redhat
5,618 tracked vulnerabilities.
CVE-2020-14362
HIGH
X.Org Server < 1.20.9 - Integer Underflow to Heap-Buffer Overflow
Sep 15, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-14361
HIGH
X.Org Server < 1.20.9 - Integer Underflow to Heap-Buffer Overflow
Sep 15, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-14346
HIGH
x.org X Server < 1.20.9 - Integer Underflow in X Input Extension Protocol Decoding
Sep 15, 2020
CVSS 7.8
EPSS 0.00
CVE-2020-14331
MEDIUM
Linux Kernel < 5.7.19 - Out-of-bounds Write via VT_RESIZE ioctl
Sep 15, 2020
CVSS 6.6
EPSS 0.00
CVE-2020-10759
MEDIUM
Red Hat Enterprise Linux - PGP Signature Verification Bypass in fwupd
Sep 15, 2020
CVSS 6.0
EPSS 0.00
CVE-2020-0570
HIGH
Qt < 5.14.0, 5.12.7, 5.9.10 - Untrusted Search Path
Sep 14, 2020
CVSS 7.3
EPSS 0.00
CVE-2020-14332
MEDIUM
Ansible Engine 2.8.0-2.8.13 - Sensitive Information Exposure in Module Args via Check Mode
Sep 11, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-14330
MEDIUM
Ansible Engine < 2.9.12 and Ansible < 2.10.0 - Sensitive Information Exposure in URI Module Logs
Sep 11, 2020
CVSS 5.0
EPSS 0.00
CVE-2020-1045
HIGH
Microsoft ASP.NET Core - Auth Bypass
Sep 11, 2020
CVSS 7.5
EPSS 0.20
CVE-2020-1749
HIGH
Linux Kernel - Cleartext Transmission of Sensitive Information in IPsec VXLAN and GENEVE Tunnels over IPv6
Sep 09, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-14384
HIGH
JBossWeb < 7.5.31.Final-redhat-3 - Denial of Service via Invalid WebSocket Payload Length
Sep 09, 2020
CVSS 7.5
EPSS 0.00
CVE-2020-14373
MEDIUM
Ghostscript - Use-After-Free in igc_reloc_struct_ptr
Sep 03, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-14364
MEDIUM
QEMU < 5.2.0 - Out-of-bounds Read/Write in USB Emulator
Aug 31, 2020
CVSS 5.0
EPSS 0.13
CVE-2020-14352
HIGH
librepo < 1.12.1 - Path Traversal via Remote Repository Metadata
Aug 30, 2020
CVSS 8.0
EPSS 0.04
CVE-2020-10775
MEDIUM
ovirt-engine <4.4 - Open Redirect
Aug 24, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-14356
HIGH
Linux Kernel < 5.7.10 - Null Pointer Dereference in cgroupv2 Subsystem
Aug 19, 2020
CVSS 7.8
EPSS 0.01
CVE-2020-14324
CRITICAL
Red Hat CloudForms < 5.11.7.0 - Authenticated OS Command Injection via Infrastructure Migration Solution
Aug 11, 2020
CVSS 9.1
EPSS 0.02
CVE-2020-14313
MEDIUM
Red Hat Quay < 3.3.1 - Information Disclosure via Build Trigger
Aug 11, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-14296
HIGH
Red Hat CloudForms 4.7 and 5 - Server-Side Request Forgery via Ansible Tower Provider
Aug 11, 2020
CVSS 7.1
EPSS 0.00
CVE-2020-10780
MEDIUM
Red Hat CloudForms 4.7-5 - CSV Injection
Aug 11, 2020
CVSS 6.3
EPSS 0.00
CVE-2020-14325
CRITICAL
Red Hat CloudForms <5.11.7.0 - Privilege Escalation
Aug 11, 2020
CVSS 9.1
EPSS 0.00
CVE-2020-10783
HIGH
Red Hat CloudForms <5 - Privilege Escalation
Aug 11, 2020
CVSS 8.3
EPSS 0.00
CVE-2020-10779
MEDIUM
Red Hat CloudForms 4.7 and 5 - Authorization Bypass via Insecure Direct Object Reference
Aug 11, 2020
CVSS 6.5
EPSS 0.00
CVE-2020-10778
MEDIUM
Red Hat CloudForms <5 - Info Disclosure
Aug 11, 2020
CVSS 6.0
EPSS 0.00
CVE-2020-10777
MEDIUM
Red Hat CloudForms 4.7 and 5 - Stored Cross-Site Scripting in Report Menu
Aug 11, 2020
CVSS 5.4
EPSS 0.00
Products
enterprise_linux_desktop 1,928
enterprise_linux_server 1,891
enterprise_linux_workstation 1,845
enterprise_linux 1,780
enterprise_linux_server_aus 1,059
enterprise_linux_eus 780
enterprise_linux_server_tus 768
enterprise_linux_server_eus 622
openshift_container_platform 291
jboss_enterprise_application_platform 243
linux 229
satellite 222
openstack 210
enterprise_linux_hpc_node 146
openshift 146
software_collections 137
virtualization 128
enterprise_linux_for_ibm_z_systems 112
single_sign-on 108
enterprise_linux_for_power_little_endian 106
keycloak 98
enterprise_linux_for_power_little_endian_eus 93
enterprise_linux_for_ibm_z_systems_eus 87
enterprise_linux_workstation_supplementary 86
enterprise_linux_desktop_supplementary 84
enterprise_linux_server_supplementary 84
virtualization_host 84
enterprise_linux_server_supplementary_eus 83
enterprise_linux_hpc_node_eus 81
fedora_core 77
Quick Filters