VendorsRed Hatenterprise_linux7.0
Vulnerabilities

Red Hat Enterprise Linux 7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1016CVEs
CVE-2026-1801
Libsoup: libsoup: http request smuggling via malformed chunk headers
Published 2026-02-03 · Analyzed
6.5EPSS 0.004
CVE-2026-66339
Libsoup: libsoup: proxy credentials leak to destination server via proxy-authorization header in connect tunnels
Published 2026-07-24 · Analyzed
6.5EPSS 0.004
CVE-2026-66337
Libsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_input_stream_read_until()
Published 2026-07-24 · Analyzed
6.5EPSS 0.004
CVE-2016-9911
Quick Emulator (Qemu) built with the USB EHCI Emulation support is vulnerable to a memory leakage issue. It could occur while processing packet data in 'ehci_init_transfer'. A guest user/process could use this issue to leak host memory, resulting in DoS for a host.
Published 2016-12-23 · Modified
6.5EPSS 0.004
CVE-2016-4020
The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).
Published 2016-05-25 · Modified
6.5EPSS 0.004
CVE-2026-3633
Libsoup: libsoup: header and http request injection via crlf injection
Published 2026-03-17 · Analyzed
6.5EPSS 0.004
CVE-2020-10690
There is a use-after-free in kernel versions before 5.5 due to a race condition between the release of ptp_clock and cdev while resource deallocation. When a (high privileged) process allocates a ptp device file (like /dev/ptpX) and voluntarily goes to sleep. During this time if the underlying device is removed, it can cause an exploitable condition as the process wakes up to terminate and clean all attached files. The system crashes due to the cdev structure being invalid (as already freed) which is pointed to by the inode.
Published 2020-05-08 · Modified
6.5EPSS 0.004
CVE-2026-58224
Samba: ctdb fails to do integrity checking of received packets
Published 2026-08-14 · Analyzed
6.5EPSS 0.003
CVE-2026-3634
Libsoup: libsoup: http header injection and response splitting via crlf injection in content-type header
Published 2026-03-17 · Analyzed
6.5EPSS 0.003
CVE-2021-3941
In ImfChromaticities.cpp routine RGBtoXYZ(), there are some division operations such as `float Z = (1 - chroma.white.x - chroma.white.y) * Y / chroma.white.y;` and `chroma.green.y * (X + Z))) / d;` but the divisor is not checked for a 0 value. A specially crafted file could trigger a divide-by-zero condition which could affect the availability of programs linked with OpenEXR.
Published 2022-03-25 · Modified
6.5EPSS 0.003
CVE-2026-11789
389-ds-base: 389-ds-base: smd5 password storage plugin salt length integer underflow crash
Published 2026-06-09 · Modified
6.5EPSS 0.003
CVE-2026-11611
389-ds-base: 389-ds-base: content sync plugin unbounded queue growth and race conditions
Published 2026-06-08 · Modified
6.5EPSS 0.002
CVE-2026-11786
389-ds-base: 389-ds-base: heap out-of-bounds read in ldif parser str2entry_state_information_from_type()
Published 2026-06-09 · Modified
6.5EPSS 0.002
CVE-2020-15707
GRUB2 contained integer overflows when handling the initrd command, leading to a heap-based buffer overflow.
Published 2020-07-29 · Modified
6.4EPSS 0.016
CVE-2020-15705
GRUB2: avoid loading unsigned kernels when GRUB is booted directly under secureboot without shim
Published 2020-07-29 · Modified
6.4EPSS 0.014
CVE-2020-15706
GRUB2 contains a race condition leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing.
Published 2020-07-29 · Modified
6.4EPSS 0.010
CVE-2021-35937
A race condition vulnerability was found in rpm. A local unprivileged user could use this flaw to bypass the checks that were introduced in response to CVE-2017-7500 and CVE-2017-7501, potentially gaining root privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Published 2022-08-25 · Modified
6.4EPSS 0.003
CVE-2021-3700
A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.
Published 2022-02-24 · Modified
6.4EPSS 0.003
CVE-2021-20261
A race condition was found in the Linux kernels implementation of the floppy disk drive controller driver software. The impact of this issue is lessened by the fact that the default permissions on the floppy device (/dev/fd0) are restricted to root. If the permissions on the device have changed the impact changes greatly. In the default configuration root (or equivalent) permissions are required to attack this flaw.
Published 2021-03-11 · Modified
6.4EPSS 0.002
CVE-2018-10892
The default OCI linux spec in oci/defaults{_linux}.go in Docker/Moby from 1.11 to current does not block /proc/acpi pathnames. The flaw allows an attacker to modify host's hardware like enabling/disabling bluetooth or turning up/down keyboard brightness.
Published 2018-07-06 · Modified
6.3EPSS 0.011
CVE-2026-11787
389-ds-base: 389-ds-base: heap buffer over-read in ldap_utf8prev() via str2simple filter parsing
Published 2026-06-09 · Modified
6.3EPSS 0.002
CVE-2026-73585
Sblim-cmpi-base: insecure temporary file creation in sblim-cmpi-base provider registration scripts allows local symlink attack
Published 2026-08-13 · Analyzed
6.3EPSS 0.001
CVE-2026-71222
Gfs2-utils: gfs2-utils: heap out-of-bounds read via unchecked ea_num_ptrs in extended attribute processing
Published 2026-09-03 · Analyzed
6.3EPSS 0.001
CVE-2026-73584
Sblim-sfcb: sblim-sfcb: privileged file corruption and denial of service via insecure temporary file handling
Published 2026-08-13 · Analyzed
6.3EPSS 0.001
CVE-2023-5341
Imagemagick: heap use-after-free in coders/bmp.c
Published 2023-11-19 · Modified
6.2EPSS 0.004
CVE-2022-4900
Potential buffer overflow in php_cli_server_startup_workers
Published 2023-11-02 · Modified
6.2EPSS 0.004
CVE-2023-32627
Floating point exception in src/voc.c
Published 2023-07-10 · Modified
6.2EPSS 0.003
CVE-2023-26590
Floating point exception in src/aiff.c
Published 2023-07-10 · Modified
6.2EPSS 0.002
CVE-2025-31179
Gnuplot: gnuplot segmentation fault on xstrftime
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31180
Gnuplot: gnuplot segmentation fault on canvas_text
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31181
Gnuplot: gnuplot segmentation fault on x11_graphics
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2026-13757
P11-kit: stack exhaustion via unbounded recursion in rpc attribute parsing
Published 2026-06-29 · Modified
6.2EPSS 0.002
CVE-2025-31176
Gnuplot: gnuplot segmentation fault on plot3d_points
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31178
Gnuplot: gnuplot segmentation fault on getannotatestring
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2016-4993
CRLF injection vulnerability in the Undertow web server in WildFly 10.0.0, as used in Red Hat JBoss Enterprise Application Platform (EAP) 7.x before 7.0.2, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
Published 2016-09-26 · Modified
6.1EPSS 0.026
CVE-2019-3877
A vulnerability was found in mod_auth_mellon before v0.14.2. An open redirect in the logout URL allows requests with backslashes to pass through by assuming that it is a relative URL, while the browsers silently convert backslash characters into forward slashes treating them as an absolute URL. This mismatch allows an attacker to bypass the redirect URL validation logic in apr_uri_parse function.
Published 2019-03-27 · Modified
6.1EPSS 0.021
CVE-2016-9895
Event handlers on "marquee" elements were executed despite a strict Content Security Policy (CSP) that disallowed inline JavaScript. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.
Published 2018-06-11 · Modified
6.1EPSS 0.018
CVE-2018-1067
In Undertow before versions 7.1.2.CR1, 7.1.2.GA it was found that the fix for CVE-2016-4993 was incomplete and Undertow web server is vulnerable to the injection of arbitrary HTTP headers, and also response splitting, due to insufficient sanitization and validation of user input before the input is used as part of an HTTP header value.
Published 2018-05-21 · Modified
6.1EPSS 0.018
CVE-2017-5466
If a page is loaded from an original site through a hyperlink and contains a redirect to a "data:text/html" URL, triggering a reload will run the reloaded "data:text/html" page with its origin set incorrectly. This allows for a cross-site scripting (XSS) attack. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 52.1, and Firefox < 53.
Published 2018-06-11 · Modified
6.1EPSS 0.015
CVE-2016-0640
Unspecified vulnerability in Oracle MySQL 5.5.47 and earlier, 5.6.28 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.48, 10.0.x before 10.0.24, and 10.1.x before 10.1.12 allows local users to affect integrity and availability via vectors related to DML.
Published 2016-04-21 · Modified
6.1EPSS 0.014
← Prev17 / 26Next →