redhat

5,618 tracked vulnerabilities.

CVE-2021-3495 HIGH
Kiali-operator <1.33.0-1.24.7 - Privilege Escalation
Jun 01, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-3412 HIGH
3scale - Unauthenticated Brute Force Attack via Login Endpoint
Jun 01, 2021
CVSS 7.3
EPSS 0.00
CVE-2021-32027 HIGH
PostgreSQL < 9.6.22, 10.0-10.16, 11.0-11.11, 12.0-12.6, 13.0-13.2 - Authenticated Arbitrary Memory Write
Jun 01, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-20306 MEDIUM
Red Hat Decision Manager - Unauthorized Ruleflow Group Name Disclosure
Jun 01, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-20267 HIGH
OpenStack Neutron < 16.3.3 - IPv6 Spoofing via Open vSwitch Firewall Rules
May 28, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-3514 MEDIUM
389 Directory Server - Authenticated Denial of Service via Crafted Sync Repl Query
May 28, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-20292 MEDIUM
Linux Kernel < 5.9 - Use-After-Free in Nouveau DRM Subsystem
May 28, 2021
CVSS 6.7
EPSS 0.00
CVE-2021-20239 LOW
Linux kernel <5.4.92 - Info Disclosure
May 28, 2021
CVSS 3.3
EPSS 0.00
CVE-2021-20236 CRITICAL
ZeroMQ < 4.3.3 - Stack Buffer Overflow via Topic Subscription Requests
May 28, 2021
CVSS 9.8
EPSS 0.00
CVE-2021-20201 MEDIUM
spice < 0.14.92 - Denial of Service via TLS Renegotiation
May 28, 2021
CVSS 5.3
EPSS 0.01
CVE-2021-20195 CRITICAL
Keycloak < 13.0.0 - Stored Cross-Site Scripting via User-Supplied Data Fields
May 28, 2021
CVSS 9.6
EPSS 0.00
CVE-2021-3509 MEDIUM
Red Hat Ceph Storage 4 - Info Disclosure
May 27, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-30501 MEDIUM
UPX 4.0.0 - Denial of Service via Crafted File in MemBuffer::alloc()
May 27, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-30500 HIGH
UPX 4.0.0 - Null Pointer Dereference in PackLinuxElf::canUnpack()
May 27, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-3527 MEDIUM
QEMU < 6.0.0 - Denial of Service via USB Redirector Device Stack Allocation
May 26, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-30471 MEDIUM
PoDoFo 0.9.7 - Stack Overflow via Uncontrolled Recursion in PdfNamesTree::AddToDictionary
May 26, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-30470 MEDIUM
PoDoFo 0.9.7 - Stack Overflow via Uncontrolled Recursion in PdfTokenizer
May 26, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-30469 MEDIUM
PoDoFo 0.9.7 - Use-After-Free in PdfVecObjects::Clear()
May 26, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-20297 MEDIUM
NetworkManager < 1.30.0 - Denial of Service via Profile Activation with match.path
May 26, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-20191 MEDIUM
Oracle Virtualization < 2.8.19 - Log Information Exposure
May 26, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-20178 MEDIUM
Ansible < 2.9.18 - Credential Disclosure in Bitbucket Pipeline Variable Module Logs
May 26, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-3559 MEDIUM
libvirt 6.10.0-6.12.0 - Denial of Service via virConnectListAllNodeDevices API
May 24, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-3536 MEDIUM
Wildfly <23.0.2.Final - XSS
May 20, 2021
CVSS 4.8
EPSS 0.00
CVE-2021-3426 MEDIUM
Python < 3.8.9, < 3.9.3, < 3.10.0a7 - Information Disclosure via pydoc Server
May 20, 2021
CVSS 5.7
EPSS 0.00
CVE-2021-3517 HIGH
libxml2 < 2.9.11 - Out-of-bounds Read in XML Entity Encoding
May 19, 2021
CVSS 8.6
EPSS 0.00