Redhat

Enterprise Linux

1709 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Published 02.08.2019 13:15:12
  • Last modified 21.11.2024 04:18:33

The virConnectGetDomainCapabilities() libvirt API, versions 4.x.x before 4.10.1 and 5.x.x before 5.4.1, accepts an "emulatorbin" argument to specify the program providing emulation for a domain. Since v1.2.19, libvirt will execute that program to pro...

  • EPSS 0.06%
  • Published 02.08.2019 13:15:12
  • Last modified 21.11.2024 04:18:33

The virConnectBaselineHypervisorCPU() and virConnectCompareHypervisorCPU() libvirt APIs, 4.x.x before 4.10.1 and 5.x.x before 5.4.1, accept an "emulator" argument to specify the program providing emulation for a domain. Since v1.2.19, libvirt will ex...

Exploit
  • EPSS 1.97%
  • Published 01.08.2019 17:15:13
  • Last modified 21.11.2024 04:26:51

An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tilingPatternFill at SplashOutputDev.cc.

  • EPSS 0.23%
  • Published 01.08.2019 14:15:13
  • Last modified 21.11.2024 04:42:48

It was discovered evolution-ews before 3.31.3 does not check the validity of SSL certificates. An attacker could abuse this flaw to get confidential information by tricking the user into connecting to a fake server without the user noticing the diffe...

  • EPSS 0.07%
  • Published 30.07.2019 23:15:12
  • Last modified 21.11.2024 04:18:32

It was discovered that libvirtd before versions 4.10.1 and 5.4.1 would permit read-only clients to use the virDomainSaveImageGetXMLDesc() API, specifying an arbitrary path which would be accessed with the permissions of the libvirtd process. An attac...

  • EPSS 0.49%
  • Published 30.07.2019 23:15:11
  • Last modified 21.11.2024 04:18:31

A flaw was discovered in fence-agents, prior to version 4.3.4, where using non-ASCII characters in a guest VM's comment or other fields would cause fence_rhevm to exit with an exception. In cluster environments, this could lead to preventing automate...

  • EPSS 1.53%
  • Published 30.07.2019 17:15:12
  • Last modified 21.11.2024 03:53:29

A flaw was found in the Linux kernel's NFS implementation, all versions 3.x and all versions 4.x up to 4.20. An attacker, who is able to mount an exported NFS filesystem, is able to trigger a null pointer dereference by using an invalid NFS sequence....

  • EPSS 0.45%
  • Published 23.07.2019 23:15:47
  • Last modified 21.11.2024 04:41:44

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 8.0.16 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols...

  • EPSS 0.41%
  • Published 23.07.2019 23:15:44
  • Last modified 21.11.2024 04:41:38

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 8.0.16 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multipl...

  • EPSS 0.97%
  • Published 23.07.2019 23:15:44
  • Last modified 21.11.2024 04:41:39

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 8.0.16 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple...