Redhat
redhat
5,899 CVEs • 544 products
Products (544)
Click to collapseToggle
Products (544)
Click to collapse
CVEs (5,899)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Redhat Squid Cache2Enterprise Linux SquidJun 17, 2026 Nov 3, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall...Show more |
3Fedoraproject RedhatSamba5Enterprise Linux Enterprise Linux EusFedora+2 moreJun 17, 2026 Nov 3, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability was discovered in Samba, where the flaw allows SMB clients to truncate files, even with read-only permissions when the Samba VFS module "acl_xattr" is configured with "acl_xattr:ignore system acls = yes"....Show more |
2Redhat Squid Cache5Enterprise Linux Enterprise Linux EusEnterprise Linux Server Aus+2 moreJun 17, 2026 Nov 3, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Squid is vulnerable to Denial of Service, where a remote attacker can perform DoS by sending ftp:// URLs in HTTP Request messages or constructing ftp:// URLs from FTP Native input. |
2Redhat Squid Cache10Enterprise Linux Enterprise Linux EusEnterprise Linux For Arm 64+7 moreAug 7, 2026 Nov 3, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication...Show more |
2Redhat Squid Cache8Enterprise Linux Enterprise Linux EusEnterprise Linux For Arm 64+5 moreJun 17, 2026 Nov 3, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 SQUID is vulnerable to HTTP request smuggling, caused by chunked decoder lenience, allows a remote attacker to perform Request/Response smuggling past firewall and frontend security systems. |
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_alternative_host_name() function. |
2Php Redhat3Enterprise Linux PhpSoftware CollectionsJun 17, 2026 Nov 2, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A vulnerability was found in PHP where setting the environment variable PHP_CLI_SERVER_WORKERS to a large value leads to a heap buffer overflow. |
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_rdata_parse() function. |
A vulnerability was found in Avahi. A reachable assertion exists in the dbus_set_host_name function. |
A vulnerability was found in Avahi. A reachable assertion exists in the avahi_escape_label() function. |
A vulnerability was found in Avahi, where a reachable assertion exists in avahi_dns_packet_append_record. |
2Libtiff Redhat2Enterprise Linux LibtiffJun 17, 2026 Nov 2, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file. |
A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes api server of OpenShift. A remote attacker who modifies the node role label could steer workloads from the control plane an...Show more |
2Linux Redhat2Enterprise Linux Linux KernelJun 17, 2026 Nov 1, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the syst...Show more |
3Linux NetappRedhat5Active Iq Unified Manager Enterprise LinuxLinux Kernel+2 moreJun 17, 2026 Nov 1, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 A use-after-free vulnerability was found in drivers/nvme/target/tcp.c` in `nvmet_tcp_free_crypto` due to a logical bug in the NVMe/TCP subsystem in the Linux kernel. This issue may allow a malicious user to cause a use-a...Show more |
1Redhat 19Enterprise Linux Enterprise Linux AusEnterprise Linux Desktop+16 moreJun 17, 2026 Nov 1, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A vulnerability was found in insights-client. This security issue occurs because of insecure file operations or unsafe handling of temporary files and directories that lead to local privilege escalation. Before the insig...Show more |
1Redhat 5Openshift Container Platform For Arm64 Openshift Container Platform For LinuxoneOpenshift Container Platform For Power+2 moreJun 17, 2026 Nov 1, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2021-21419 not being applied for all builds of all products. |
2Redhat X.org2Enterprise Linux X ServerJun 23, 2026 Oct 25, 2023 N/A· v4 7.0 HIGH· v3 N/A· v2 A use-after-free flaw was found in xorg-x11-server-Xvfb. This issue occurs in Xvfb with a very specific and legacy configuration (a multi-screen setup with multiple protocol screens, also known as Zaphod mode). If the po...Show more |
4Debian FedoraprojectRedhat+1 more5Debian Linux Enterprise LinuxFedora+2 moreJun 23, 2026 Oct 25, 2023 N/A· v4 4.7 MEDIUM· v3 N/A· v2 A use-after-free flaw was found in the xorg-x11-server. An X server crash may occur in a very specific and legacy configuration (a multi-screen setup with multiple protocol screens, also known as Zaphod mode) if the poin...Show more |
4Debian FedoraprojectRedhat+1 more12Debian Linux Enterprise LinuxEnterprise Linux Desktop+9 moreJun 23, 2026 Oct 25, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A out-of-bounds write flaw was found in the xorg-x11-server. This issue occurs due to an incorrect calculation of a buffer offset when copying data stored in the heap in the XIChangeDeviceProperty function in Xi/xiproper...Show more |