Redhat

Enterprise Linux Eus

778 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.28%
  • Published 18.07.2018 13:29:00
  • Last modified 21.11.2024 04:04:24

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Encryption). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Difficult to exploit vulnerability allows low ...

  • EPSS 0.92%
  • Published 10.07.2018 21:29:01
  • Last modified 21.11.2024 04:05:53

Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis.

Exploit
  • EPSS 0.15%
  • Published 06.07.2018 14:29:01
  • Last modified 21.11.2024 03:47:02

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a memb...

  • EPSS 0.03%
  • Published 13.06.2018 16:29:01
  • Last modified 21.11.2024 03:44:04

m_cat in slirp/mbuf.c in Qemu has a heap-based buffer overflow via incoming fragmented datagrams.

  • EPSS 0.88%
  • Published 11.06.2018 21:29:12
  • Last modified 21.11.2024 03:32:47

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

  • EPSS 12.61%
  • Published 11.06.2018 21:29:11
  • Last modified 21.11.2024 03:32:44

A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being passed within the library during checks and results in a potentially exploitable crash. Thi...

Exploit
  • EPSS 1.6%
  • Published 11.06.2018 21:29:11
  • Last modified 21.11.2024 03:32:45

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbir...

  • EPSS 2.14%
  • Published 11.06.2018 21:29:02
  • Last modified 21.11.2024 03:01:58

HTML tags received from the Pocket server will be processed without sanitization and any JavaScript code executed will be run in the "about:pocket-saved" (unprivileged) page, giving it access to Pocket's messaging API through HTML injection. This vul...

Exploit
  • EPSS 44.99%
  • Published 22.05.2018 12:29:00
  • Last modified 21.11.2024 04:05:48

Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access vi...

Exploit
  • EPSS 1.36%
  • Published 26.04.2018 05:29:00
  • Last modified 21.11.2024 03:41:19

mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote attackers to cause a denial of service (heap-based buffer overflow or over-read) or possibly have unspecified other impact via a ...