Redhat
redhat
5,899 CVEs • 544 products
Products (544)
Click to collapseToggle
Products (544)
Click to collapse
CVEs (5,899)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Freebsd GnuImmunix+2 more5Freebsd ImmunixLinux+2 moreJul 23, 2026 Dec 19, 2000 N/A· v4 N/A· v3 7.2 HIGH· v2 Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS. |
Glint in Red Hat Linux 5.2 allows local users to overwrite arbitrary files and cause a denial of service via a symlink attack. |
3Caldera RedhatTrustix6Linux OpenlinuxOpenlinux Ebuilder+3 moreApr 16, 2026 Dec 19, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands. |
Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters. |
dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program. |
5Debian MandrakesoftRedhat+2 more5Debian Linux LinuxMandrake Linux+2 moreApr 16, 2026 Nov 14, 2000 N/A· v4 N/A· v3 7.2 HIGH· v2 Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages. |
13Caldera ConectivaDebian+10 more16Aix Debian LinuxImmunix+13 moreApr 16, 2026 Nov 14, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. |
The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/. |
3Netbsd OpenbsdRedhat3Linux NetbsdOpenbsdApr 16, 2026 Oct 20, 2000 N/A· v4 N/A· v3 7.5 HIGH· v2 mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands. |
3Netbsd OpenbsdRedhat3Linux NetbsdOpenbsdApr 16, 2026 Oct 20, 2000 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name. |
3Conectiva GnuRedhat3Linux LinuxMailmanApr 16, 2026 Oct 20, 2000 N/A· v4 N/A· v3 4.6 MEDIUM· v2 The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges. |
The initscripts package in Red Hat Linux allows local users to gain privileges via a symlink attack. |
3Immunix IputilsRedhat3Immunix IputilsLinuxApr 16, 2026 Oct 18, 2000 N/A· v4 N/A· v3 4.6 MEDIUM· v2 Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, may allow local users to gain privileges. |
3Immunix IputilsRedhat3Immunix IputilsLinuxApr 16, 2026 Oct 18, 2000 N/A· v4 N/A· v3 7.5 HIGH· v2 ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, does not drop privileges after acquiring a raw socket, which increases ping's exposure to bugs that otherwise w...Show more |
Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters. |
userhelper in the usermode package on Red Hat Linux executes non-setuid programs as root, which does not activate the security measures in glibc and allows the programs to be exploited via format string vulnerabilities i...Show more |
3Conectiva Michael K. JohnsonRedhat3Linux LinuxPam ConsoleApr 16, 2026 Jul 27, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm has XDMCP enabled. |
3Conectiva MandrakesoftRedhat3Linux LinuxMandrake LinuxApr 16, 2026 Jul 18, 2000 N/A· v4 N/A· v3 2.1 LOW· v2 Vulnerability in Mandrake Linux usermode package allows local users to to reboot or halt the system. |
5Conectiva DebianRedhat+2 more5Debian Linux LinuxLinux+2 moreApr 16, 2026 Jul 16, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges. |
3Caldera MandrakesoftRedhat3Linux Mandrake LinuxOpenlinuxApr 16, 2026 Jul 3, 2000 N/A· v4 N/A· v3 7.2 HIGH· v2 makewhatis in Linux man package allows local users to overwrite files via a symlink attack. |