Redhat

Enterprise Linux

1730 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.02%
  • Veröffentlicht 30.01.2024 15:15:08
  • Zuletzt bearbeitet 25.11.2024 09:15:05

A flaw was found in the Linux kernel's memory deduplication mechanism. The max page sharing of Kernel Samepage Merging (KSM), added in Linux kernel version 4.4.0-96.119, can create a side channel. When the attacker and the victim share the same host ...

  • EPSS 0.03%
  • Veröffentlicht 29.01.2024 17:15:08
  • Zuletzt bearbeitet 21.11.2024 08:19:41

A flaw was found in Shim when an error happened while creating a new ESL variable. If Shim fails to create the new variable, it tries to print an error message to the user; however, the number of parameters used by the logging function doesn't match ...

  • EPSS 0.03%
  • Veröffentlicht 29.01.2024 17:15:08
  • Zuletzt bearbeitet 21.11.2024 08:19:42

An out-of-bounds read flaw was found in Shim due to the lack of proper boundary verification during the load of a PE binary. This flaw allows an attacker to load a crafted PE binary, triggering the issue and crashing Shim, resulting in a denial of se...

  • EPSS 0.02%
  • Veröffentlicht 29.01.2024 17:15:08
  • Zuletzt bearbeitet 21.11.2024 08:19:42

An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase.

  • EPSS 0.02%
  • Veröffentlicht 29.01.2024 17:15:08
  • Zuletzt bearbeitet 21.11.2024 08:19:42

A flaw was found in the MZ binary format in Shim. An out-of-bounds read may occur, leading to a crash or possible exposure of sensitive data during the system's boot phase.

  • EPSS 0.01%
  • Veröffentlicht 28.01.2024 12:15:52
  • Zuletzt bearbeitet 21.11.2024 08:47:29

A null pointer dereference flaw was found in the hugetlbfs_fill_super function in the Linux kernel hugetlbfs (HugeTLB pages) functionality. This issue may allow a local user to crash the system or potentially escalate their privileges on the system.

  • EPSS 0.72%
  • Veröffentlicht 25.01.2024 20:15:39
  • Zuletzt bearbeitet 27.02.2026 17:16:21

A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw allows a remote attacker to cause a heap-buffer overflow, leading to a denial of service.

Exploit
  • EPSS 1.31%
  • Veröffentlicht 25.01.2024 20:15:38
  • Zuletzt bearbeitet 27.02.2026 17:16:20

An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a size smaller than 379 ...

  • EPSS 4.18%
  • Veröffentlicht 25.01.2024 16:15:07
  • Zuletzt bearbeitet 21.11.2024 08:19:41

A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This flaw allows an attacker to craft a specific malicious HTTP request, leading to a completely controlle...

  • EPSS 0.02%
  • Veröffentlicht 22.01.2024 13:15:25
  • Zuletzt bearbeitet 21.11.2024 08:47:20

A use-after-free flaw was found in the __ext4_remount in fs/ext4/super.c in ext4 in the Linux kernel. This flaw allows a local user to cause an information leak problem while freeing the old quota file names before a potential failure, leading to a u...