VendorsRed Hatenterprise_linux9.0
Vulnerabilities

Red Hat Enterprise Linux 9.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

601CVEs
CVE-2023-3153
Service monitor mac flow is not rate limited
Published 2023-10-04 · Modified
5.3EPSS 0.010
CVE-2023-7250
Iperf3: possible denial of service
Published 2024-03-18 · Modified
5.3EPSS 0.009
CVE-2023-5871
Libnbd: malicious nbd server may crash libnbd
Published 2023-11-27 · Modified
5.3EPSS 0.009
CVE-2023-7216
Cpio: extraction allows symlinks which enables remote command execution
Published 2024-02-05 · Modified
5.3EPSS 0.009
CVE-2023-6681
Jwcrypto: denail of service via specifically crafted jwe
Published 2024-02-12 · Modified
5.3EPSS 0.009
CVE-2026-59848
Libssh: libssh: denial of service via sftp responses with unknown request ids
Published 2026-07-21 · Modified
5.3EPSS 0.006
CVE-2023-1672
Race condition exists in the key generation and rotation functionality
Published 2023-07-11 · Modified
5.3EPSS 0.006
CVE-2023-4693
Grub2: out-of-bounds read at fs/ntfs.c
Published 2023-10-25 · Modified
5.3EPSS 0.005
CVE-2026-14940
389-ds-base: 389-ds-base: heap-buffer-overflow in dn normalization via quoted multivalued rdn
Published 2026-07-07 · Analyzed
5.3EPSS 0.005
CVE-2026-2443
Libsoup: out-of-bounds read in libsoup handle_partial_get() leading to heap information disclosure
Published 2026-02-13 · Modified
5.3EPSS 0.004
CVE-2026-2708
Libsoup: libsoup: http request smuggling via duplicate content-length headers
Published 2026-04-23 · Analyzed
5.3EPSS 0.004
CVE-2023-6693
Qemu: virtio-net: stack buffer overflow in virtio_net_flush_tx()
Published 2024-01-02 · Modified
5.3EPSS 0.003
CVE-2024-49394
Mutt: neomutt: in-reply-to email header field it not protected by cryptograpic signing
Published 2024-11-12 · Modified
5.3EPSS 0.003
CVE-2024-49395
Mutt: neomutt: bcc email header field is indirectly leaked by cryptographic info block
Published 2024-11-12 · Modified
5.3EPSS 0.003
CVE-2023-40551
Shim: out of bounds read when parsing mz binaries
Published 2024-01-29 · Modified
5.1EPSS 0.004
CVE-2022-3500
A vulnerability was found in keylime. This security issue happens in some circumstances, due to some improperly handled exceptions, there exists the possibility that a rogue agent could create errors on the verifier that stopped attestation attempts for that host leaving it in an attested state but not verifying that anymore.
Published 2022-11-22 · Modified
5.1EPSS 0.003
CVE-2026-71227
Libkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return
Published 2026-08-05 · Modified
5.1EPSS 0.002
CVE-2026-57965
Spice-vdagent: integer overflow in udscs_write() leading to heap buffer overflow
Published 2026-06-29 · Analyzed
5.1EPSS 0.002
CVE-2023-0264
A flaw was found in Keycloaks OpenID Connect user authentication, which may incorrectly authenticate requests. An authenticated attacker who could obtain information from a user request within the same realm could use that data to impersonate the victim and generate new session tokens. This issue could impact confidentiality, integrity, and availability.
Published 2023-08-04 · Modified
5.0EPSS 0.013
CVE-2026-11791
389-ds-base: 389-ds-base: use-after-free in schema reload via attr_syntax_swap_ht()
Published 2026-06-18 · Modified
5.0EPSS 0.004
CVE-2025-5917
Libarchive: off by one error in build_ustar_entry_name() at archive_write_set_format_pax.c
Published 2025-06-09 · Modified
5.0EPSS 0.002
CVE-2026-6845
Binutils: binutils: denial of service via crafted elf file
Published 2026-04-22 · Modified
5.0EPSS 0.001
CVE-2026-11790
389-ds-base: 389-ds-base: pbkdf2 password storage plugin unbounded iteration count denial of service
Published 2026-06-09 · Modified
4.9EPSS 0.003
CVE-2023-6004
Libssh: proxycommand/proxyjump features allow injection of malicious code through hostname
Published 2024-01-03 · Modified
4.8EPSS 0.004
CVE-2026-12549
Libsoup: incomplete fix for cve-2026-2443: range suffix overflow in libsoup soupserver
Published 2026-06-22 · Analyzed
4.8EPSS 0.004
CVE-2025-4598
Systemd-coredump: race condition that allows a local attacker to crash a suid program and gain read access to the resulting core dump
Published 2025-05-30 · Modified
4.7EPSS 0.012
CVE-2023-5380
Xorg-x11-server: use-after-free bug in destroywindow
Published 2023-10-25 · Modified
4.7EPSS 0.007
CVE-2023-42756
Kernel: netfilter: race condition between ipset_cmd_add and ipset_cmd_swap
Published 2023-09-28 · Modified
4.7EPSS 0.003
CVE-2024-10041
Pam: libpam: libpam vulnerable to read hashed password
Published 2024-10-23 · Modified
4.7EPSS 0.003
CVE-2023-6176
Kernel: local dos vulnerability in scatterwalk_copychunks
Published 2023-11-16 · Modified
4.7EPSS 0.003
CVE-2026-71224
Gfs2-utils: gfs2-utils: stack overflow via alloca(i_height) in metadata walk
Published 2026-09-03 · Analyzed
4.7EPSS 0.001
CVE-2026-71219
Gfs2-utils: gfs2-utils: stack overflow via alloca(1<<di_depth) in hash table traversal
Published 2026-09-03 · Analyzed
4.7EPSS 0.001
CVE-2023-4535
Opensc: out-of-bounds read in myeid driver handling encryption using symmetric keys
Published 2023-11-06 · Modified
4.5EPSS 0.005
CVE-2021-3695
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12.
Published 2022-07-06 · Modified
4.5EPSS 0.005
CVE-2023-5870
Postgresql: role pg_signal_backend can signal certain superuser processes.
Published 2023-12-10 · Modified
4.4EPSS 0.026
CVE-2023-39194
Kernel: xfrm: out-of-bounds read in __xfrm_state_filter_match()
Published 2023-10-09 · Modified
4.4EPSS 0.004
CVE-2023-2019
A flaw was found in the Linux kernel's netdevsim device driver, within the scheduling of events. This issue results from the improper management of a reference count. This may allow an attacker to create a denial of service condition on the system.
Published 2023-04-24 · Modified
4.4EPSS 0.003
CVE-2022-0168
A denial of service (DOS) issue was found in the Linux kernel’s smb2_ioctl_query_info function in the fs/cifs/smb2ops.c Common Internet File System (CIFS) due to an incorrect return from the memdup_user function. This flaw allows a local, privileged (CAP_SYS_ADMIN) attacker to crash the system.
Published 2022-08-26 · Modified
4.4EPSS 0.003
CVE-2023-3212
A NULL pointer dereference issue was found in the gfs2 file system in the Linux kernel. It occurs on corrupt gfs2 file systems when the evict code tries to reference the journal descriptor structure after it has been freed and set to NULL. A privileged local user could use this flaw to cause a kernel panic.
Published 2023-06-23 · Modified
4.4EPSS 0.003
CVE-2026-80101
Gimp: multiple heap out-of-bounds reads in xwd loader from unrelated width and bytes-per-line validation
Published 2026-08-25 · Modified
4.4EPSS 0.002
← Prev14 / 16Next →