VendorsRed Hatenterprise_linux8.0
Vulnerabilities

Red Hat Enterprise Linux 8.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1167CVEs
CVE-2026-11789
389-ds-base: 389-ds-base: smd5 password storage plugin salt length integer underflow crash
Published 2026-06-09 · Modified
6.5EPSS 0.003
CVE-2026-11611
389-ds-base: 389-ds-base: content sync plugin unbounded queue growth and race conditions
Published 2026-06-08 · Modified
6.5EPSS 0.002
CVE-2026-11786
389-ds-base: 389-ds-base: heap out-of-bounds read in ldif parser str2entry_state_information_from_type()
Published 2026-06-09 · Modified
6.5EPSS 0.002
CVE-2019-10214
The containers/image library used by the container tools Podman, Buildah, and Skopeo in Red Hat Enterprise Linux version 8 and CRI-O in OpenShift Container Platform, does not enforce TLS connections to the container registry authorization service. An attacker could use this vulnerability to launch a MiTM attack and steal login credentials or bearer tokens.
Published 2019-11-25 · Modified
6.4EPSS 0.016
CVE-2020-15707
GRUB2 contained integer overflows when handling the initrd command, leading to a heap-based buffer overflow.
Published 2020-07-29 · Modified
6.4EPSS 0.016
CVE-2020-15705
GRUB2: avoid loading unsigned kernels when GRUB is booted directly under secureboot without shim
Published 2020-07-29 · Modified
6.4EPSS 0.014
CVE-2023-40661
Opensc: multiple memory issues with pkcs15-init (enrollment tool)
Published 2023-11-06 · Modified
6.4EPSS 0.012
CVE-2020-15706
GRUB2 contains a race condition leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing.
Published 2020-07-29 · Modified
6.4EPSS 0.010
CVE-2023-33203
The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/net/ethernet/qualcomm/emac/emac.c if a physically proximate attacker unplugs an emac based device.
Published 2023-05-18 · Modified
6.4EPSS 0.003
CVE-2021-35937
A race condition vulnerability was found in rpm. A local unprivileged user could use this flaw to bypass the checks that were introduced in response to CVE-2017-7500 and CVE-2017-7501, potentially gaining root privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Published 2022-08-25 · Modified
6.4EPSS 0.003
CVE-2021-3700
A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.
Published 2022-02-24 · Modified
6.4EPSS 0.003
CVE-2026-12610
Sssd: use-after-free crash in sssd' 'sssd_pam' process
Published 2026-06-30 · Undergoing Analysis
6.4EPSS 0.001
CVE-2023-5115
Ansible: malicious role archive can cause ansible-galaxy to overwrite arbitrary files
Published 2023-12-18 · Modified
6.3EPSS 0.010
CVE-2021-3802
A vulnerability found in udisks2. This flaw allows an attacker to input a specially crafted image file/USB leading to kernel panic. The highest threat from this vulnerability is to system availability.
Published 2021-11-29 · Modified
6.3EPSS 0.008
CVE-2023-4380
Platform: token exposed at importing project
Published 2023-10-04 · Modified
6.3EPSS 0.006
CVE-2021-3631
A flaw was found in libvirt while it generates SELinux MCS category pairs for VMs' dynamic labels. This flaw allows one exploited guest to access files labeled for another guest, resulting in the breaking out of sVirt confinement. The highest threat from this vulnerability is to confidentiality and integrity.
Published 2022-03-02 · Modified
6.3EPSS 0.005
CVE-2026-0964
Libssh: improper sanitation of paths received from scp servers
Published 2026-03-26 · Modified
6.3EPSS 0.004
CVE-2022-1462
An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memory in the flush_to_ldisc function. This flaw allows a local user to crash the system or read unauthorized random data from memory.
Published 2022-05-31 · Modified
6.3EPSS 0.003
CVE-2021-20197
There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar, objcopy, strip, ranlib. When these utilities are run as a privileged user (presumably as part of a script updating binaries across different users), an unprivileged user can trick these utilities into getting ownership of arbitrary files through a symlink.
Published 2021-03-26 · Modified
6.3EPSS 0.003
CVE-2022-1280
A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a race problem. This flaw allows a local user privilege attacker to cause a denial of service (DoS) or a kernel information leak.
Published 2022-04-13 · Modified
6.3EPSS 0.003
CVE-2026-11787
389-ds-base: 389-ds-base: heap buffer over-read in ldap_utf8prev() via str2simple filter parsing
Published 2026-06-09 · Modified
6.3EPSS 0.002
CVE-2026-73585
Sblim-cmpi-base: insecure temporary file creation in sblim-cmpi-base provider registration scripts allows local symlink attack
Published 2026-08-13 · Analyzed
6.3EPSS 0.001
CVE-2026-71222
Gfs2-utils: gfs2-utils: heap out-of-bounds read via unchecked ea_num_ptrs in extended attribute processing
Published 2026-09-03 · Analyzed
6.3EPSS 0.001
CVE-2026-73584
Sblim-sfcb: sblim-sfcb: privileged file corruption and denial of service via insecure temporary file handling
Published 2026-08-13 · Analyzed
6.3EPSS 0.001
CVE-2018-16878
A flaw was found in pacemaker up to and including version 2.0.1. An insufficient verification inflicted preference of uncontrolled processes can lead to DoS
Published 2019-04-18 · Modified
6.2EPSS 0.004
CVE-2023-40546
Shim: out-of-bounds read printing error messages
Published 2024-01-29 · Modified
6.2EPSS 0.004
CVE-2023-40549
Shim: out-of-bounds read in verify_buffer_authenticode() malformed pe file
Published 2024-01-29 · Modified
6.2EPSS 0.004
CVE-2022-23645
Out-of-bounds read in swtpm
Published 2022-02-18 · Modified
6.2EPSS 0.004
CVE-2022-4900
Potential buffer overflow in php_cli_server_startup_workers
Published 2023-11-02 · Modified
6.2EPSS 0.004
CVE-2023-38471
Reachable assertion in dbus_set_host_name
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-38472
Reachable assertion in avahi_rdata_parse
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-38469
Reachable assertion in avahi_dns_packet_append_record
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-38473
Reachable assertion in avahi_alternative_host_name
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-38470
Reachable assertion in avahi_escape_label
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-6915
Kernel: null pointer dereference vulnerability in ida_free in lib/idr.c
Published 2024-01-15 · Modified
6.2EPSS 0.003
CVE-2025-31178
Gnuplot: gnuplot segmentation fault on getannotatestring
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2026-13757
P11-kit: stack exhaustion via unbounded recursion in rpc attribute parsing
Published 2026-06-29 · Modified
6.2EPSS 0.002
CVE-2025-31180
Gnuplot: gnuplot segmentation fault on canvas_text
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31179
Gnuplot: gnuplot segmentation fault on xstrftime
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31181
Gnuplot: gnuplot segmentation fault on x11_graphics
Published 2025-03-27 · Modified
6.2EPSS 0.002
← Prev18 / 30Next →