VendorsRed Hatenterprise_linux_tus8.6
Vulnerabilities

Red Hat Enterprise Linux 8.6

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2019-9948
urllib in Python 2.x through 2.7.16 supports the local_file: scheme, which makes it easier for remote attackers to bypass protection mechanisms that blacklist file: URIs, as demonstrated by triggering a urllib.urlopen('local_file:///etc/passwd') call.
Published 2019-03-23 · Modified
9.1EPSS 0.118
CVE-2025-31277
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memory corruption.
Published 2025-07-29 · Analyzed
8.8KEVEPSS 0.016
CVE-2024-3183
Freeipa: user can obtain a hash of the passwords of all domain users and perform offline brute force
Published 2024-06-12 · Modified
8.1EPSS 0.021
CVE-2026-31431
crypto: algif_aead - Revert to operating out-of-place
Published 2026-04-22 · Analyzed
7.8KEVEPSS 0.034
CVE-2020-1045
Microsoft ASP.NET Core Security Feature Bypass Vulnerability
Published 2020-09-11 · Modified
7.5EPSS 0.059
CVE-2025-62231
Xorg: xmayland: value overflow in xkbsetcompatmap()
Published 2025-10-30 · Analyzed
7.3EPSS 0.003
CVE-2025-62230
Xorg: xwayland: use-after-free in xkb client resource removal
Published 2025-10-30 · Analyzed
7.3EPSS 0.003
CVE-2021-20316
A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of the share.
Published 2022-08-23 · Modified
6.8EPSS 0.010
CVE-2018-16878
A flaw was found in pacemaker up to and including version 2.0.1. An insufficient verification inflicted preference of uncontrolled processes can lead to DoS
Published 2019-04-18 · Modified
6.2EPSS 0.004