Redhat
redhat
5,674 CVEs • 537 products
Products (537)
Click to collapseToggle
Products (537)
Click to collapse
CVEs (5,674)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Debian FedoraprojectNetapp+2 more13Active Iq Unified Manager Debian LinuxEnterprise Linux+10 moreMar 25, 2025 May 16, 2022 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled regul...Show more |
2Qemu Redhat2Enterprise Linux QemuNov 21, 2024 May 11, 2022 N/A· v4 6.5 MEDIUM· v3 2.1 LOW· v2 A stack overflow vulnerability was found in the Intel HD Audio device (intel-hda) of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition. The high...Show more |
1Redhat 3Jboss Enterprise Application Platform Openstack PlatformWildflyNov 6, 2025 May 10, 2022 N/A· v4 5.3 MEDIUM· v3 4.3 MEDIUM· v2 This is a concurrency issue that can result in the wrong caller principal being returned from the session context of an EJB that is configured with a RunAs principal. In particular, the org.jboss.as.ejb3.component.EJBCom...Show more |
2Qemu Redhat2Enterprise Linux QemuNov 21, 2024 May 2, 2022 N/A· v4 8.2 HIGH· v3 4.6 MEDIUM· v2 A DMA reentrancy issue was found in the USB EHCI controller emulation of QEMU. EHCI does not verify if the Buffer Pointer overlaps with its MMIO region when it transfers the USB packets. Crafted content may be written to...Show more |
3Fedoraproject MoodleRedhat3Enterprise Linux FedoraMoodleNov 21, 2024 Apr 29, 2022 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 Users with the capability to configure badge criteria (teachers and managers by default) were able to configure course badges with profile field criteria, which should only be available for site badges. |
3Debian QemuRedhat3Debian Linux Enterprise LinuxQemuMar 21, 2025 Apr 29, 2022 N/A· v4 8.2 HIGH· v3 4.6 MEDIUM· v2 A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a...Show more |
3Debian QemuRedhat3Debian Linux Enterprise LinuxQemuMar 21, 2025 Apr 29, 2022 N/A· v4 8.2 HIGH· v3 4.6 MEDIUM· v2 A flaw was found in the QXL display device emulation in QEMU. An integer overflow in the cursor_alloc() function can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. Th...Show more |
4Debian LinuxNetapp+1 more11Debian Linux Enterprise LinuxH300e Firmware+8 moreNov 21, 2024 Apr 29, 2022 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 A vulnerability was found in the pfkey_register function in net/key/af_key.c in the Linux kernel. This flaw allows a local, unprivileged user to gain access to kernel memory, leading to a system crash or a leak of intern...Show more |
4Fedoraproject Podman ProjectPsgo Project+1 more16Developer Tools Enterprise LinuxEnterprise Linux Eus+13 moreNov 21, 2024 Apr 29, 2022 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A privilege escalation flaw was found in Podman. This flaw allows an attacker to publish a malicious image to a public registry. Once this image is downloaded by a potential victim, the vulnerability is triggered after a...Show more |
4Debian LinuxNetapp+1 more11Debian Linux Enterprise LinuxH300e Firmware+8 moreNov 21, 2024 Apr 29, 2022 N/A· v4 7.0 HIGH· v3 6.9 MEDIUM· v2 A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PCM hw_params. The hw_free ioctls or similar race condition happens inside ALSA PCM for other ioctls. T...Show more |
A flaw was found in 3Scale APICast in versions prior to 2.11.0, where it incorrectly identified connections for reuse. This flaw allows an attacker to bypass security restrictions for an API request when hosting multiple...Show more |
1Redhat 2Keycloak Single Sign OnNov 21, 2024 Apr 26, 2022 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 Due to improper authorization, Red Hat Single Sign-On is vulnerable to users performing actions that they should not be allowed to perform. It was possible to add users to the master realm even though no respective permi...Show more |
4Fedoraproject KubernetesMobyproject+1 more4Cri O FedoraMoby+1 moreNov 21, 2024 Apr 18, 2022 N/A· v4 5.3 MEDIUM· v3 4.6 MEDIUM· v2 A flaw was found in cri-o, where containers were incorrectly started with non-empty default permissions. A vulnerability was found in Moby (Docker Engine) where containers started incorrectly with non-empty inheritable L...Show more |
3Fedoraproject Opensc ProjectRedhat3Enterprise Linux FedoraOpenscNov 3, 2025 Apr 18, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Heap buffer overflow issues were found in Opensc before version 0.22.0 in pkcs15-oberthur.c that could potentially crash programs using the library. |
3Fedoraproject Opensc ProjectRedhat3Enterprise Linux FedoraOpenscNov 3, 2025 Apr 18, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A use after return issue was found in Opensc before version 0.22.0 in insert_pin function that could potentially crash programs using the library. |
3Fedoraproject Opensc ProjectRedhat3Enterprise Linux FedoraOpenscNov 3, 2025 Apr 18, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid. |
3Fedoraproject Opensc ProjectRedhat3Enterprise Linux FedoraOpenscNov 3, 2025 Apr 18, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A heap double free issue was found in Opensc before version 0.22.0 in sc_pkcs15_free_tokeninfo. |
1Redhat 2Ansible Automation Platform Ansible GalaxyNov 21, 2024 Apr 18, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 A flaw was found in Ansible Galaxy Collections. When collections are built manually, any files in the repository directory that are not explicitly excluded via the ``build_ignore`` list in "galaxy.yml" include files in t...Show more |
A flaw was found in Wildfly where insufficient RBAC restrictions may lead to expose metrics data. The highest threat from this vulnerability is to the confidentiality. |
3E2fsprogs Project FedoraprojectRedhat3E2fsprogs Enterprise LinuxFedoraApr 23, 2025 Apr 14, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem. |