redhat
5,618 tracked vulnerabilities.
CVE-2018-18340
HIGH
Google Chrome < 71.0.3578.80 - Use-After-Free in MediaRecorder
Dec 11, 2018
CVSS 8.8
EPSS 0.02
CVE-2018-18339
HIGH
Chrome < 71.0.3578.80 - Use-After-Free in WebAudio
Dec 11, 2018
CVSS 8.8
EPSS 0.01
CVE-2018-18338
HIGH
Google Chrome < 71.0.3578.80 - Out-of-bounds Write via SkImage in Canvas
Dec 11, 2018
CVSS 8.8
EPSS 0.02
CVE-2018-18337
HIGH
Google Chrome < 71.0.3578.80 - Use-After-Free in Blink Stylesheet Handling
Dec 11, 2018
CVSS 8.8
EPSS 0.03
CVE-2018-18336
HIGH
Google Chrome < 71.0.3578.80 - Use-After-Free in PDFium via Crafted PDF File
Dec 11, 2018
CVSS 8.8
EPSS 0.02
CVE-2018-18335
HIGH
Google Chrome < 71.0.3578.80 - Heap Buffer Overflow in Skia via Crafted HTML Page
Dec 11, 2018
CVSS 8.8
EPSS 0.04
CVE-2018-17481
HIGH
Google Chrome <71.0.3578.98 - Heap Corruption
Dec 11, 2018
CVSS 8.8
EPSS 0.02
CVE-2018-17480
HIGH
KEV
Google Chrome <71.0.3578.80 - Code Injection
Dec 11, 2018
CVSS 8.8
EPSS 0.30
CVE-2018-1000866
HIGH
Pipeline: Groovy Plugin <2.59 - Code Injection
Dec 10, 2018
CVSS 8.8
EPSS 0.01
CVE-2018-1000865
HIGH
Jenkins Script Security Plugin < 1.47 - Sandbox Bypass via SandboxTransformer
Dec 10, 2018
CVSS 8.8
EPSS 0.01
CVE-2018-1000864
MEDIUM
Jenkins < 2.153 and LTS < 2.138.3 - Denial of Service via Infinite Loop in CronTab.java
Dec 10, 2018
CVSS 6.5
EPSS 0.00
CVE-2018-1000863
HIGH
Jenkins <2.153 - Privilege Escalation
Dec 10, 2018
CVSS 8.2
EPSS 0.06
CVE-2018-1000862
MEDIUM
Jenkins < 2.138.4 - Information Exposure via DirectoryBrowserSupport
Dec 10, 2018
CVSS 4.3
EPSS 0.00
CVE-2018-1000861
CRITICAL
KEVNUCLEI
Jenkins < 2.138.3 and < 2.153 - Remote Code Execution via Stapler Framework URL Invocation
Dec 10, 2018
CVSS 9.8
EPSS 0.94
CVE-2018-5806
MEDIUM
LibRaw < 0.18.8 - NULL Pointer Dereference in leaf_hdr_load_raw()
Dec 07, 2018
CVSS 6.5
EPSS 0.01
CVE-2018-5805
HIGH
LibRaw < 0.18.8 - Stack-based Buffer Overflow in quicktake_100_load_raw Function
Dec 07, 2018
CVSS 8.8
EPSS 0.01
CVE-2018-5802
HIGH
LibRaw < 0.18.7 - Out-of-bounds Read in kodak_radc_load_raw Function
Dec 07, 2018
CVSS 8.8
EPSS 0.01
CVE-2018-5801
MEDIUM
LibRaw < 0.18.7 - NULL Pointer Dereference in unpack() Function
Dec 07, 2018
CVSS 6.5
EPSS 0.02
CVE-2018-5800
MEDIUM
LibRaw < 0.18.7 - Heap-Based Buffer Overflow via kodak_ycbcr_load_raw Off-by-One Error
Dec 07, 2018
CVSS 6.5
EPSS 0.01
CVE-2018-18314
CRITICAL
perl < 5.26.3 - Buffer Overflow via Crafted Regular Expression
Dec 07, 2018
CVSS 9.8
EPSS 0.05
CVE-2018-18313
CRITICAL
perl < 5.26.3 - Out-of-bounds Read via Crafted Regular Expression
Dec 07, 2018
CVSS 9.1
EPSS 0.04
CVE-2018-18311
CRITICAL
Perl < 5.26.3 and 5.28.x < 5.28.1 - Buffer Overflow via Crafted Regular Expression
Dec 07, 2018
CVSS 9.8
EPSS 0.13
CVE-2018-9568
HIGH
Android Kernel - Local Privilege Escalation via Type Confusion in sk_clone_lock
Dec 06, 2018
CVSS 7.8
EPSS 0.00
CVE-2018-18312
CRITICAL
Perl < 5.26.3 and 5.28.0 < 5.28.1 - Buffer Overflow via Crafted Regular Expression
Dec 05, 2018
CVSS 9.8
EPSS 0.11
CVE-2018-1002105
CRITICAL
Kubernetes < 1.10.11, < 1.11.5, < 1.12.3 - Server-Side Request Forgery via Proxy Error Handling
Dec 05, 2018
CVSS 9.8
EPSS 0.90
Products
enterprise_linux_desktop 1,928
enterprise_linux_server 1,891
enterprise_linux_workstation 1,845
enterprise_linux 1,780
enterprise_linux_server_aus 1,059
enterprise_linux_eus 780
enterprise_linux_server_tus 768
enterprise_linux_server_eus 622
openshift_container_platform 291
jboss_enterprise_application_platform 243
linux 229
satellite 222
openstack 210
enterprise_linux_hpc_node 146
openshift 146
software_collections 137
virtualization 128
enterprise_linux_for_ibm_z_systems 112
single_sign-on 108
enterprise_linux_for_power_little_endian 106
keycloak 98
enterprise_linux_for_power_little_endian_eus 93
enterprise_linux_for_ibm_z_systems_eus 87
enterprise_linux_workstation_supplementary 86
enterprise_linux_desktop_supplementary 84
enterprise_linux_server_supplementary 84
virtualization_host 84
enterprise_linux_server_supplementary_eus 83
enterprise_linux_hpc_node_eus 81
fedora_core 77
Quick Filters