redhat

5,618 tracked vulnerabilities.

CVE-2019-2481 MEDIUM
MySQL Server < 5.6.42, 5.7.24, 8.0.13 - Authenticated Denial of Service in Optimizer
Jan 16, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-2455 MEDIUM
Oracle MySQL Server < 5.6.42, 5.7.24, 8.0.13 - Authenticated Denial of Service in Parser
Jan 16, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-2449 LOW
Oracle JDK 8u192 - Unauthenticated Partial Denial of Service via Multiple Protocols
Jan 16, 2019
CVSS 3.1
EPSS 0.02
CVE-2019-2436 MEDIUM
MySQL Server < 8.0.13 - Authenticated Denial of Service and Data Manipulation via Replication
Jan 16, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-2434 MEDIUM
MySQL Server < 5.7.24 and 8.0 <= 8.0.13 - Authenticated Denial of Service via Parser
Jan 16, 2019
CVSS 6.5
EPSS 0.01
CVE-2019-2422 LOW
Oracle Java SE <11.0.1 - Info Disclosure
Jan 16, 2019
CVSS 3.1
EPSS 0.00
CVE-2019-2420 MEDIUM
MySQL Server < 5.7.24 and 8.0.13 - Authenticated Denial of Service in Optimizer
Jan 16, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-3811 MEDIUM
sssd < 2.1 - Unintended Home Directory Path Disclosure
Jan 15, 2019
CVSS 5.2
EPSS 0.00
CVE-2019-6133 MEDIUM
polkit 0.115 - Race Condition via Fork-Based Authorization Bypass
Jan 11, 2019
CVSS 6.7
EPSS 0.00
CVE-2019-0542 HIGH
xterm.js < 5.0.0 - Remote Code Execution via Special Character Mishandling
Jan 09, 2019
CVSS 8.8
EPSS 0.02
CVE-2018-10868 HIGH
redhat-certification 7 - XML External Entity Injection via XMLRPC Status Reply
May 26, 2021
CVSS 7.5
EPSS 0.01
CVE-2018-10867 CRITICAL
redhat-certification 7 - Info Disclosure
May 26, 2021
CVSS 9.1
EPSS 0.00
CVE-2018-10866 CRITICAL
redhat-certification 7 - Unauthenticated Arbitrary File Deletion via Configuration View
May 26, 2021
CVSS 9.1
EPSS 0.01
CVE-2018-10865 HIGH
Red Hat Certification 7 - Unauthenticated Missing Authorization via /configuration View
May 26, 2021
CVSS 7.5
EPSS 0.01
CVE-2018-10863 HIGH
redhat-certification 7 - Info Disclosure
May 26, 2021
CVSS 7.5
EPSS 0.00
CVE-2018-25014 CRITICAL
libwebp < 1.0.1 - Use of Uninitialized Resource in ReadSymbol()
May 21, 2021
CVSS 9.8
EPSS 0.00
CVE-2018-25013 CRITICAL
libwebp < 1.0.1 - Heap-Based Buffer Overflow in ShiftBytes()
May 21, 2021
CVSS 9.1
EPSS 0.01
CVE-2018-25012 CRITICAL
libwebp < 1.0.1 - Heap-Based Buffer Overflow in GetLE24()
May 21, 2021
CVSS 9.1
EPSS 0.01
CVE-2018-25011 CRITICAL
libwebp < 1.0.1 - Heap-Based Buffer Overflow in PutLE16
May 21, 2021
CVSS 9.8
EPSS 0.00
CVE-2018-25010 CRITICAL
libwebp < 1.0.1 - Heap-Based Buffer Overflow in ApplyFilter()
May 21, 2021
CVSS 9.1
EPSS 0.01
CVE-2018-25009 CRITICAL
libwebp < 1.0.1 - Heap-Based Buffer Overflow in GetLE16()
May 21, 2021
CVSS 9.1
EPSS 0.00
CVE-2018-16848 MEDIUM
OpenStack Mistral <= 7.0.3 - Denial of Service via Nested Anchors in Workflow YAML
Jun 15, 2020
CVSS 6.5
EPSS 0.00
CVE-2018-1311 HIGH
Apache Xerces-C++ 3.0.0-3.2.3 - Use-After-Free in External DTD Scanning
Dec 18, 2019
CVSS 8.1
EPSS 0.04
CVE-2018-10854 MEDIUM
Red Hat CloudForms Management Engine 5.8-5.9 - Stored Cross-Site Scripting in v2v Infrastructure Mapping Delete Feature
Nov 22, 2019
CVSS 5.4
EPSS 0.00
CVE-2018-12207 MEDIUM
Intel Core i3 Firmware - Authenticated Denial of Service via Page Table Update Invalidation
Nov 14, 2019
CVSS 6.5
EPSS 0.00