Redhat

Enterprise Linux

1714 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Veröffentlicht 22.02.2013 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an IPOPT_CIPSO IP_OPTIO...

  • EPSS 0.22%
  • Veröffentlicht 22.02.2013 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host OS privileges by leveraging KVM guest OS privileges.

Exploit
  • EPSS 0.05%
  • Veröffentlicht 22.02.2013 00:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

A certain Red Hat build of the pam_ssh_agent_auth module on Red Hat Enterprise Linux (RHEL) 6 and Fedora Rawhide calls the glibc error function instead of the error function in the OpenSSH codebase, which allows local users to obtain sensitive inform...

Exploit
  • EPSS 1.39%
  • Veröffentlicht 31.01.2013 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack-based buffer overflow in libpixman, as used in Pale Moon before 15.4 and possibly other products, has unspecified impact and context-dependent attack vectors. NOTE: this issue might be resultant from an integer overflow in the fast_composite_s...

  • EPSS 0.77%
  • Veröffentlicht 18.01.2013 11:48:39
  • Zuletzt bearbeitet 11.04.2025 00:51:21

functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP ...

  • EPSS 0.57%
  • Veröffentlicht 17.01.2013 01:55:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows remote attackers to affect availability via unknown vectors related to Server Locking.

  • EPSS 0.45%
  • Veröffentlicht 17.10.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.63 and earlier, and 5.5.25 and earlier, allows remote authenticated users to affect availability via unknown vectors related to InnoDB.

  • EPSS 0.64%
  • Veröffentlicht 17.10.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server.

Exploit
  • EPSS 1.26%
  • Veröffentlicht 16.08.2012 10:38:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The dissect_pft function in epan/dissectors/packet-dcp-etsi.c in the DCP ETSI dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 allows remote attackers to cause a denial of service (divide-by-zero error and appli...

  • EPSS 0.57%
  • Veröffentlicht 16.08.2012 10:38:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

epan/dissectors/packet-afp.c in the AFP dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 allows remote attackers to cause a denial of service (loop and CPU consumption) via a large number of ACL entries.