redhat

5,618 tracked vulnerabilities.

CVE-2022-0516 HIGH
Linux Kernel < 5.17 - Unauthorized Memory Write Access via KVM s390 Guest SIDA Operation
Mar 10, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-0492 HIGH
Docker cgroups Container Escape
Mar 03, 2022
CVSS 7.8
EPSS 0.05
CVE-2022-0711 HIGH
HAProxy 2.2.0-2.2.20 - Denial of Service via Set-Cookie2 Header Processing
Mar 02, 2022
CVSS 7.5
EPSS 0.66
CVE-2022-23645 MEDIUM
swtpm < 0.5.3, < 0.6.2, < 0.7.1 - Out-of-Bounds Read via Invalid Blobheader hdrsize
Feb 18, 2022
CVSS 6.2
EPSS 0.00
CVE-2022-0671 CRITICAL
vscode-xml <0.19.0 - Blind SSRF/DoS
Feb 18, 2022
CVSS 9.1
EPSS 0.00
CVE-2022-0561 MEDIUM
libtiff 3.9.0-4.3.0 - Denial of Service via TIFFFetchStripThing memcpy Null Pointer
Feb 11, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-0532 MEDIUM
CRI-O < 1.18 - Incorrect Sysctls Validation via Safe Sysctls List
Feb 09, 2022
CVSS 4.2
EPSS 0.00
CVE-2022-0530 MEDIUM
Unzip - Heap-Based Buffer Overflow via Wide String Conversion
Feb 09, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-0529 MEDIUM
Unzip - Heap-Based Buffer Overflow via Crafted Zip File
Feb 09, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-0487 MEDIUM
Linux Kernel <5.14 rc1 - Use After Free
Feb 04, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-21682 HIGH
Flatpak < 1.12.3 and < 1.10.6 - Path Traversal via --mirror-screenshots-url
Jan 13, 2022
CVSS 7.7
EPSS 0.00
CVE-2021-3600 HIGH
Linux Kernel 4.14.115-4.14.308 - Out-of-bounds Read in eBPF 32-bit Register Bounds Tracking
Jan 08, 2024
CVSS 7.8
EPSS 0.00
CVE-2021-3923 LOW
Linux Kernel < 5.15.14 - Kernel Stack Information Leak via RDMA over Infiniband
Mar 27, 2023
CVSS 2.3
EPSS 0.00
CVE-2021-3684 MEDIUM
OpenShift Assisted Installer < 1.0.25.3 - Authenticated Image Pull Secret Exposure in Installation Logs
Mar 24, 2023
CVSS 5.5
EPSS 0.00
CVE-2021-4294 LOW
OpenShift OSIN - Timing Discrepancy
Dec 28, 2022
CVSS 2.6
EPSS 0.00
CVE-2021-3864 HIGH
Linux Kernel - Improper Access Control via SUID Binary Core Dump Handling
Aug 26, 2022
CVSS 7.0
EPSS 0.01
CVE-2021-3859 HIGH
Undertow - Denial of Service
Aug 26, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-3856 MEDIUM
Keycloak < 15.1.0 - Unauthenticated Arbitrary File Read via Theme Resource Path Traversal
Aug 26, 2022
CVSS 4.3
EPSS 0.00
CVE-2021-3754 MEDIUM
Keycloak - Improper Input Validation in Username Registration
Aug 26, 2022
CVSS 5.3
EPSS 0.12
CVE-2021-3703 HIGH
Serverless <1.17.0 - Info Disclosure
Aug 26, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-3688 MEDIUM
Red Hat JBoss Core Services HTTP Server - Path Traversal via Dot-Dot-Semicolon Bypass
Aug 26, 2022
CVSS 4.8
EPSS 0.00
CVE-2021-3669 MEDIUM
Linux Kernel - Denial of Service via Shared Memory Segment Count Exhaustion
Aug 26, 2022
CVSS 5.5
EPSS 0.00
CVE-2021-3644 LOW
Redhat Descision Manager < 16.0.1.Final - Information Disclosure
Aug 26, 2022
CVSS 3.3
EPSS 0.00
CVE-2021-3632 HIGH
Keycloak < 15.1.0 - Unauthenticated WebAuthn Device Registration
Aug 26, 2022
CVSS 7.5
EPSS 0.01
CVE-2021-3563 HIGH
OpenStack Keystone - Incorrect Authorization via Truncated Application Secret Verification
Aug 26, 2022
CVSS 7.4
EPSS 0.00