Redhat

Openshift Container Platform

279 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 15.03.2026 00:19:07
  • Zuletzt bearbeitet 20.03.2026 18:24:05

A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in the bfd linker, allows an attacker to gain access to sensitive information. By convincing a user to process a specially crafted XCO...

  • EPSS 0.01%
  • Veröffentlicht 15.03.2026 00:19:02
  • Zuletzt bearbeitet 20.03.2026 18:23:46

A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker component. An attacker could exploit this by convincing a user to process a specially crafted malicious X...

  • EPSS 0.01%
  • Veröffentlicht 04.03.2026 15:25:53
  • Zuletzt bearbeitet 09.03.2026 17:40:20

A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows the client to a...

  • EPSS 0.02%
  • Veröffentlicht 16.12.2025 12:14:47
  • Zuletzt bearbeitet 27.02.2026 04:16:00

A flaw was found in ose-openshift-apiserver. This vulnerability allows internal network enumeration, service discovery, limited information disclosure, and potential denial-of-service (DoS) through Server-Side Request Forgery (SSRF) due to missing IP...

Medienbericht Exploit
  • EPSS 0.01%
  • Veröffentlicht 26.11.2025 14:44:22
  • Zuletzt bearbeitet 19.03.2026 06:16:24

A heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer size in the g_escape_uri_string() function. If the string to escape contains a very large number of unacceptable characters (which would need escaping),...

  • EPSS 0.04%
  • Veröffentlicht 28.07.2025 18:16:07
  • Zuletzt bearbeitet 07.11.2025 22:15:39

A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a co...

  • EPSS 0.01%
  • Veröffentlicht 14.07.2025 13:35:21
  • Zuletzt bearbeitet 11.08.2025 19:20:21

A flaw was found in polkit. When processing an XML policy with 32 or more nested elements in depth, an out-of-bounds write can be triggered. This issue can lead to a crash or other unexpected behavior, and arbitrary code execution is not discarded. T...

  • EPSS 0.11%
  • Veröffentlicht 10.07.2025 14:05:41
  • Zuletzt bearbeitet 21.01.2026 14:16:06

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt m...

  • EPSS 0.05%
  • Veröffentlicht 10.07.2025 09:41:46
  • Zuletzt bearbeitet 01.12.2025 22:15:48

A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing logic within the certtool utility. When it reads certain settings from a template file, it allows an attacker to cause an out-of-bounds (OOB) NULL point...

  • EPSS 0.1%
  • Veröffentlicht 10.07.2025 08:05:26
  • Zuletzt bearbeitet 01.12.2025 22:15:48

A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw allows a malicious user to create a certificate cont...