Redhat
redhat
5,653 CVEs • 536 products
Products (536)
Click to collapseToggle
Products (536)
Click to collapse
CVEs (5,653)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Linux NetappRedhat3Enterprise Linux Hci Baseboard Management ControllerLinux KernelMay 5, 2025 May 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 In the Linux kernel through 6.3.1, a use-after-free in Netfilter nf_tables when processing batch requests can be abused to perform arbitrary read and write operations on kernel memory. Unprivileged local users can obtain...Show more |
3Lfprojects RedhatSylabs3Apptainer Enterprise LinuxSingularityNov 21, 2024 Apr 25, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Apptainer is an open source container platform for Linux. There is an ext4 use-after-free flaw that is exploitable through versions of Apptainer < 1.1.0 and installations that include apptainer-suid < 1.1.8 on older oper...Show more |
2Linux Redhat2Enterprise Linux Linux KernelMar 18, 2025 Apr 24, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 A flaw was found in the Linux kernel's netdevsim device driver, within the scheduling of events. This issue results from the improper management of a reference count. This may allow an attacker to create a denial of serv...Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelApr 23, 2025 Apr 20, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2 An out-of-bounds write vulnerability was found in the Linux kernel's SLIMpro I2C device driver. The userspace "data->block[0]" variable was not capped to a number between 0-255 and was used as the size of a memcpy, possi...Show more |
2Linux Redhat2Enterprise Linux Linux KernelMar 19, 2025 Apr 19, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel. The message from user space is not checked properly before transferring into the device. This flaw...Show more |
2Linux Redhat2Enterprise Linux Linux KernelMar 19, 2025 Apr 19, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A NULL pointer dereference flaw was found in the UNIX protocol in net/unix/diag.c In unix_diag_get_exact in the Linux Kernel. The newly allocated skb does not have sk, leading to a NULL pointer. This flaw allows a local...Show more |
3Cloudbase DebianRedhat6Debian Linux Fast DatapathOpen Vswitch+3 moreApr 23, 2025 Apr 10, 2023 N/A· v4 8.2 HIGH· v3 N/A· v2 A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0, OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapa...Show more |
2Linux Redhat2Enterprise Linux Linux KernelMay 12, 2026 Mar 29, 2023 N/A· v4 7.1 HIGH· v3 N/A· v2 A use-after-free flaw was found in nfsd4_ssc_setup_dul in fs/nfsd/nfs4proc.c in the NFS filesystem in the Linux Kernel. This issue could allow a local attacker to crash the system or it may lead to a kernel information l...Show more |
1Redhat 2Device Mapper Multipath Enterprise LinuxFeb 18, 2025 Mar 29, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability was found in the device-mapper-multipath. The device-mapper-multipath allows local users to obtain root access, exploited alone or in conjunction with CVE-2022-41973. Local users that are able to write to...Show more |
1Redhat 3Keycloak Openshift Container PlatformSingle Sign OnNov 21, 2024 Mar 29, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 A flaw was found in Keycloak in the execute-actions-email endpoint. This issue allows arbitrary HTML to be injected into emails sent to Keycloak users and can be misused to perform phishing or other attacks against users...Show more |
3Fedoraproject QemuRedhat3Enterprise Linux FedoraQemuFeb 18, 2025 Mar 29, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the syst...Show more |
4Canonical FedoraprojectLinux+1 more13Codeready Linux Builder Enterprise LinuxEnterprise Linux Eus+10 moreNov 21, 2024 Mar 27, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Escalation to the root...Show more |
1Redhat 2Keycloak Node.js Adapter Single Sign OnFeb 24, 2025 Mar 27, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 A flaw was found in the Keycloak Node.js Adapter. This flaw allows an attacker to benefit from an Open Redirect vulnerability in the checkSso function. |
5Canonical DebianLinux+2 more9Debian Linux Enterprise LinuxH300s Firmware+6 moreNov 21, 2024 Mar 27, 2023 N/A· v4 7.1 HIGH· v3 N/A· v2 A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. This issue could occur when assoc_info->req_len data is bigger than th...Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelApr 23, 2025 Mar 27, 2023 N/A· v4 6.6 MEDIUM· v3 N/A· v2 A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device. This flaw allows a local user to crash or potentially escalate their privilege...Show more |
2Podman Project Redhat2Enterprise Linux PodmanFeb 24, 2025 Mar 27, 2023 N/A· v4 6.8 MEDIUM· v3 N/A· v2 A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal file in a volume with a symlink while exporting the volume, allowing for access to arbitrary files...Show more |
3Fedoraproject RedhatX.org18Enterprise Linux Enterprise Linux AusEnterprise Linux Desktop+15 moreFeb 24, 2025 Mar 27, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. Th...Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelFeb 24, 2025 Mar 27, 2023 N/A· v4 2.3 LOW· v3 N/A· v2 A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local account can leak kernel stack information when issuing commands to the /dev/infiniband/rdma_cm device nod...Show more |
1Redhat 2Openshift Assisted Installer Openshift Container PlatformNov 21, 2024 Mar 24, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A vulnerability was found in OpenShift Assisted Installer. During generation of the Discovery ISO, image pull secrets were leaked as plaintext in the installation logs. An authenticated user could exploit this by re-usin...Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelFeb 25, 2025 Mar 23, 2023 N/A· v4 3.3 LOW· v3 N/A· v2 A flaw was found in KVM. When calling the KVM_GET_DEBUGREGS ioctl, on 32-bit systems, there might be some uninitialized portions of the kvm_debugregs structure that could be copied to userspace, causing an information le...Show more |