Red Hat

650 tracked vulnerabilities.

CVE-2024-8176 HIGH
Red Hat Enterprise Linux 10 - Denial of Service via Recursive Entity Expansion in libexpat
Mar 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2024-45778 MEDIUM
GRUB2 < 2.12 - Denial of Service via BFS Filesystem Parsing
Mar 03, 2025
CVSS 4.1
EPSS 0.00
CVE-2024-45783 MEDIUM
Red Hat Enterprise Linux 9 - Use-After-Free in HFS+ Filesystem Driver
Feb 18, 2025
CVSS 4.4
EPSS 0.00
CVE-2024-45781 MEDIUM
Red Hat Enterprise Linux 10 - Heap Out-of-Bounds Write in GRUB2 UFS Symbolic Link Handling
Feb 18, 2025
CVSS 6.7
EPSS 0.00
CVE-2024-45776 MEDIUM
Red Hat Enterprise Linux 10 - Out-of-bounds Write in grub_mofile_open()
Feb 18, 2025
CVSS 6.7
EPSS 0.00
CVE-2024-45775 MEDIUM
Red Hat Enterprise Linux 9 - Denial of Service via NULL Pointer Dereference in grub_extcmd_dispatcher
Feb 18, 2025
CVSS 5.2
EPSS 0.00
CVE-2024-45774 MEDIUM
Red Hat Enterprise Linux 9 - Out-of-bounds Write in GRUB2 JPEG Parser
Feb 18, 2025
CVSS 6.7
EPSS 0.00
CVE-2024-4028 LOW
Keycloak - Stored Cross-Site Scripting via Admin Console Permission Payload
Feb 18, 2025
CVSS 3.8
EPSS 0.00
CVE-2024-12243 MEDIUM
GnuTLS - Denial of Service
Feb 10, 2025
CVSS 5.3
EPSS 0.01
CVE-2024-12133 MEDIUM
libtasn1 - Denial of Service
Feb 10, 2025
CVSS 5.3
EPSS 0.00
CVE-2024-11831 MEDIUM
serialize-javascript >=6.0.0 <6.0.2 - Cross-Site Scripting via Unsanitized JavaScript Object Input
Feb 10, 2025
CVSS 5.4
EPSS 0.01
CVE-2024-13484 HIGH
openshift-gitops-operator-container - Info Disclosure
Jan 28, 2025
CVSS 8.2
EPSS 0.00
CVE-2024-11218 HIGH
buildah >=1.38.0 <1.38.1 - Container Breakout via Race Condition in --jobs=2
Jan 22, 2025
CVSS 8.6
EPSS 0.00
CVE-2024-11029 MEDIUM
Red Hat Enterprise Linux 9 - Exposure of Sensitive System Information via FreeIPA API Audit
Jan 15, 2025
CVSS 5.5
EPSS 0.00
CVE-2024-12747 MEDIUM
rsync - Privilege Escalation
Jan 14, 2025
CVSS 5.6
EPSS 0.00
CVE-2024-12088 MEDIUM
rsync < 3.3.0 - Path Traversal and Arbitrary File Write via Symbolic Link Verification Bypass
Jan 14, 2025
CVSS 6.5
EPSS 0.03
CVE-2024-12087 MEDIUM
rsync < 3.3.0 - Path Traversal via --inc-recursive Symlink Handling
Jan 14, 2025
CVSS 6.5
EPSS 0.03
CVE-2024-12086 MEDIUM
rsync < 3.3.0 - Arbitrary File Read via Checksum Manipulation
Jan 14, 2025
CVSS 6.1
EPSS 0.01
CVE-2024-12085 HIGH
rsync < 3.3.0 - Information Disclosure via Checksum Length Manipulation
Jan 14, 2025
CVSS 7.5
EPSS 0.19
CVE-2024-11736 MEDIUM
Keycloak < 26.0.8 - Authenticated Sensitive Information Exposure via URL Placeholder Injection
Jan 14, 2025
CVSS 4.9
EPSS 0.00
CVE-2024-11734 MEDIUM
Keycloak < 26.0.8 - Authenticated Denial of Service via Security Header Newline Injection
Jan 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2024-56827 MEDIUM
Red Hat Enterprise Linux 9 - Heap-based Buffer Overflow in opj_decompress
Jan 09, 2025
CVSS 5.6
EPSS 0.00
CVE-2024-56826 MEDIUM
Red Hat Enterprise Linux 9 - Heap-based Buffer Overflow in opj_decompress
Jan 09, 2025
CVSS 5.6
EPSS 0.00
CVE-2024-8447 MEDIUM
Narayana LRA Coordinator < 7.1.0.Final - Denial of Service via Concurrent Cancel and Join Operations
Jan 02, 2025
CVSS 5.9
EPSS 0.00
CVE-2024-45497 HIGH
Red Hat OpenShift Container Platform 4.12-4.18 - Incorrect Permission Assignment for Critical Resource in Build Process
Dec 31, 2024
CVSS 7.6
EPSS 0.01
Products
Red Hat Enterprise Linux 9 370 Red Hat Enterprise Linux 8 363 Red Hat Enterprise Linux 10 309 Red Hat Enterprise Linux 7 286 Red Hat Enterprise Linux 6 279 Red Hat OpenShift Container Platform 4 147 Red Hat Enterprise Linux 9.4 Extended Update Support 104 Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support 91 Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions 88 Red Hat Enterprise Linux 8.6 Telecommunications Update Service 83 Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions 83 Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support 82 Red Hat Enterprise Linux 8.2 Advanced Update Support 81 Red Hat Enterprise Linux 7 Extended Lifecycle Support 65 Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions 64 Red Hat Hardened Images 62 Red Hat Enterprise Linux 9.2 Extended Update Support 60 Red Hat Build of Keycloak 59 Red Hat JBoss Enterprise Application Platform 8 58 Red Hat Enterprise Linux 8.8 Extended Update Support 53 Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions 52 Red Hat JBoss Enterprise Application Platform Expansion Pack 50 Red Hat Enterprise Linux 8.8 Telecommunications Update Service 49 Red Hat Single Sign-On 7 48 Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On 46 Red Hat build of Keycloak 26.4 41 Red Hat Enterprise Linux 8.4 Telecommunications Update Service 38 Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions 38 Red Hat OpenShift Container Platform 4.14 37 Red Hat OpenShift Container Platform 4.16 37