redhat

5,618 tracked vulnerabilities.

CVE-2020-14362 HIGH
X.Org Server < 1.20.9 - Integer Underflow to Heap-Buffer Overflow
Sep 15, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-14361 HIGH
X.Org Server < 1.20.9 - Integer Underflow to Heap-Buffer Overflow
Sep 15, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-14346 HIGH
x.org X Server < 1.20.9 - Integer Underflow in X Input Extension Protocol Decoding
Sep 15, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-14331 MEDIUM
Linux Kernel < 5.7.19 - Out-of-bounds Write via VT_RESIZE ioctl
Sep 15, 2020
CVSS 6.6
EPSS 0.00
CVE-2020-10759 MEDIUM
Red Hat Enterprise Linux - PGP Signature Verification Bypass in fwupd
Sep 15, 2020
CVSS 6.0
EPSS 0.00
CVE-2020-0570 HIGH
Qt < 5.14.0, 5.12.7, 5.9.10 - Untrusted Search Path
Sep 14, 2020
CVSS 7.3
EPSS 0.00
CVE-2020-14332 MEDIUM
Ansible Engine 2.8.0-2.8.13 - Sensitive Information Exposure in Module Args via Check Mode
Sep 11, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-14330 MEDIUM
Ansible Engine < 2.9.12 and Ansible < 2.10.0 - Sensitive Information Exposure in URI Module Logs
Sep 11, 2020
CVSS 5.0
EPSS 0.00
CVE-2020-1045 HIGH
Microsoft ASP.NET Core - Auth Bypass
Sep 11, 2020
CVSS 7.5
EPSS 0.20
CVE-2020-1749 HIGH
Linux Kernel - Cleartext Transmission of Sensitive Information in IPsec VXLAN and GENEVE Tunnels over IPv6
Sep 09, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-14384 HIGH
JBossWeb < 7.5.31.Final-redhat-3 - Denial of Service via Invalid WebSocket Payload Length
Sep 09, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-14373 MEDIUM
Ghostscript - Use-After-Free in igc_reloc_struct_ptr
Sep 03, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-14364 MEDIUM
QEMU < 5.2.0 - Out-of-bounds Read/Write in USB Emulator
Aug 31, 2020
CVSS 5.0
EPSS 0.13
CVE-2020-14352 HIGH
librepo < 1.12.1 - Path Traversal via Remote Repository Metadata
Aug 30, 2020
CVSS 8.0
EPSS 0.04
CVE-2020-10775 MEDIUM
ovirt-engine <4.4 - Open Redirect
Aug 24, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-14356 HIGH
Linux Kernel < 5.7.10 - Null Pointer Dereference in cgroupv2 Subsystem
Aug 19, 2020
CVSS 7.8
EPSS 0.01
CVE-2020-14324 CRITICAL
Red Hat CloudForms < 5.11.7.0 - Authenticated OS Command Injection via Infrastructure Migration Solution
Aug 11, 2020
CVSS 9.1
EPSS 0.02
CVE-2020-14313 MEDIUM
Red Hat Quay < 3.3.1 - Information Disclosure via Build Trigger
Aug 11, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-14296 HIGH
Red Hat CloudForms 4.7 and 5 - Server-Side Request Forgery via Ansible Tower Provider
Aug 11, 2020
CVSS 7.1
EPSS 0.00
CVE-2020-10780 MEDIUM
Red Hat CloudForms 4.7-5 - CSV Injection
Aug 11, 2020
CVSS 6.3
EPSS 0.00
CVE-2020-14325 CRITICAL
Red Hat CloudForms <5.11.7.0 - Privilege Escalation
Aug 11, 2020
CVSS 9.1
EPSS 0.00
CVE-2020-10783 HIGH
Red Hat CloudForms <5 - Privilege Escalation
Aug 11, 2020
CVSS 8.3
EPSS 0.00
CVE-2020-10779 MEDIUM
Red Hat CloudForms 4.7 and 5 - Authorization Bypass via Insecure Direct Object Reference
Aug 11, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-10778 MEDIUM
Red Hat CloudForms <5 - Info Disclosure
Aug 11, 2020
CVSS 6.0
EPSS 0.00
CVE-2020-10777 MEDIUM
Red Hat CloudForms 4.7 and 5 - Stored Cross-Site Scripting in Report Menu
Aug 11, 2020
CVSS 5.4
EPSS 0.00