redhat

5,768 tracked vulnerabilities.

CVE-2016-9599 HIGH
puppet-tripleo - Improper Access Control via IPtables Rules with Empty Port Values
Apr 24, 2018
CVSS 7.1
EPSS 0.01
CVE-2016-9586 MEDIUM
curl < 7.52.0 - Buffer Overflow via Large Floating Point Output in printf Implementation
Apr 23, 2018
CVSS 5.9
EPSS 0.05
CVE-2016-9593 MEDIUM
Foreman < 1.15.0 - Insufficiently Protected Credentials in Log Files
Apr 16, 2018
CVSS 4.7
EPSS 0.01
CVE-2016-9592 MEDIUM
OpenShift < 3.3.1.11, < 3.2.1.23, 3.4 - Denial of Service via Volume Detachment Failure
Apr 16, 2018
CVSS 4.3
EPSS 0.01
CVE-2016-9600 MEDIUM
JasPer < 2.0.10 - Denial of Service via Null Pointer Dereference in JPEG 2000 Decoding
Mar 12, 2018
CVSS 6.5
EPSS 0.01
CVE-2016-9589 HIGH
Red Hat JBoss WildFly Application Server < 10.1.0 - Denial of Service via HTTP Header Cache Exhaustion
Mar 12, 2018
CVSS 7.5
EPSS 0.03
CVE-2016-8629 MEDIUM
Red Hat Keycloak <2.4.0 - Privilege Escalation
Mar 12, 2018
CVSS 6.5
EPSS 0.02
CVE-2016-5314 HIGH
libtiff < 4.0.6 - Out-of-bounds Write in PixarLogDecode
Mar 12, 2018
CVSS 8.8
EPSS 0.05
CVE-2016-9606 HIGH
JBoss RESTEasy < 3.1.2 - Remote Code Execution via YamlProvider Unmarshalling
Mar 09, 2018
CVSS 8.1
EPSS 0.06
CVE-2016-9591 MEDIUM
JasPer < 2.0.12 - Use-After-Free in JPEG 2000 Image Decoding
Mar 09, 2018
CVSS 5.5
EPSS 0.01
CVE-2016-8612 MEDIUM
Apache HTTP Server mod_cluster <httpd 2.4.23 - Memory Corruption
Mar 09, 2018
CVSS 4.3
EPSS 0.05
CVE-2016-9585 MEDIUM
Red Hat JBoss EAP 5 - Denial of Service via JMX Endpoint Deserialization
Mar 09, 2018
CVSS 5.3
EPSS 0.01
CVE-2016-6814 CRITICAL
Apache Groovy 1.7.0-2.4.7 - Remote Code Execution via Untrusted Data Deserialization
Jan 18, 2018
CVSS 9.8
EPSS 0.17
CVE-2016-3695 MEDIUM
Linux Kernel - Denial of Service via APEI Error Injection
Dec 29, 2017
CVSS 5.5
EPSS 0.01
CVE-2016-8610 HIGH
OpenSSL 0.9.8 1.0.1 1.0.2-1.0.2h 1.1.0 - Denial of Service via ALERT Packet Processing
Nov 13, 2017
CVSS 7.5
EPSS 0.40
CVE-2016-6311 MEDIUM
JBoss Enterprise Application Platform 7 - Exposure of Sensitive Information via GET Requests
Aug 22, 2017
CVSS 5.3
EPSS 0.02
CVE-2016-6310 MEDIUM
oVirt Engine <4.0 - Info Disclosure
Aug 22, 2017
CVSS 5.5
EPSS 0.00
CVE-2016-6796 HIGH
Apache Tomcat <9.0.0.M10, <8.5.5, <8.0.37, <7.0.71, <6.0.46 - Auth ...
Aug 11, 2017
CVSS 7.5
EPSS 0.08
CVE-2016-6797 HIGH
Apache Tomcat 6.0.0-6.0.45, 7.0.0-7.0.70, 8.0.0.RC1-8.0.36, 8.5.0-8.5.4, 9.0.0.M1-9.0.0.M9 - Incorrect Authorization
Aug 10, 2017
CVSS 7.5
EPSS 0.08
CVE-2016-6794 MEDIUM
Apache Tomcat <9.0.0.M10, <8.5.5, <8.0.37, <7.0.71, <6.0.46 - Info ...
Aug 10, 2017
CVSS 5.3
EPSS 0.07
CVE-2016-5018 CRITICAL
Apache Tomcat <9.0.0.M10, <8.5.5, <8.0.37, <7.0.71, <6.0.46 - Auth ...
Aug 10, 2017
CVSS 9.1
EPSS 0.10
CVE-2016-0762 MEDIUM
Apache Tomcat <9.0.0.M10, <8.5.5, <8.0.37, <7.0.71, <6.0.46 - Info ...
Aug 10, 2017
CVSS 5.9
EPSS 0.08
CVE-2016-3113 MEDIUM
ovirt-engine - Cross-Site Scripting
Aug 07, 2017
CVSS 6.1
EPSS 0.03
CVE-2016-8743 HIGH
Apache HTTP Server <2.2.32 & 2.4.25 - Info Disclosure
Jul 27, 2017
CVSS 7.5
EPSS 0.13
CVE-2016-6312 MEDIUM
Red Hat Enterprise Linux 5.11 - Authenticated Denial of Service via mod_dontdothat Entity Expansion
Jul 17, 2017
CVSS 6.5
EPSS 0.02