Redhat

Enterprise Linux Eus

787 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.45%
  • Veröffentlicht 08.08.2017 15:29:01
  • Zuletzt bearbeitet 13.05.2026 00:24:29

Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: 2D). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerabi...

  • EPSS 4.03%
  • Veröffentlicht 02.08.2017 19:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

qemu-nbd in QEMU (aka Quick Emulator) does not ignore SIGPIPE, which allows remote attackers to cause a denial of service (daemon crash) by disconnecting during a server-to-client reply attempt.

  • EPSS 13.25%
  • Veröffentlicht 27.07.2017 21:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

Apache HTTP Server, in all releases prior to 2.2.32 and 2.4.25, was liberal in the whitespace accepted from requests and sent in response lines and headers. Accepting these different behaviors represented a security concern when httpd participates in...

  • EPSS 20.23%
  • Veröffentlicht 20.06.2017 01:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, use of the ap_get_basic_auth_pw() by third-party modules outside of the authentication phase may lead to authentication requirements being bypassed.

  • EPSS 57.47%
  • Veröffentlicht 20.06.2017 01:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacke...

Exploit
  • EPSS 7.2%
  • Veröffentlicht 29.05.2017 16:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

servers/slapd/back-mdb/search.c in OpenLDAP through 2.4.44 is prone to a double free vulnerability. A user with access to search the directory can crash slapd by issuing a search including the Paged Results control with a page size of 0.

  • EPSS 4.79%
  • Veröffentlicht 23.05.2017 04:29:01
  • Zuletzt bearbeitet 08.10.2026 22:16:39

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

  • EPSS 7.55%
  • Veröffentlicht 23.05.2017 04:29:01
  • Zuletzt bearbeitet 08.10.2026 22:16:40

inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.

  • EPSS 5.2%
  • Veröffentlicht 23.05.2017 04:29:01
  • Zuletzt bearbeitet 14.07.2026 12:16:46

The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers.

  • EPSS 5.77%
  • Veröffentlicht 23.05.2017 04:29:01
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.