redhat
5,618 tracked vulnerabilities.
CVE-2024-8883
MEDIUM
NUCLEI
Red Hat Build of Keycloak - Open Redirect via Misconfigured Valid Redirect URI
Sep 19, 2024
CVSS 6.1
EPSS 0.07
CVE-2024-8354
MEDIUM
QEMU - Denial of Service via USB Endpoint Assertion Failure
Sep 19, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-8443
LOW
OpenSC - Heap-based Buffer Overflow in OpenPGP Driver via Malicious APDU Responses
Sep 10, 2024
CVSS 2.9
EPSS 0.00
CVE-2024-7341
HIGH
Keycloak - Session Fixation via SAML Adapter
Sep 09, 2024
CVSS 7.1
EPSS 0.02
CVE-2024-7318
MEDIUM
Red Hat build of Keycloak 22.0-24.0.6 - Use of Expired OTP Codes via FreeOTP Token Period
Sep 09, 2024
CVSS 4.8
EPSS 0.01
CVE-2024-7260
MEDIUM
Keycloak < 24.0.7 - Open Redirect via Referrer URI Parameter
Sep 09, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-7923
CRITICAL
Red Hat Satellite 6.13-6.15 - Authentication Bypass via Malformed HTTP Header
Sep 04, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-7012
CRITICAL
Red Hat Satellite 6.13-6.15 - Authentication Bypass via Malformed HTTP Header
Sep 04, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-45620
LOW
Redhat Enterprise Linux < 0.26.0 - Buffer Overflow
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-45619
MEDIUM
Redhat Enterprise Linux < 0.26.0 - Buffer Overflow
Sep 03, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-45618
LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-45617
LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-45616
LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-45615
LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-4629
MEDIUM
Keycloak < 24.0.3 - Brute Force Protection Bypass via Timing Attack
Sep 03, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-8285
MEDIUM
Kroxylicious Kafka TLS - Hostname Verification Bypass
Aug 30, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-8235
MEDIUM
libvirt 10.4.0-10.6.9 - Denial of Service via NULL Pointer Dereference in Interface List Fetching
Aug 30, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-8007
HIGH
Red Hat OpenStack Platform - Improper Certificate Validation in Container Image Deployment
Aug 21, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-7885
HIGH
Undertow < 2.2.36.Final - Information Leak via ProxyProtocolReadListener StringBuilder Reuse
Aug 21, 2024
CVSS 7.5
EPSS 0.11
CVE-2024-44070
HIGH
FRRouting < 10.1 - Denial of Service via BGP Attribute TLV Length Mismatch
Aug 19, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-7557
HIGH
Red Hat OpenShift AI - Authentication Bypass and Privilege Escalation via ServiceAccount Token Exposure
Aug 12, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-7006
HIGH
libtiff 3.5.1-4.5.9 - Denial of Service via Null Pointer Dereference in tif_dirinfo.c
Aug 12, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-7319
MEDIUM
openstack-heat - Exposure of Sensitive Information via Stack Abandon Command
Aug 02, 2024
CVSS 5.0
EPSS 0.00
CVE-2024-3056
HIGH
Podman < 5.2.0 - Denial of Service via IPC Resource Exhaustion
Aug 02, 2024
CVSS 7.7
EPSS 0.00
CVE-2024-7079
MEDIUM
Openshift Container Platform - Unauthenticated Helm Chart Verification Endpoint Access
Jul 24, 2024
CVSS 6.5
EPSS 0.00
Products
enterprise_linux_desktop 1,928
enterprise_linux_server 1,891
enterprise_linux_workstation 1,845
enterprise_linux 1,780
enterprise_linux_server_aus 1,059
enterprise_linux_eus 780
enterprise_linux_server_tus 768
enterprise_linux_server_eus 622
openshift_container_platform 291
jboss_enterprise_application_platform 243
linux 229
satellite 222
openstack 210
enterprise_linux_hpc_node 146
openshift 146
software_collections 137
virtualization 128
enterprise_linux_for_ibm_z_systems 112
single_sign-on 108
enterprise_linux_for_power_little_endian 106
keycloak 98
enterprise_linux_for_power_little_endian_eus 93
enterprise_linux_for_ibm_z_systems_eus 87
enterprise_linux_workstation_supplementary 86
enterprise_linux_desktop_supplementary 84
enterprise_linux_server_supplementary 84
virtualization_host 84
enterprise_linux_server_supplementary_eus 83
enterprise_linux_hpc_node_eus 81
fedora_core 77
Quick Filters