VendorsRed Hatenterprise_linuxall versions
Vulnerabilities

Red Hat Enterprise Linux

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2269CVEs
CVE-2023-1192
Use-after-free in smb2_is_status_io_timeout()
Published 2023-11-01 · Modified
6.5EPSS 0.011
CVE-2023-2283
A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pki_verify_data_signature` function in memory allocation problems. This issue may happen if there is insufficient memory or the memory usage is limited. The problem is caused by the return value `rc,` which is initialized to SSH_ERROR and later rewritten to save the return value of the function call `pki_key_check_hash_compatible.` The value of the variable is not changed between this point and the cryptographic verification. Therefore any error between them calls `goto error` returning SSH_OK.
Published 2023-05-26 · Modified
6.5EPSS 0.011
CVE-2021-4024
A flaw was found in podman. The `podman machine` function (used to create and manage Podman virtual machine containing a Podman process) spawns a `gvproxy` process on the host system. The `gvproxy` API is accessible on port 7777 on all IP addresses on the host. If that port is open on the host's firewall, an attacker can potentially use the `gvproxy` API to forward ports on the host to ports in the VM, making private services on the VM accessible to the network. This issue could be also used to interrupt the host's services by forwarding all ports to the VM.
Published 2021-12-23 · Modified
6.5EPSS 0.011
CVE-2022-24806
net-snmp vulnerable to Improper Input Validation when SETing malformed OIDs in master agent and subagent simultaneously
Published 2024-04-16 · Analyzed
6.5EPSS 0.011
CVE-2022-24807
net-snmp: A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access
Published 2024-04-16 · Analyzed
6.5EPSS 0.010
CVE-2019-10213
OpenShift Container Platform, versions 4.1 and 4.2, does not sanitize secret data written to pod logs when the log level in a given operator is set to Debug or higher. A low privileged user could read pod logs to discover secret material if the log level has already been modified in an operator by a privileged user.
Published 2019-11-25 · Modified
6.5EPSS 0.010
CVE-2020-10719
A flaw was found in Undertow in versions before 2.1.1.Final, regarding the processing of invalid HTTP requests with large chunk sizes. This flaw allows an attacker to take advantage of HTTP request smuggling.
Published 2020-05-26 · Modified
6.5EPSS 0.010
CVE-2022-2211
A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching keys in the get_keys() function. This flaw leads to a denial of service, either by mistake or malicious actor.
Published 2022-07-12 · Modified
6.5EPSS 0.010
CVE-2023-6240
Kernel: marvin vulnerability side-channel leakage in the rsa decryption operation
Published 2024-02-04 · Modified
6.5EPSS 0.010
CVE-2026-2340
Samba: vfs_worm does not block directory modification
Published 2026-05-27 · Modified
6.5EPSS 0.009
CVE-2024-6237
389-ds-base: unauthenticated user can trigger a dos by sending a specific extended search request
Published 2024-07-09 · Modified
6.5EPSS 0.009
CVE-2023-32573
In Qt before 5.15.14, 6.0.x through 6.2.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1, QtSvg QSvgFont m_unitsPerEm initialization is mishandled.
Published 2023-05-10 · Modified
6.5EPSS 0.009
CVE-2022-2568
A privilege escalation flaw was found in the Ansible Automation Platform. This flaw allows a remote authenticated user with 'change user' permissions to modify the account settings of the superuser account and also remove the superuser privileges.
Published 2022-08-18 · Modified
6.5EPSS 0.009
CVE-2021-20486
IBM Cloud Pak for Data 3.0 could allow an authenticated user to obtain sensitive information when installed with additional plugins. IBM X-Force ID: 197668.
Published 2021-05-26 · Modified
6.5EPSS 0.009
CVE-2026-2272
Gimp: gimp: memory corruption due to integer overflow in ico file handling
Published 2026-03-26 · Analyzed
6.5EPSS 0.008
CVE-2023-4061
Wildfly-core: management user rbac permission allows unexpected reading of system-properties to an unauthorized actor
Published 2023-11-08 · Modified
6.5EPSS 0.008
CVE-2011-3363
The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) by placing a referral at the root of a share.
Published 2012-05-24 · Modified
6.5EPSS 0.008
CVE-2024-4629
Keycloak: potential bypass of brute force protection
Published 2024-09-03 · Modified
6.5EPSS 0.008
CVE-2023-3750
Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service
Published 2023-07-24 · Modified
6.5EPSS 0.008
CVE-2023-5215
Libnbd: crash or misbehaviour when nbd server returns an unexpected block size
Published 2023-09-28 · Modified
6.5EPSS 0.007
CVE-2026-59843
Libssh: libssh: denial of service via zero advertised channel packet size
Published 2026-07-21 · Modified
6.5EPSS 0.007
CVE-2026-59844
Libssh: libssh: denial of service via oversized sftp read length
Published 2026-07-21 · Modified
6.5EPSS 0.007
CVE-2019-19319
In the Linux kernel before 5.2, a setxattr operation, after a mount of a crafted ext4 image, can cause a slab-out-of-bounds write access because of an ext4_xattr_set_entry use-after-free in fs/ext4/xattr.c when a large old_size value is used in a memset call, aka CID-345c0dbf3a30.
Published 2019-11-27 · Modified
6.5EPSS 0.007
CVE-2013-0311
The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host OS privileges by leveraging KVM guest OS privileges.
Published 2013-02-22 · Modified
6.5EPSS 0.006
CVE-2023-43785
Libx11: out-of-bounds memory access in _xkbreadkeysyms()
Published 2023-10-10 · Modified
6.5EPSS 0.006
CVE-2024-0564
Kernel: max page sharing of kernel samepage merging (ksm) may cause memory deduplication
Published 2024-01-30 · Modified
6.5EPSS 0.006
CVE-2023-39329
Openjpeg: resource exhaustion will occur in the opj_t1_decode_cblks function in the tcd.c
Published 2024-07-13 · Modified
6.5EPSS 0.006
CVE-2026-9150
Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums
Published 2026-05-20 · Modified
6.5EPSS 0.006
CVE-2025-14512
Glib: integer overflow in glib gio attribute escaping causes heap buffer overflow
Published 2025-12-11 · Modified
6.5EPSS 0.006
CVE-2023-5455
Ipa: invalid csrf protection
Published 2024-01-10 · Modified
6.5EPSS 0.006
CVE-2025-5351
Libssh: double free vulnerability in libssh key export functions
Published 2025-07-04 · Modified
6.5EPSS 0.006
CVE-2026-9149
Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file
Published 2026-05-20 · Modified
6.5EPSS 0.006
CVE-2021-3948
An incorrect default permissions vulnerability was found in the mig-controller. Due to an incorrect cluster namespaces handling an attacker may be able to migrate a malicious workload to the target cluster, impacting confidentiality, integrity, and availability of the services located on that cluster.
Published 2022-02-18 · Modified
6.5EPSS 0.006
CVE-2026-4426
Libarchive: libarchive: denial of service via malformed iso file processing
Published 2026-03-19 · Modified
6.5EPSS 0.006
CVE-2021-3979
A key length flaw was found in Red Hat Ceph Storage. An attacker can exploit the fact that the key length is incorrectly passed in an encryption algorithm to create a non random key, which is weaker and can be exploited for loss of confidentiality and integrity on encrypted disks.
Published 2022-08-25 · Modified
6.5EPSS 0.006
CVE-2017-2625
It was discovered that libXdmcp before 1.1.2 including used weak entropy to generate session keys. On a multi-user system using xdmcp, a local attacker could potentially use information available from the process list to brute force the key, allowing them to hijack other users' sessions.
Published 2018-07-27 · Modified
6.5EPSS 0.005
CVE-2026-71225
Libkcapi: iv reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries
Published 2026-08-05 · Modified
6.5EPSS 0.005
CVE-2025-4478
Gnome-remote-desktop: freerdp: unauthenticated rdp packet causes segfault in freerdp leading to denial of service
Published 2025-05-16 · Modified
6.5EPSS 0.005
CVE-2023-5544
Moodle: stored xss and potential idor risk in wiki comments
Published 2023-11-09 · Modified
6.5EPSS 0.005
CVE-2020-10756
An out-of-bounds read vulnerability was found in the SLiRP networking implementation of the QEMU emulator. This flaw occurs in the icmp6_send_echoreply() routine while replying to an ICMP echo request, also known as ping. This flaw allows a malicious guest to leak the contents of the host memory, resulting in possible information disclosure. This flaw affects versions of libslirp before 4.3.1.
Published 2020-07-09 · Modified
6.5EPSS 0.005
← Prev31 / 57Next →