conduct a "replace" action on access controls without any values, which causes OpenLDAP to delete non-mandatory attributes that would otherwise be protected by ACLs.Show less
3Debian
GnuRedhat
3Debian Linux
EnscriptLinux
Apr 16, 2026
Jan 31, 2002
N/A· v4
N/A· v3
3.6 LOW· v2
GNU Enscript 1.6.1 and earlier allows local users to overwrite arbitrary files of the Enscript user via a symlink attack on temporary files.
4Engardelinux
MandrakesoftRedhat+1 more
4Linux
Mandrake LinuxSecure Linux+1 more
Apr 16, 2026
Jan 31, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
Format string vulnerability in stunnel before 3.22 when used in client mode for (1) smtp, (2) pop, or (3) nntp allows remote malicious servers to execute arbitrary code.
2Debian
Redhat
2Debian Linux
Linux
Apr 16, 2026
Dec 21, 2001
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Buffer overflow in glob function of glibc allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a glob pattern that ends in a brace "{" character.
3Openbsd
RedhatSuse
3Linux
OpensshSuse Linux
Apr 16, 2026
Dec 21, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
OpenSSH 3.0.1 and earlier with UseLogin enabled does not properly cleanse critical environment variables such as LD_PRELOAD, which allows local users to gain root privileges.
3Caldera
RedhatSuse
5Linux
Linux PowertoolsOpenlinux Eserver+2 more
Apr 16, 2026
Dec 21, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands.
2Redhat
University Of Cambridge
2Exim
Linux
Apr 16, 2026
Dec 19, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Exim 3.22 and earlier, in some configurations, does not properly verify the local part of an address when redirecting the address to a pipe, which could allow remote attackers to execute arbitrary commands via shell meta...Show more
Exim 3.22 and earlier, in some configurations, does not properly verify the local part of an address when redirecting the address to a pipe, which could allow remote attackers to execute arbitrary commands via shell metacharacters.Show less
1Redhat
1Linux
Apr 16, 2026
Dec 6, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
2.4.3-12 kernel in Red Hat Linux 7.1 Korean installation program sets the setting default umask for init to 000, which installs files with world-writeable permissions.
1Redhat
1Linux
Apr 16, 2026
Dec 6, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
TUX HTTP server 2.1.0-2 in Red Hat Linux allows remote attackers to cause a denial of service via a long Host: header.
1Redhat
1Linux
Apr 16, 2026
Dec 4, 2001
N/A· v4
N/A· v3
3.6 LOW· v2
apmscript in Apmd in Red Hat 7.2 "Enigma" allows local users to create or change the modification dates of arbitrary files via a symlink attack on the LOW_POWER temporary file, which could be used to cause a denial of se...Show more
apmscript in Apmd in Red Hat 7.2 "Enigma" allows local users to create or change the modification dates of arbitrary files via a symlink attack on the LOW_POWER temporary file, which could be used to cause a denial of service, e.g. by creating /etc/nologin and disabling logins.Show less
1Redhat
1Stronghold
Apr 16, 2026
Nov 28, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Red Hat Stronghold 2.3 to 3.0 allows remote attackers to retrieve system information via an HTTP GET request to (1) stronghold-info or (2) stronghold-status.