redhat

5,618 tracked vulnerabilities.

CVE-2023-6610 HIGH
Linux Kernel - Out-of-bounds Read in smb2_dump_detail
Dec 08, 2023
CVSS 7.1
EPSS 0.00
CVE-2023-6606 HIGH
Linux Kernel >=6.4.1 <6.7 - Out-of-bounds Read in smbCalcSize
Dec 08, 2023
CVSS 7.1
EPSS 0.00
CVE-2023-6393 MEDIUM
Quarkus Cache Runtime - Info Disclosure
Dec 06, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-5981 MEDIUM
GnuTLS - Timing Side-Channel in RSA-PSK ClientKeyExchange
Nov 28, 2023
CVSS 5.9
EPSS 0.01
CVE-2023-5871 MEDIUM
libnbd 1.17.4-1.18.1 - Denial of Service via Malicious NBD Server
Nov 27, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-6176 MEDIUM
Linux Kernel - Null Pointer Dereference in Cryptographic Algorithm Scatterwalk API
Nov 16, 2023
CVSS 4.7
EPSS 0.00
CVE-2023-6121 MEDIUM
Red Hat Enterprise Linux - Out-of-bounds Read in NVMe-oF/TCP Subsystem
Nov 16, 2023
CVSS 4.3
EPSS 0.01
CVE-2023-5189 MEDIUM
Ansible Automation Platform - Path Traversal via Malicious Tarball Extraction
Nov 14, 2023
CVSS 6.3
EPSS 0.01
CVE-2023-5547 LOW
moodle 3.9.0-3.9.23 and <4.3.0-rc2 - Cross-Site Scripting in Course Upload Preview
Nov 09, 2023
CVSS 3.3
EPSS 0.00
CVE-2023-5546 MEDIUM
Moodle 4.0.0-4.0.10 and <4.3.0-rc2 - Stored Cross-Site Scripting in Quiz Grading Report ID Numbers
Nov 09, 2023
CVSS 4.3
EPSS 0.02
CVE-2023-5544 MEDIUM
moodle 3.9.0-3.9.23 and <4.3.0-rc2 - Stored Cross-Site Scripting and Insecure Direct Object Reference in Wiki Comments
Nov 09, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-39198 HIGH
Linux Kernel < 6.5 - Use-After-Free in QXL Driver via Race Condition
Nov 09, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-4061 MEDIUM
Wildfly-Core - Info Disclosure
Nov 08, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-4956 MEDIUM
Quay - Clickjacking in Config-Editor Page
Nov 07, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-4535 MEDIUM
OpenSC - Out-of-bounds Read in MyEID Driver Symmetric Key Encryption
Nov 06, 2023
CVSS 4.5
EPSS 0.00
CVE-2023-40661 MEDIUM
OpenSC < 0.23.0 - Memory Corruption via Crafted Smart Card APDU Responses
Nov 06, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-40660 MEDIUM
OpenSC < 0.23.0 - Improper Authentication via Zero-Length PIN Bypass
Nov 06, 2023
CVSS 6.6
EPSS 0.00
CVE-2023-4910 MEDIUM
3scale_api_management - Exposure of Sensitive Information via Browser Cache
Nov 06, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-5090 MEDIUM
Linux KVM x2APIC MSR - Denial of Service
Nov 06, 2023
CVSS 6.0
EPSS 0.00
CVE-2023-42669 MEDIUM
Samba >=4.0.0 <4.17.12 - Authenticated Denial of Service via rpcecho TestSleep Function
Nov 06, 2023
CVSS 6.5
EPSS 0.01
CVE-2023-5088 MEDIUM
QEMU < 8.2.0 - Arbitrary Disk Offset Overwrite via Guest I/O Operation
Nov 03, 2023
CVSS 6.4
EPSS 0.00
CVE-2023-3961 CRITICAL
Samba < 4.17.12 - Path Traversal via Client Pipe Name
Nov 03, 2023
CVSS 9.1
EPSS 0.02
CVE-2023-1476 HIGH
Linux Kernel < 5.14 - Use-After-Free in mm/mremap Memory Address Space Accounting
Nov 03, 2023
CVSS 7.0
EPSS 0.00
CVE-2023-5824 HIGH
Squid < 6.4 - Denial of Service via Cached HTTP Response Header Retrieval
Nov 03, 2023
CVSS 7.5
EPSS 0.02
CVE-2023-4091 MEDIUM
Samba < 4.17.12 - Unauthorized File Truncation via SMB Overwrite Create Disposition
Nov 03, 2023
CVSS 6.5
EPSS 0.00