Redhat

Enterprise Linux

1714 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.72%
  • Veröffentlicht 03.04.2013 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The default configuration for IPA servers in Red Hat Enterprise Linux 6, when revoking a certificate from an Identity Management replica, does not properly update another Identity Management replica, which causes inconsistent Certificate Revocation L...

Exploit
  • EPSS 20.76%
  • Veröffentlicht 28.03.2013 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

MariaDB 5.5.x before 5.5.30, 5.3.x before 5.3.13, 5.2.x before 5.2.15, and 5.1.x before 5.1.68, and Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote attackers to cause a denial of service (crash) via a crafted...

  • EPSS 1.8%
  • Veröffentlicht 19.03.2013 22:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Active Record component in Ruby on Rails 2.3.x before 2.3.18, 3.1.x before 3.1.12, and 3.2.x before 3.2.13 processes certain queries by converting hash keys to symbols, which allows remote attackers to cause a denial of service via crafted input ...

  • EPSS 0.54%
  • Veröffentlicht 19.03.2013 22:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The sanitize_css method in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Action Pack component in Ruby on Rails before 2.3.18, 3.0.x and 3.1.x before 3.1.12, and 3.2.x before 3.2.13 does not properly handle \n (newline) character...

  • EPSS 0.63%
  • Veröffentlicht 19.03.2013 22:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The sanitize helper in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Action Pack component in Ruby on Rails before 2.3.18, 3.0.x and 3.1.x before 3.1.12, and 3.2.x before 3.2.13 does not properly handle encoded : (colon) characte...

  • EPSS 0.08%
  • Veröffentlicht 15.03.2013 20:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability.

  • EPSS 0.06%
  • Veröffentlicht 15.03.2013 20:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The copy_to_user_auth function in net/xfrm/xfrm_user.c in the Linux kernel before 3.6 uses an incorrect C library function for copying a string, which allows local users to obtain sensitive information from kernel heap memory by leveraging the CAP_NE...

  • EPSS 0.09%
  • Veröffentlicht 15.03.2013 20:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain circumstances, which allows local users to obtain sensitive information from kernel stack memory via a crafted application that le...

  • EPSS 0.08%
  • Veröffentlicht 15.03.2013 20:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application that targets the (1) L2CAP or (2)...

  • EPSS 0.08%
  • Veröffentlicht 15.03.2013 20:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel memory via a crafted application.