Redhat

Openshift Container Platform

348 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Veröffentlicht 04.08.2026 18:37:21
  • Zuletzt bearbeitet 31.08.2026 19:17:10

A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer size before processing. A local attacker can exploit this via a crafted protocol v1 request to...

  • EPSS 0.09%
  • Veröffentlicht 04.08.2026 05:28:30
  • Zuletzt bearbeitet 31.08.2026 19:17:10

A flaw was found in SSSD. The sss_nss_protocol_fill_initgr() function in the NSS responder pre-allocates reply space for all group entries but does not shrink the packet when groups are skipped, causing uninitialized heap bytes to be transmitted to t...

  • EPSS 0.1%
  • Veröffentlicht 03.08.2026 15:34:36
  • Zuletzt bearbeitet 22.09.2026 22:17:11

A TOCTOU (Time-of-Check Time-of-Use) vulnerability in GNU tar's incremental dumpdir 'X' rename handling allows a local attacker with write access to a directory being backed up to influence the restore process if the attacker has access to the system...

  • EPSS 0.14%
  • Veröffentlicht 03.08.2026 14:51:41
  • Zuletzt bearbeitet 22.09.2026 22:17:11

A flaw was found in GNU tar. When extracting an archive with the --one-top-level option, hardlink targets are not confined to the designated top-level directory and may resolve relative to the extraction working directory. A crafted archive can creat...

  • EPSS 0.13%
  • Veröffentlicht 03.08.2026 10:16:33
  • Zuletzt bearbeitet 31.08.2026 19:17:10

A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS responder does not validate the addrlen field against the remaining packet body size. A local attacker can exploit this via a crafted GETHOSTBYADDR request to the NSS res...

  • EPSS 0.15%
  • Veröffentlicht 29.06.2026 18:44:24
  • Zuletzt bearbeitet 29.09.2026 01:16:45

A flaw was found in p11-kit. The RPC message attribute parsing functions p11_rpc_message_get_attribute() and p11_rpc_message_get_attribute_array_value() form a mutually-recursive call chain with no recursion depth limit when processing nested CKA_WRA...

  • EPSS 0.11%
  • Veröffentlicht 29.06.2026 08:06:09
  • Zuletzt bearbeitet 31.08.2026 18:17:13

A flaw was found in the libblkid library of util-linux. During nested partition probing, the BSD, Minix, Solaris x86, and UnixWare partition probers cache a raw pointer to a parent partition entry in a dynamically allocated array. When subsequent par...

Exploit
  • EPSS 0.29%
  • Veröffentlicht 23.06.2026 03:36:22
  • Zuletzt bearbeitet 07.10.2026 03:16:59

A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group Exchange (DH-GEX) client path. This occurs during FIPS (Federal Information Processing Standards) mode known-group validation when...

  • EPSS 0.4%
  • Veröffentlicht 22.06.2026 13:55:05
  • Zuletzt bearbeitet 31.08.2026 22:17:19

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing unsupported algorithm or digest types can cause dnsmasq to write past the end of an internal logg...

  • EPSS 0.29%
  • Veröffentlicht 22.06.2026 12:46:09
  • Zuletzt bearbeitet 09.09.2026 13:20:30

A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. WMCO establishes SSH connections to Windows worker nodes without verifying the remote server host key. An adjacent-network attacker who can inter...