redhat

5,618 tracked vulnerabilities.

CVE-2021-3445 HIGH
libdnf < 0.60.1 - Remote Code Execution via Altered RPM Package Header
May 19, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-3421 MEDIUM
rpm < 4.17.0-alpha - RPM Database Corruption via Package Signature Verification Bypass
May 19, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-3531 MEDIUM
Red Hat Ceph Storage RGW <14.2.21 - DoS
May 18, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-3518 HIGH
libxml2 < 2.9.11 - Use-After-Free
May 18, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-3524 MEDIUM
Red Hat Ceph Storage RadosGW <14.2.21 - HTTP Header Injection
May 17, 2021
CVSS 6.5
EPSS 0.01
CVE-2021-3537 MEDIUM
libxml2 < 2.9.11 - NULL Pointer Dereference via XML Mixed Content Parsing
May 14, 2021
CVSS 5.9
EPSS 0.00
CVE-2021-20221 MEDIUM
QEMU <= 4.2.0 - Out-of-bounds Read in ARM Generic Interrupt Controller Emulator
May 13, 2021
CVSS 6.0
EPSS 0.00
CVE-2021-3528 HIGH
noobaa-operator <5.7.0 - Privilege Escalation
May 13, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-20250 MEDIUM
JBoss EJB Client < 4.0.39 - Exposure of Sensitive Information via Privileged Actions
May 13, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-20202 HIGH
Keycloak < 13.0.0 - Insecure Temporary File Permissions
May 12, 2021
CVSS 7.3
EPSS 0.00
CVE-2021-3504 MEDIUM
hivex < 1.3.20 - Out-of-bounds Read in hivex_open Function
May 11, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-31918 HIGH
Red Hat OpenStack 16.1 - Exposure of Sensitive Information via Ansible Log File
May 06, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-31916 MEDIUM
Linux Kernel < 5.12 - Authenticated Out-of-bounds Write in Multi-device Driver
May 06, 2021
CVSS 6.7
EPSS 0.00
CVE-2021-3507 MEDIUM
QEMU <= 6.0.0 - Heap Buffer Overflow in Floppy Disk Emulator
May 06, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-3501 HIGH
Linux kernel <5.12 - Memory Corruption
May 06, 2021
CVSS 7.1
EPSS 0.00
CVE-2021-20254 MEDIUM
Samba >=3.6.0 <4.12.15 - Out-of-bounds Read in Group Identity Mapping
May 05, 2021
CVSS 6.8
EPSS 0.02
CVE-2021-20228 HIGH
Ansible Engine 2.9.18 - Exposure of Sensitive Information via Basic.py Module Sub-Option Feature
Apr 29, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-3472 HIGH
x.org x_server < 1.20.11 - Integer Underflow
Apr 26, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-20208 MEDIUM
cifs-utils < 6.13 - Unauthenticated Kerberos Credential Exposure via Container Mount
Apr 19, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-3505 MEDIUM
libtpms < 0.8.0 - Insufficient Entropy in RSA Key Generation
Apr 19, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-3498 HIGH
GStreamer < 1.18.4 - Heap Corruption via Malformed Matroska File Parsing
Apr 19, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-3497 HIGH
GStreamer < 1.18.4 - Use-After-Free in Matroska File Demuxing
Apr 19, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-20288 HIGH
Ceph < 14.2.20 - Authentication Bypass via Key Reuse
Apr 15, 2021
CVSS 7.2
EPSS 0.00
CVE-2021-3482 MEDIUM
exiv2 <= 0.27.4-RC1 - Heap-Based Buffer Overflow via JPG EXIF Data
Apr 08, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-3448 MEDIUM
dnsmasq < 2.85 - DNS Cache Poisoning via Fixed Port Query Forwarding
Apr 08, 2021
CVSS 4.0
EPSS 0.00