VendorsRed Hatenterprise_linuxall versions
Vulnerabilities

Red Hat Enterprise Linux

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2269CVEs
CVE-2023-3164
Heap-buffer-overflow in extractimagesection()
Published 2023-11-02 · Modified
5.5EPSS 0.003
CVE-2020-14391
A flaw was found in the GNOME Control Center in Red Hat Enterprise Linux 8 versions prior to 8.2, where it improperly uses Red Hat Customer Portal credentials when a user registers a system through the GNOME Settings User Interface. This flaw allows a local attacker to discover the Red Hat Customer Portal password. The highest threat from this vulnerability is to confidentiality.
Published 2021-02-08 · Modified
5.5EPSS 0.003
CVE-2022-0851
There is a flaw in convert2rhel. When the --activationkey option is used with convert2rhel, the activation key is subsequently passed to subscription-manager via the command line, which could allow unauthorized users locally on the machine to view the activation key via the process command line via e.g. htop or ps. The specific impact varies upon the subscription, but generally this would allow an attacker to register systems purchased by the victim until discovered; a form of fraud. This could occur regardless of how the activation key is supplied to convert2rhel because it involves how convert2rhel provides it to subscription-manager.
Published 2022-08-29 · Modified
5.5EPSS 0.003
CVE-2022-2873
An out-of-bounds memory access flaw was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way a user triggers the I2C_SMBUS_BLOCK_DATA (with the ioctl I2C_SMBUS) with malicious input data. This flaw allows a local user to crash the system.
Published 2022-08-22 · Modified
5.5EPSS 0.003
CVE-2023-6679
Kernel: null pointer dereference in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c
Published 2023-12-11 · Modified
5.5EPSS 0.003
CVE-2024-1062
389-ds-base: a heap overflow leading to denail-of-servce while writing a value larger than 256 chars (in log_entry_attr)
Published 2024-02-12 · Modified
5.5EPSS 0.003
CVE-2022-1852
A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the x86_emulate_insn in arch/x86/kvm/emulate.c. This flaw occurs while executing an illegal instruction in guest in the Intel CPU.
Published 2022-06-30 · Modified
5.5EPSS 0.003
CVE-2024-0690
Ansible-core: possible information leak in tasks that ignore ansible_no_log configuration
Published 2024-02-06 · Modified
5.5EPSS 0.003
CVE-2023-7192
Kernel: refcount leak in ctnetlink_create_conntrack()
Published 2024-01-02 · Modified
5.5EPSS 0.003
CVE-2022-0171
A flaw was found in the Linux kernel. The existing KVM SEV API has a vulnerability that allows a non-root (host) user-level application to crash the host kernel by creating a confidential guest VM instance in AMD CPU that supports Secure Encrypted Virtualization (SEV).
Published 2022-08-26 · Modified
5.5EPSS 0.003
CVE-2026-59089
Gimp: gimp: denial of service via integer overflow in playstation tim loader
Published 2026-07-06 · Analyzed
5.5EPSS 0.003
CVE-2024-45778
Grub2: fs/bfs: integer overflow in the bfs parser.
Published 2025-03-03 · Modified
5.5EPSS 0.003
CVE-2021-3669
A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with large shared memory segment counts which could lead to resource exhaustion and DoS.
Published 2022-08-26 · Modified
5.5EPSS 0.003
CVE-2024-23301
Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local attackers to gain access to system secrets otherwise only readable by root.
Published 2024-01-12 · Modified
5.5EPSS 0.003
CVE-2022-1184
A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.
Published 2022-08-29 · Modified
5.5EPSS 0.003
CVE-2022-0480
A flaw was found in the filelock_init in fs/locks.c function in the Linux kernel. This issue can lead to host memory exhaustion due to memcg not limiting the number of Portable Operating System Interface (POSIX) file locks.
Published 2022-08-29 · Modified
5.5EPSS 0.003
CVE-2024-8354
Qemu-kvm: usb: assertion failure in usb_ep_get()
Published 2024-09-19 · Modified
5.5EPSS 0.003
CVE-2023-4569
Kernel: information leak in nft_set_catchall_flush in net/netfilter/nf_tables_api.c
Published 2023-08-28 · Modified
5.5EPSS 0.003
CVE-2025-46398
Xfig: fig2dev stack-overflow via read_objects
Published 2025-04-23 · Modified
5.5EPSS 0.003
CVE-2021-3659
A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN connection. This flaw allows a local user to crash the system. The highest threat from this vulnerability is to system availability.
Published 2022-08-22 · Modified
5.5EPSS 0.003
CVE-2023-4194
Kernel: tap: tap_open(): correctly initialize socket uid next fix of i_uid to current_fsuid
Published 2023-08-07 · Modified
5.5EPSS 0.003
CVE-2024-1151
Kernel: stack overflow problem in open vswitch kernel module leading to dos
Published 2024-02-11 · Modified
5.5EPSS 0.003
CVE-2012-6136
tuned 2.10.0 creates its PID file with insecure permissions which allows local users to kill arbitrary processes.
Published 2019-11-20 · Modified
5.5EPSS 0.003
CVE-2021-20320
A flaw was found in s390 eBPF JIT in bpf_jit_insn in arch/s390/net/bpf_jit_comp.c in the Linux kernel. In this flaw, a local attacker with special user privilege can circumvent the verifier and may lead to a confidentiality problem.
Published 2022-02-18 · Modified
5.5EPSS 0.003
CVE-2021-3569
A stack corruption bug was found in libtpms in versions before 0.7.2 and before 0.8.0 while decrypting data using RSA. This flaw could result in a SIGBUS (bad memory access) and termination of swtpm. The highest threat from this vulnerability is to system availability.
Published 2021-06-03 · Modified
5.5EPSS 0.003
CVE-2013-4518
RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
Published 2019-11-04 · Modified
5.5EPSS 0.003
CVE-2021-20297
A flaw was found in NetworkManager in versions before 1.30.0. Setting match.path and activating a profile crashes NetworkManager. The highest threat from this vulnerability is to system availability.
Published 2021-05-26 · Modified
5.5EPSS 0.003
CVE-2026-40918
Gimp: gimp: denial of service via crafted pvr image file
Published 2026-04-15 · Analyzed
5.5EPSS 0.003
CVE-2023-4641
Shadow-utils: possible password leak during passwd(1) change
Published 2023-12-27 · Modified
5.5EPSS 0.003
CVE-2024-2496
Libvirt: null pointer dereference in udevconnectlistallinterfaces()
Published 2024-03-18 · Analyzed
5.5EPSS 0.003
CVE-2023-4132
Kernel: smsusb: use-after-free caused by do_submit_urb()
Published 2023-08-03 · Modified
5.5EPSS 0.003
CVE-2023-2700
A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory leak caused by a failure to free the virPCIVirtualFunction array within the parent struct's g_autoptr cleanup.
Published 2023-05-15 · Modified
5.5EPSS 0.003
CVE-2021-20269
A flaw was found in the permissions of a log file created by kexec-tools. This flaw allows a local unprivileged user to read this file and leak kernel internal information from a previous panic. The highest threat from this vulnerability is to confidentiality. This flaw affects kexec-tools shipped by Fedora versions prior to 2.0.21-8 and RHEL versions prior to 2.0.20-47.
Published 2022-03-09 · Modified
5.5EPSS 0.003
CVE-2023-3773
Kernel: xfrm: out-of-bounds read of xfrma_mtimer_thresh nlattr
Published 2023-07-25 · Modified
5.5EPSS 0.003
CVE-2023-4459
Kernel: vmxnet3: null pointer dereference in vmxnet3_rq_cleanup()
Published 2023-08-21 · Modified
5.5EPSS 0.002
CVE-2021-3684
A vulnerability was found in OpenShift Assisted Installer. During generation of the Discovery ISO, image pull secrets were leaked as plaintext in the installation logs. An authenticated user could exploit this by re-using the image pull secret to pull container images from the registry as the associated user.
Published 2023-03-24 · Modified
5.5EPSS 0.002
CVE-2024-0443
Kernel: blkio memory leakage due to blkcg and some blkgs are not freed after they are made offline.
Published 2024-01-11 · Modified
5.5EPSS 0.002
CVE-2022-3560
A flaw was found in pesign. The pesign package provides a systemd service used to start the pesign daemon. This service unit runs a script to set ACLs for /etc/pki/pesign and /run/pesign directories to grant access privileges to users in the 'pesign' group. However, the script doesn't check for symbolic links. This could allow an attacker to gain access to privileged files and directories via a path traversal attack.
Published 2023-02-02 · Modified
5.5EPSS 0.002
CVE-2025-46399
Xfig: transfig: fig2dev segmentation fault vulnerability
Published 2025-04-23 · Modified
5.5EPSS 0.002
CVE-2025-46400
Xfig: fig2dev segmentation fault in read_arcobject
Published 2025-04-23 · Modified
5.5EPSS 0.002
← Prev41 / 57Next →