Red Hat

650 tracked vulnerabilities.

CVE-2024-28835 MEDIUM
GnuTLS - Memory Corruption
Mar 21, 2024
CVSS 5.0
EPSS 0.00
CVE-2024-2307 MEDIUM
Red Hat Enterprise Linux 8 and 9 - Improper Verification of Cryptographic Signature
Mar 19, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-1753 HIGH
Podman < 4.9.4 and < 5.0.1 - Unauthenticated Container Escape via Symbolic Link Mount
Mar 18, 2024
CVSS 8.6
EPSS 0.00
CVE-2024-1979 LOW
Quarkus Kubernetes Deployment < 3.7.3 - Exposure of Sensitive Git Credentials
Mar 13, 2024
CVSS 3.5
EPSS 0.00
CVE-2024-2182 MEDIUM
Open Virtual Network BFD Packets - Denial of Service
Mar 12, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-1441 MEDIUM
Red Hat Enterprise Linux 9 - Denial of Service via udevListInterfacesByStatus Off-by-One Error
Mar 11, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-2236 MEDIUM
Red Hat Enterprise Linux 9 - Timing-Based Side-Channel Attack in libgcrypt RSA Implementation
Mar 06, 2024
CVSS 5.9
EPSS 0.01
CVE-2024-21886 HIGH
Red Hat Enterprise Linux - Heap-based Buffer Overflow in X.Org Server DisableDevice Function
Feb 28, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-21885 HIGH
Red Hat Enterprise Linux - Heap-based Buffer Overflow in XISendDeviceHierarchyEvent
Feb 28, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-1635 HIGH
Netapp Active IQ Unified Manager < 2.3.12.Final - Denial of Service
Feb 19, 2024
CVSS 7.5
EPSS 0.23
CVE-2024-1485 HIGH
devfile/registry-support < 0.0.0-20240206 - Unauthenticated Path Traversal via Malicious Archive Decompression
Feb 14, 2024
CVSS 8.0
EPSS 0.02
CVE-2024-0914 MEDIUM
opencryptoki < 3.23.0 - Timing Side-Channel in RSA PKCS#1 v1.5 Padding
Jan 31, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-0553 HIGH
GnuTLS - Timing Side-Channel Attack
Jan 16, 2024
CVSS 7.5
EPSS 0.01
CVE-2023-5342 MEDIUM
Red Hat Enterprise Linux 7-10 - Use of Expired Secure Boot CA Certificate
Aug 14, 2025
CVSS 4.1
EPSS 0.00
CVE-2023-32255 MEDIUM
Linux kernel - Memory Corruption
Aug 02, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-32253 MEDIUM
Red Hat Enterprise Linux - Denial of Service via ksmbd Session Setup Deadlock
Aug 02, 2025
CVSS 5.9
EPSS 0.00
CVE-2023-32256 HIGH
Red Hat Enterprise Linux 6-10 - Use-After-Free in ksmbd Multichannel Connection Handling
Aug 01, 2025
CVSS 7.5
EPSS 0.00
CVE-2023-32251 LOW
Linux kernel's ksmbd - Privilege Escalation
Jul 31, 2025
CVSS 3.7
EPSS 0.00
CVE-2023-2593 MEDIUM
Red Hat Enterprise Linux - Denial of Service via TCP Connection Handling
Jul 30, 2025
CVSS 5.9
EPSS 0.00
CVE-2023-6110 MEDIUM
python-openstackclient < 6.3.0 - Unauthenticated Access Rule Deletion via Non-Existent Rule Handling
Nov 17, 2024
CVSS 5.5
EPSS 0.00
CVE-2023-4639 HIGH
Undertow Cookie Parsing - HttpOnly Cookie Exfiltration and Spoofing
Nov 17, 2024
CVSS 7.4
EPSS 0.07
CVE-2023-1419 MEDIUM
Debezium Connector MySQL < 2.3.0.Alpha1 - Script Injection via Improper Parameter Sanitization
Nov 17, 2024
CVSS 5.9
EPSS 0.00
CVE-2023-0657 LOW
Keycloak < 22.0.10 - Authenticated Token Type Confusion via Improper Signature Validation
Nov 17, 2024
CVSS 3.4
EPSS 0.00
CVE-2023-1973 HIGH
Undertow < 2.2.32.Final - Denial of Service via FormAuthenticationMechanism
Nov 07, 2024
CVSS 7.5
EPSS 0.01
CVE-2023-4727 HIGH
Red Hat Certificate System 10.4 EUS for RHEL-8 - Authentication Bypass via LDAP Injection
Jun 11, 2024
CVSS 7.5
EPSS 0.00
Products
Red Hat Enterprise Linux 9 370 Red Hat Enterprise Linux 8 363 Red Hat Enterprise Linux 10 309 Red Hat Enterprise Linux 7 286 Red Hat Enterprise Linux 6 279 Red Hat OpenShift Container Platform 4 147 Red Hat Enterprise Linux 9.4 Extended Update Support 104 Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support 91 Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions 88 Red Hat Enterprise Linux 8.6 Telecommunications Update Service 83 Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions 83 Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support 82 Red Hat Enterprise Linux 8.2 Advanced Update Support 81 Red Hat Enterprise Linux 7 Extended Lifecycle Support 65 Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions 64 Red Hat Hardened Images 62 Red Hat Enterprise Linux 9.2 Extended Update Support 60 Red Hat Build of Keycloak 59 Red Hat JBoss Enterprise Application Platform 8 58 Red Hat Enterprise Linux 8.8 Extended Update Support 53 Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions 52 Red Hat JBoss Enterprise Application Platform Expansion Pack 50 Red Hat Enterprise Linux 8.8 Telecommunications Update Service 49 Red Hat Single Sign-On 7 48 Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On 46 Red Hat build of Keycloak 26.4 41 Red Hat Enterprise Linux 8.4 Telecommunications Update Service 38 Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions 38 Red Hat OpenShift Container Platform 4.14 37 Red Hat OpenShift Container Platform 4.16 37