redhat

5,618 tracked vulnerabilities.

CVE-2023-1513 LOW
Linux Kernel < 6.2 - Information Disclosure via KVM_GET_DEBUGREGS Uninitialized Memory
Mar 23, 2023
CVSS 3.3
EPSS 0.00
CVE-2023-0056 MEDIUM
HAProxy - Denial of Service via Uncontrolled Resource Consumption
Mar 23, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-1289 MEDIUM
ImageMagick < 7.1.1-0 - Denial of Service via Crafted SVG File
Mar 23, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-27561 HIGH
runc < 1.1.5 - Privilege Escalation via Custom Volume-Mount Configurations
Mar 03, 2023
CVSS 7.0
EPSS 0.00
CVE-2023-1095 MEDIUM
Linux Kernel < 6.0 - NULL Pointer Dereference in nf_tables_updtable Error Path
Feb 28, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-1055 MEDIUM
Red Hat Directory Server 11 and 12 - Sensitive Information Disclosure via UserPassword Attribute Misdirection
Feb 27, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-0044 MEDIUM
Quarkus < 2.13.7 - Cross-Site Scripting via Form Authentication Session Cookie
Feb 23, 2023
CVSS 6.1
EPSS 0.00
CVE-2023-0482 MEDIUM
RESTEasy - Insecure Temporary File Permissions in DataSourceProvider, FileProvider, and Mime4JWorkaround
Feb 17, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-0361 HIGH
GnuTLS - Timing Side-Channel in RSA ClientKeyExchange Handling
Feb 15, 2023
CVSS 7.4
EPSS 0.04
CVE-2023-0229 MEDIUM
github.com/openshift/apiserver-library-go - Privilege Escalation
Jan 26, 2023
CVSS 6.3
EPSS 0.00
CVE-2023-0296 MEDIUM
OpenShift - Use of a Broken or Risky Cryptographic Algorithm in etcd grpc-proxy Health Checks Port
Jan 17, 2023
CVSS 5.3
EPSS 0.00
CVE-2023-0105 MEDIUM
Keycloak - Improper Authentication via Email Trust Mismanagement
Jan 13, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-0091 LOW
Keycloak - Incorrect Authorization in Client Credential Flow
Jan 13, 2023
CVSS 3.8
EPSS 0.00
CVE-2022-24809 MEDIUM
net-snmp < 5.9.2 - Authenticated Denial of Service via Malformed OID in GET-NEXT Request
Apr 16, 2024
CVSS 6.5
EPSS 0.00
CVE-2022-24808 MEDIUM
net-snmp < 5.9.2 - Authenticated NULL Pointer Dereference via Malformed OID in SET Request
Apr 16, 2024
CVSS 6.5
EPSS 0.00
CVE-2022-24807 MEDIUM
net-snmp < 5.9.2 - Authenticated Buffer Overflow via Malformed OID in SET Request
Apr 16, 2024
CVSS 6.5
EPSS 0.00
CVE-2022-24806 MEDIUM
net-snmp < 5.9.2 - Authenticated Improper Input Validation via Malformed OID SET Requests
Apr 16, 2024
CVSS 6.5
EPSS 0.00
CVE-2022-24805 MEDIUM
net-snmp < 5.9.2 - Authenticated Buffer Overflow in NET-SNMP-VACM-MIB INDEX Handling
Apr 16, 2024
CVSS 6.5
EPSS 0.00
CVE-2022-4900 MEDIUM
PHP < 8.0.22 - Heap Buffer Overflow via PHP_CLI_SERVER_WORKERS Environment Variable
Nov 02, 2023
CVSS 6.2
EPSS 0.00
CVE-2022-3248 MEDIUM
OpenShift API - Privilege Escalation
Oct 05, 2023
CVSS 4.4
EPSS 0.00
CVE-2022-4145 MEDIUM
OpenShift Container Platform - Unauthenticated Content Spoofing in OAuth Endpoint
Oct 05, 2023
CVSS 4.3
EPSS 0.00
CVE-2022-4132 MEDIUM
Network Security Services for Java - Denial of Service via Memory Leak
Oct 04, 2023
CVSS 5.9
EPSS 0.00
CVE-2022-4318 HIGH
cri-o < 1.26.0 - Arbitrary File Write via Environment Variable
Sep 25, 2023
CVSS 7.8
EPSS 0.00
CVE-2022-4245 MEDIUM
plexus-utils < 3.0.24 - XML External Entity Injection via Unsanitized Comment Handling
Sep 25, 2023
CVSS 4.3
EPSS 0.00
CVE-2022-4244 HIGH
plexus-utils < 3.0.24 - Path Traversal via Dot-Dot-Slash Sequences
Sep 25, 2023
CVSS 7.5
EPSS 0.00