redhat

5,618 tracked vulnerabilities.

CVE-2020-14351 HIGH
Linux Kernel < 5.8.17 - Use-After-Free in Perf Subsystem
Dec 03, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-14339 HIGH
libvirt 6.2.0-6.6.9 - Privilege Escalation via /dev/mapper/control File Descriptor Leak
Dec 03, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-14318 MEDIUM
Samba 3.6.0-4.11.14 - Authenticated Improper Privilege Management
Dec 03, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-14369 MEDIUM
Red Hat CloudForms < 5.11 - Cross-Site Request Forgery via Crafted Flash File
Dec 02, 2020
CVSS 6.3
EPSS 0.00
CVE-2020-27816 MEDIUM
Kibana < 4.7 - URL Redirection via Namespace Validation Bypass
Dec 02, 2020
CVSS 6.1
EPSS 0.00
CVE-2020-25656 MEDIUM
Linux Kernel < 5.10 - Use-After-Free in Console Subsystem via KDGKBSENT and KDSKBSENT ioctls
Dec 02, 2020
CVSS 4.1
EPSS 0.00
CVE-2020-14383 MEDIUM
Samba 4.0.0-4.11.14 - Authenticated Denial of Service via DNS RPC Server
Dec 02, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-25708 HIGH
libvncserver 0.9.12 - Denial of Service via Divide By Zero
Nov 27, 2020
CVSS 7.5
EPSS 0.01
CVE-2020-25640 MEDIUM
WildFly < 21.0.0 - Sensitive Information Disclosure in Resource Adapter Logs
Nov 24, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-10763 MEDIUM
Heketi < 10.1.0 - Sensitive Information Disclosure in Log Files
Nov 24, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-10762 MEDIUM
gluster-block <0.5.1 - Info Disclosure
Nov 24, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-25688 LOW
rhacm <2.0.5-2.1.0 - Info Disclosure
Nov 23, 2020
CVSS 3.5
EPSS 0.00
CVE-2020-25660 HIGH
Cephx <15.2.6,14.2.14 - Privilege Escalation
Nov 23, 2020
CVSS 8.8
EPSS 0.00
CVE-2020-25705 HIGH
Linux Kernel < 5.10.0 - UDP Port Scan via ICMP Packet Source Port Prediction
Nov 17, 2020
CVSS 7.4
EPSS 0.01
CVE-2020-14389 HIGH
Keycloak <12.0.0 - Privilege Escalation
Nov 17, 2020
CVSS 8.1
EPSS 0.00
CVE-2020-10776 MEDIUM
Keycloak < 12.0.0 - Cross-Site Scripting via Unsafe Redirect URI Schemes
Nov 17, 2020
CVSS 4.8
EPSS 0.00
CVE-2020-25658 HIGH
python-rsa 2.1-4.6 - Bleichenbacher Timing Attack via RSA Decryption API
Nov 12, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-14366 MEDIUM
Keycloak < 12.0.0 - Path Traversal via URL-Encoded Path Segments
Nov 09, 2020
CVSS 6.8
EPSS 0.00
CVE-2020-25655 MEDIUM
Red Hat Advanced Cluster Management for Kubernetes - Incorrect Authorization in ManagedClusterView API
Nov 09, 2020
CVSS 5.7
EPSS 0.00
CVE-2020-25662 MEDIUM
Red Hat Enterprise Linux - Information Disclosure via Bluetooth AMP Packet Handling
Nov 05, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-25661 HIGH
Red Hat Enterprise Linux - Remote Code Execution or Denial of Service via Crafted L2CAP Packet
Nov 05, 2020
CVSS 7.5
EPSS 0.02
CVE-2020-25689 MEDIUM
WildFly < 21.0.0 - Denial of Service via Host-Controller Reconnection Loop
Nov 02, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-3864 HIGH
iCloud for Windows <7.17 - Info Disclosure
Oct 27, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-10721 HIGH
fabric8-maven-plugin >=4.0.0 - Code Injection
Oct 22, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-25648 HIGH
Network Security Services < 3.58 - Denial of Service via TLS 1.3 CCS Message Flood
Oct 20, 2020
CVSS 7.5
EPSS 0.00