Redhat

Enterprise Linux

1780 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.36%
  • Veröffentlicht 02.08.2024 21:16:30
  • Zuletzt bearbeitet 27.12.2024 16:15:24

A flaw was found in Podman. This issue may allow an attacker to create a specially crafted container that, when configured to share the same IPC with at least one other container, can create a large number of IPC resources in /dev/shm. The malicious ...

  • EPSS 1.06%
  • Veröffentlicht 09.07.2024 17:15:48
  • Zuletzt bearbeitet 21.11.2024 09:49:15

A flaw was found in the 389 Directory Server. This flaw allows an unauthenticated user to cause a systematic server crash while sending a specific extended search request, leading to a denial of service.

  • EPSS 0.09%
  • Veröffentlicht 05.07.2024 14:15:03
  • Zuletzt bearbeitet 21.11.2024 09:49:46

A flaw was found in the virtio-net device in QEMU. When enabling the RSS feature on the virtio-net network card, the indirections_table data within RSS becomes controllable. Setting excessively large values may cause an index out-of-bounds issue, pot...

Medienbericht Exploit
  • EPSS 48.42%
  • Veröffentlicht 01.07.2024 13:15:06
  • Zuletzt bearbeitet 12.05.2026 12:17:20

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to aut...

  • EPSS 0.13%
  • Veröffentlicht 21.06.2024 14:15:14
  • Zuletzt bearbeitet 21.11.2024 09:49:15

A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter with pdfinfo utility. By using certain malformed input files, an attacker could cause the utility to crash, leading to a denial of service.

  • EPSS 0.12%
  • Veröffentlicht 18.06.2024 10:15:11
  • Zuletzt bearbeitet 15.04.2026 00:35:42

A denial of service vulnerability was found in the 389-ds-base LDAP server. This issue may allow an authenticated user to cause a server denial of service while attempting to log in with a user with a malformed hash in their password.

  • EPSS 0.08%
  • Veröffentlicht 12.06.2024 09:15:23
  • Zuletzt bearbeitet 21.11.2024 09:48:16

A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If Nano is killed while editing, a file it saves to an emergency file with the permissions of the running user provides a window of ...

  • EPSS 21.23%
  • Veröffentlicht 12.06.2024 09:15:18
  • Zuletzt bearbeitet 21.11.2024 09:29:05

A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it from brute force attacks. However, the ticket it contains is encrypted us...

  • EPSS 1.03%
  • Veröffentlicht 06.06.2024 06:15:09
  • Zuletzt bearbeitet 02.10.2025 14:15:42

A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), it may allow an invalid HMAC to be accepted by the Booth server.

Exploit
  • EPSS 0.03%
  • Veröffentlicht 18.04.2024 19:15:08
  • Zuletzt bearbeitet 03.11.2025 21:15:59

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.