VendorsRed Hatenterprise_linuxall versions
Vulnerabilities

Red Hat Enterprise Linux

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2269CVEs
CVE-2022-23645
Out-of-bounds read in swtpm
Published 2022-02-18 · Modified
6.2EPSS 0.004
CVE-2004-1068
A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.
Published 2004-12-01 · Modified
6.2EPSS 0.004
CVE-2013-4482
Untrusted search path vulnerability in python-paste-script (aka paster) in Luci 0.26.0, when started using the initscript, allows local users to gain privileges via a Trojan horse .egg-info file in the (1) current working directory or (2) its parent directories.
Published 2013-11-23 · Modified
6.2EPSS 0.004
CVE-2022-4900
Potential buffer overflow in php_cli_server_startup_workers
Published 2023-11-02 · Modified
6.2EPSS 0.004
CVE-2007-6285
The default configuration for autofs 5 (autofs5) in some Linux distributions, such as Red Hat Enterprise Linux (RHEL) 4 and 5, does not specify the nodev mount option for the -hosts map, which allows local users to access "important devices" by operating a remote NFS server and creating special device files on that server, as demonstrated by the /dev/mem device.
Published 2007-12-20 · Modified
6.2EPSS 0.004
CVE-2023-38471
Reachable assertion in dbus_set_host_name
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-38473
Reachable assertion in avahi_alternative_host_name
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-38472
Reachable assertion in avahi_rdata_parse
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-38469
Reachable assertion in avahi_dns_packet_append_record
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-38470
Reachable assertion in avahi_escape_label
Published 2023-11-02 · Modified
6.2EPSS 0.003
CVE-2023-32627
Floating point exception in src/voc.c
Published 2023-07-10 · Modified
6.2EPSS 0.003
CVE-2023-6915
Kernel: null pointer dereference vulnerability in ida_free in lib/idr.c
Published 2024-01-15 · Modified
6.2EPSS 0.003
CVE-2024-8235
Libvirt: crash of virtinterfaced via virconnectlistinterfaces()
Published 2024-08-30 · Modified
6.2EPSS 0.002
CVE-2023-26590
Floating point exception in src/aiff.c
Published 2023-07-10 · Modified
6.2EPSS 0.002
CVE-2026-13757
P11-kit: stack exhaustion via unbounded recursion in rpc attribute parsing
Published 2026-06-29 · Modified
6.2EPSS 0.002
CVE-2025-31176
Gnuplot: gnuplot segmentation fault on plot3d_points
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31178
Gnuplot: gnuplot segmentation fault on getannotatestring
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31179
Gnuplot: gnuplot segmentation fault on xstrftime
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31180
Gnuplot: gnuplot segmentation fault on canvas_text
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2025-31181
Gnuplot: gnuplot segmentation fault on x11_graphics
Published 2025-03-27 · Modified
6.2EPSS 0.002
CVE-2022-35653
A reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitization of user-supplied data in the LTI module. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website to steal potentially sensitive information, change appearance of the web page, can perform phishing and drive-by-download attacks. This vulnerability does not impact authenticated users.
Published 2022-07-25 · Modified
6.1EPSS 0.048
CVE-2020-27783
A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.
Published 2020-12-03 · Modified
6.1EPSS 0.040
CVE-2016-4993
CRLF injection vulnerability in the Undertow web server in WildFly 10.0.0, as used in Red Hat JBoss Enterprise Application Platform (EAP) 7.x before 7.0.2, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
Published 2016-09-26 · Modified
6.1EPSS 0.025
CVE-2019-9741
An issue was discovered in net/http in Go 1.11.5. CRLF injection is possible if the attacker controls a url parameter, as demonstrated by the second argument to http.NewRequest with \r\n followed by an HTTP header or a Redis command.
Published 2019-03-13 · Modified
6.1EPSS 0.022
CVE-2019-3877
A vulnerability was found in mod_auth_mellon before v0.14.2. An open redirect in the logout URL allows requests with backslashes to pass through by assuming that it is a relative URL, while the browsers silently convert backslash characters into forward slashes treating them as an absolute URL. This mismatch allows an attacker to bypass the redirect URL validation logic in apr_uri_parse function.
Published 2019-03-27 · Modified
6.1EPSS 0.021
CVE-2016-9895
Event handlers on "marquee" elements were executed despite a strict Content Security Policy (CSP) that disallowed inline JavaScript. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.
Published 2018-06-11 · Modified
6.1EPSS 0.018
CVE-2018-1067
In Undertow before versions 7.1.2.CR1, 7.1.2.GA it was found that the fix for CVE-2016-4993 was incomplete and Undertow web server is vulnerable to the injection of arbitrary HTTP headers, and also response splitting, due to insufficient sanitization and validation of user input before the input is used as part of an HTTP header value.
Published 2018-05-21 · Modified
6.1EPSS 0.018
CVE-2016-0640
Unspecified vulnerability in Oracle MySQL 5.5.47 and earlier, 5.6.28 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.48, 10.0.x before 10.0.24, and 10.1.x before 10.1.12 allows local users to affect integrity and availability via vectors related to DML.
Published 2016-04-21 · Modified
6.1EPSS 0.016
CVE-2017-5466
If a page is loaded from an original site through a hyperlink and contains a redirect to a "data:text/html" URL, triggering a reload will run the reloaded "data:text/html" page with its origin set incorrectly. This allows for a cross-site scripting (XSS) attack. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 52.1, and Firefox < 53.
Published 2018-06-11 · Modified
6.1EPSS 0.015
CVE-2020-10688
A cross-site scripting (XSS) flaw was found in RESTEasy in versions before 3.11.1.Final and before 4.5.3.Final, where it did not properly handle URL encoding when the RESTEASY003870 exception occurs. An attacker could use this flaw to launch a reflected XSS attack.
Published 2021-05-27 · Modified
6.1EPSS 0.014
CVE-2012-4451
Multiple cross-site scripting (XSS) vulnerabilities in Zend Framework 2.0.x before 2.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified input to (1) Debug, (2) Feed\PubSubHubbub, (3) Log\Formatter\Xml, (4) Tag\Cloud\Decorator, (5) Uri, (6) View\Helper\HeadStyle, (7) View\Helper\Navigation\Sitemap, or (8) View\Helper\Placeholder\Container\AbstractStandalone, related to Escaper.
Published 2020-01-03 · Modified
6.1EPSS 0.014
CVE-2019-10221
A Reflected Cross Site Scripting vulnerability was found in all pki-core 10.x.x versions, where the pki-ca module from the pki-core server. This flaw is caused by missing sanitization of the GET URL parameters. An attacker could abuse this flaw to trick an authenticated user into clicking a specially crafted link which can execute arbitrary code when viewed in a browser.
Published 2020-03-20 · Modified
6.1EPSS 0.013
CVE-2016-1000037
Pagure: XSS possible in file attachment endpoint
Published 2019-11-06 · Modified
6.1EPSS 0.011
CVE-2022-35651
A stored XSS and blind SSRF vulnerability was found in Moodle, occurs due to insufficient sanitization of user-supplied data in the SCORM track details. A remote attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in user's browser in context of vulnerable website to steal potentially sensitive information, change appearance of the web page, can perform phishing and drive-by-download attacks.
Published 2022-07-25 · Modified
6.1EPSS 0.010
CVE-2019-10179
A vulnerability was found in all pki-core 10.x.x versions, where the Key Recovery Authority (KRA) Agent Service did not properly sanitize recovery request search page, enabling a Reflected Cross Site Scripting (XSS) vulnerability. An attacker could trick an authenticated victim into executing specially crafted Javascript code.
Published 2020-03-20 · Modified
6.1EPSS 0.009
CVE-2018-1059
The DPDK vhost-user interface does not check to verify that all the requested guest physical range is mapped and contiguous when performing Guest Physical Addresses to Host Virtual Addresses translations. This may lead to a malicious guest exposing vhost-user backend process memory. All versions before 18.02.1 are vulnerable.
Published 2018-04-24 · Modified
6.1EPSS 0.009
CVE-2020-7140
A security vulnerability in HPE IceWall SSO Dfw and Dgfw (Domain Gateway Option) could be exploited remotely to cause a remote cross-site scripting (XSS). HPE has provided the following information to resolve this vulnerability in HPE IceWall SSO DFW and Dgfw: https://www.hpe.com/jp/icewall_patchaccess
Published 2020-07-08 · Modified
6.1EPSS 0.008
CVE-2021-26582
A security vulnerability in HPE IceWall SSO Domain Gateway Option (Dgfw) module version 10.0 on RHEL 5/6/7, version 10.0 on HP-UX 11i v3, version 10.0 on Windows and 11.0 on Windows could be exploited remotely to allow cross-site scripting (XSS).
Published 2021-04-15 · Modified
6.1EPSS 0.007
CVE-2019-19332
An out-of-bounds memory write issue was found in the Linux Kernel, version 3.13 through 5.4, in the way the Linux kernel's KVM hypervisor handled the 'KVM_GET_EMULATED_CPUID' ioctl(2) request to get CPUID features emulated by the KVM hypervisor. A user or process able to access the '/dev/kvm' device could use this flaw to crash the system, resulting in a denial of service.
Published 2020-01-09 · Modified
6.1EPSS 0.007
CVE-2021-20208
A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity.
Published 2021-04-19 · Modified
6.1EPSS 0.007
← Prev34 / 57Next →