redhat

5,618 tracked vulnerabilities.

CVE-2024-8883 MEDIUM NUCLEI
Red Hat Build of Keycloak - Open Redirect via Misconfigured Valid Redirect URI
Sep 19, 2024
CVSS 6.1
EPSS 0.07
CVE-2024-8354 MEDIUM
QEMU - Denial of Service via USB Endpoint Assertion Failure
Sep 19, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-8443 LOW
OpenSC - Heap-based Buffer Overflow in OpenPGP Driver via Malicious APDU Responses
Sep 10, 2024
CVSS 2.9
EPSS 0.00
CVE-2024-7341 HIGH
Keycloak - Session Fixation via SAML Adapter
Sep 09, 2024
CVSS 7.1
EPSS 0.02
CVE-2024-7318 MEDIUM
Red Hat build of Keycloak 22.0-24.0.6 - Use of Expired OTP Codes via FreeOTP Token Period
Sep 09, 2024
CVSS 4.8
EPSS 0.01
CVE-2024-7260 MEDIUM
Keycloak < 24.0.7 - Open Redirect via Referrer URI Parameter
Sep 09, 2024
CVSS 6.1
EPSS 0.00
CVE-2024-7923 CRITICAL
Red Hat Satellite 6.13-6.15 - Authentication Bypass via Malformed HTTP Header
Sep 04, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-7012 CRITICAL
Red Hat Satellite 6.13-6.15 - Authentication Bypass via Malformed HTTP Header
Sep 04, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-45620 LOW
Redhat Enterprise Linux < 0.26.0 - Buffer Overflow
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-45619 MEDIUM
Redhat Enterprise Linux < 0.26.0 - Buffer Overflow
Sep 03, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-45618 LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-45617 LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-45616 LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-45615 LOW
Redhat Enterprise Linux < 0.26.0 - Use of Uninitialized Resource
Sep 03, 2024
CVSS 3.9
EPSS 0.00
CVE-2024-4629 MEDIUM
Keycloak < 24.0.3 - Brute Force Protection Bypass via Timing Attack
Sep 03, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-8285 MEDIUM
Kroxylicious Kafka TLS - Hostname Verification Bypass
Aug 30, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-8235 MEDIUM
libvirt 10.4.0-10.6.9 - Denial of Service via NULL Pointer Dereference in Interface List Fetching
Aug 30, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-8007 HIGH
Red Hat OpenStack Platform - Improper Certificate Validation in Container Image Deployment
Aug 21, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-7885 HIGH
Undertow < 2.2.36.Final - Information Leak via ProxyProtocolReadListener StringBuilder Reuse
Aug 21, 2024
CVSS 7.5
EPSS 0.11
CVE-2024-44070 HIGH
FRRouting < 10.1 - Denial of Service via BGP Attribute TLV Length Mismatch
Aug 19, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-7557 HIGH
Red Hat OpenShift AI - Authentication Bypass and Privilege Escalation via ServiceAccount Token Exposure
Aug 12, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-7006 HIGH
libtiff 3.5.1-4.5.9 - Denial of Service via Null Pointer Dereference in tif_dirinfo.c
Aug 12, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-7319 MEDIUM
openstack-heat - Exposure of Sensitive Information via Stack Abandon Command
Aug 02, 2024
CVSS 5.0
EPSS 0.00
CVE-2024-3056 HIGH
Podman < 5.2.0 - Denial of Service via IPC Resource Exhaustion
Aug 02, 2024
CVSS 7.7
EPSS 0.00
CVE-2024-7079 MEDIUM
Openshift Container Platform - Unauthenticated Helm Chart Verification Endpoint Access
Jul 24, 2024
CVSS 6.5
EPSS 0.00