VendorsRed Hatenterprise_linux9.0
Vulnerabilities

Red Hat Enterprise Linux 9.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

601CVEs
CVE-2022-0934
A single-byte, non-arbitrary write/use-after-free flaw was found in dnsmasq. This flaw allows an attacker who sends a crafted packet processed by dnsmasq, potentially causing a denial of service.
Published 2022-08-29 · Modified
7.5EPSS 0.025
CVE-2025-9784
Undertow: undertow madeyoureset http/2 ddos vulnerability
Published 2025-09-02 · Modified
7.5EPSS 0.023
CVE-2024-12087
Rsync: path traversal vulnerability in rsync
Published 2025-01-14 · Modified
7.5EPSS 0.023
CVE-2023-52356
Libtiff: segment fault in libtiff in tiffreadrgbatileext() leading to denial of service
Published 2024-01-25 · Modified
7.5EPSS 0.022
CVE-2023-5157
Mariadb: node crashes with transport endpoint is not connected mysqld got signal 6
Published 2023-09-26 · Modified
7.5EPSS 0.020
CVE-2022-2509
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function.
Published 2022-08-01 · Modified
7.5EPSS 0.020
CVE-2023-44488
VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.
Published 2023-09-30 · Modified
7.5EPSS 0.019
CVE-2023-2953
A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.
Published 2023-05-30 · Modified
7.5EPSS 0.019
CVE-2023-52355
Libtiff: tiffrasterscanlinesize64 produce too-big size and could cause oom
Published 2024-01-25 · Modified
7.5EPSS 0.018
CVE-2023-1108
Undertow: infinite loop in sslconduit during close
Published 2023-09-14 · Modified
7.5EPSS 0.018
CVE-2023-3138
A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not check that the values provided for the Request, Event, or Error IDs are within the bounds of the arrays that those functions write to, using those IDs as array indexes. They trust that they were called with values provided by an Xserver adhering to the bounds specified in the X11 protocol, as all X servers provided by X.Org do. As the protocol only specifies a single byte for these values, an out-of-bounds value provided by a malicious server (or a malicious proxy-in-the-middle) can only overwrite other portions of the Display structure and not write outside the bounds of the Display structure itself, possibly causing the client to crash with this memory corruption.
Published 2023-06-28 · Modified
7.5EPSS 0.017
CVE-2024-0553
Gnutls: incomplete fix for cve-2023-5981
Published 2024-01-16 · Modified
7.5EPSS 0.016
CVE-2023-3354
Improper i/o watch removal in tls handshake can lead to remote unauthenticated denial of service
Published 2023-07-11 · Modified
7.5EPSS 0.016
CVE-2021-3839
A flaw was found in the vhost library in DPDK. Function vhost_user_set_inflight_fd() does not validate `msg->payload.inflight.num_queues`, possibly causing out-of-bounds memory read/write. Any software using DPDK vhost library may crash as a result of this vulnerability.
Published 2022-08-23 · Modified
7.5EPSS 0.016
CVE-2023-2295
A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptable crypto algorithms, and the response packet is not sent with a zero responder SPI. When a subsequent packet is received where the sender reuses the libreswan responder SPI as its own initiator SPI, the pluto daemon state machine crashes. No remote code execution is possible. This CVE exists because of a CVE-2023-30570 security regression for libreswan package in Red Hat Enterprise Linux 8.8 and Red Hat Enterprise Linux 9.2.
Published 2023-05-17 · Modified
7.5EPSS 0.016
CVE-2025-3891
Mod_auth_openidc: dos via empty post in mod_auth_openidc with oidcpreservepost enabled
Published 2025-04-29 · Modified
7.5EPSS 0.016
CVE-2023-6536
Kernel: null pointer dereference in __nvmet_req_complete
Published 2024-02-07 · Modified
7.5EPSS 0.015
CVE-2023-6535
Kernel: null pointer dereference in nvmet_tcp_execute_request
Published 2024-02-07 · Modified
7.5EPSS 0.015
CVE-2024-7006
Libtiff: null pointer dereference in tif_dirinfo.c
Published 2024-08-08 · Modified
7.5EPSS 0.015
CVE-2022-1949
An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.
Published 2022-06-01 · Modified
7.5EPSS 0.015
CVE-2023-6356
Kernel: null pointer dereference in nvmet_tcp_build_iovec
Published 2024-02-07 · Modified
7.5EPSS 0.015
CVE-2023-38200
Keylime: registrar is subject to a dos against ssl connections
Published 2023-07-24 · Modified
7.5EPSS 0.014
CVE-2022-2963
A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.
Published 2022-10-14 · Modified
7.5EPSS 0.014
CVE-2025-6021
Libxml2: integer overflow in xmlbuildqname() leads to stack buffer overflow in libxml2
Published 2025-06-12 · Modified
7.5EPSS 0.014
CVE-2023-5156
Glibc: dos due to memory leak in getaddrinfo.c
Published 2023-09-25 · Modified
7.5EPSS 0.013
CVE-2026-4271
Libsoup: libsoup: denial of service via use-after-free in http/2 server
Published 2026-03-17 · Modified
7.5EPSS 0.013
CVE-2026-35092
Corosync: corosync: denial of service via integer overflow in join message validation
Published 2026-04-01 · Modified
7.5EPSS 0.013
CVE-2022-4743
A potential memory leak issue was discovered in SDL2 in GLES_CreateTexture() function in SDL_render_gles.c. The vulnerability allows an attacker to cause a denial of service attack. The vulnerability affects SDL2 v2.0.4 and above. SDL-1.x are not affected.
Published 2023-01-12 · Modified
7.5EPSS 0.013
CVE-2025-7424
Libxslt: type confusion in xmlnode.psvi between stylesheet and source nodes
Published 2025-07-10 · Modified
7.5EPSS 0.012
CVE-2026-5201
Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image
Published 2026-03-31 · Modified
7.5EPSS 0.012
CVE-2026-2100
P11-kit: null dereference via c_derivekey with specific null parameters
Published 2026-03-26 · Modified
7.5EPSS 0.012
CVE-2026-42009
Gnutls: gnutls: denial of service via dtls packet reordering vulnerability
Published 2026-05-18 · Modified
7.5EPSS 0.011
CVE-2023-50781
M2crypto: bleichenbacher timing attacks in the rsa decryption api - incomplete fix for cve-2020-25657
Published 2024-02-05 · Analyzed
7.5EPSS 0.011
CVE-2023-50782
Python-cryptography: bleichenbacher timing oracle attack against rsa decryption - incomplete fix for cve-2020-25659
Published 2024-02-05 · Modified
7.5EPSS 0.011
CVE-2026-9064
389-ds-base: 389-ds-base: unbounded ldap controls count in get_ldapmessage_controls_ext() causes cpu and heap amplification (remote dos)
Published 2026-05-20 · Modified
7.5EPSS 0.011
CVE-2026-4424
Libarchive: libarchive: information disclosure via heap out-of-bounds read in rar archive processing
Published 2026-03-19 · Modified
7.5EPSS 0.011
CVE-2026-46625
JavaScript Cookie: Per-instance prototype hijack in assign() enables cookie-attribute injection
Published 2026-06-10 · Modified
7.5EPSS 0.010
CVE-2026-6732
Libxml2: libxml2: denial of service via crafted xsd-validated document
Published 2026-04-23 · Analyzed
7.5EPSS 0.009
CVE-2026-58015
Glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive
Published 2026-06-30 · Modified
7.5EPSS 0.009
CVE-2023-6476
Cri-o: pods are able to break out of resource confinement on cgroupv2
Published 2024-01-09 · Modified
7.5EPSS 0.009
← Prev5 / 16Next →