VendorsRed Hatenterprise_linux_eus9.0
Vulnerabilities

Red Hat Enterprise Linux 9.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

21CVEs
CVE-2023-3961
Samba: smbd allows client access to unix domain sockets on the file system as root
Published 2023-11-03 · Modified
9.8EPSS 0.024
CVE-2023-46846
Squid: request/response smuggling in http/1.1 and icap
Published 2023-11-03 · Modified
9.3EPSS 0.062
CVE-2023-5869
Postgresql: buffer overrun from integer overflow in array modification
Published 2023-12-10 · Modified
8.8EPSS 0.043
CVE-2023-46847
Squid: denial of service in http digest authentication
Published 2023-11-03 · Modified
8.6EPSS 0.884
CVE-2022-2601
A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.
Published 2022-12-14 · Modified
8.6EPSS 0.005
CVE-2023-0179
A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Escalation to the root user via arbitrary code execution.
Published 2023-03-27 · Modified
7.8EPSS 0.019
CVE-2024-0229
Xorg-x11-server: reattaching to different master device may lead to out-of-bounds memory access
Published 2024-02-09 · Modified
7.8EPSS 0.012
CVE-2023-0494
A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. This can lead to local privilege elevation on systems where the X server runs privileged and remote code execution for ssh X forwarding sessions.
Published 2023-03-27 · Modified
7.8EPSS 0.009
CVE-2024-9675
Buildah: buildah allows arbitrary directory mount
Published 2024-10-09 · Modified
7.8EPSS 0.004
CVE-2023-3972
Insights-client: unsafe handling of temporary files and directories
Published 2023-11-01 · Modified
7.8EPSS 0.003
CVE-2023-3899
Subscription-manager: inadequate authorization of com.redhat.rhsm1 d-bus interface allows local users to modify configuration
Published 2023-08-23 · Modified
7.8EPSS 0.002
CVE-2023-5157
Mariadb: node crashes with transport endpoint is not connected mysqld got signal 6
Published 2023-09-26 · Modified
7.5EPSS 0.020
CVE-2023-3758
Sssd: race condition during authorization leads to gpo policies functioning inconsistently
Published 2024-04-18 · Modified
7.1EPSS 0.010
CVE-2021-3697
A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.
Published 2022-07-06 · Modified
7.0EPSS 0.005
CVE-2021-3696
A heap out-of-bounds write may heppen during the handling of Huffman tables in the PNG reader. This may lead to data corruption in the heap space. Confidentiality, Integrity and Availablity impact may be considered Low as it's very complex to an attacker control the encoding and positioning of corrupted Huffman entries to achieve results such as arbitrary code execution and/or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.
Published 2022-07-06 · Modified
6.9EPSS 0.005
CVE-2023-42669
Samba: "rpcecho" development server allows denial of service via sleep() call on ad dc
Published 2023-11-06 · Modified
6.5EPSS 0.017
CVE-2023-4091
Samba: smb clients can truncate files with read-only permissions
Published 2023-11-03 · Modified
6.5EPSS 0.012
CVE-2023-5455
Ipa: invalid csrf protection
Published 2024-01-10 · Modified
6.5EPSS 0.006
CVE-2021-3695
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12.
Published 2022-07-06 · Modified
4.5EPSS 0.005
CVE-2023-5870
Postgresql: role pg_signal_backend can signal certain superuser processes.
Published 2023-12-10 · Modified
4.4EPSS 0.026
CVE-2023-5868
Postgresql: memory disclosure in aggregate function calls
Published 2023-12-10 · Modified
4.3EPSS 0.028