Redhat

Enterprise Linux

1714 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.63%
  • Veröffentlicht 12.02.2009 16:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The netsnmp_udp_fmtaddr function (snmplib/snmpUDPDomain.c) in net-snmp 5.0.9 through 5.4.2.1, when using TCP wrappers for client authorization, does not properly parse hosts.allow rules, which allows remote attackers to bypass intended access restric...

  • EPSS 0.56%
  • Veröffentlicht 27.11.2008 00:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

A certain Red Hat patch for tog-pegasus in OpenGroup Pegasus 2.7.0 does not properly configure the PAM tty name, which allows remote authenticated users to bypass intended access restrictions and send requests to OpenPegasus WBEM services.

  • EPSS 1.58%
  • Veröffentlicht 27.11.2008 00:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

tog-pegasus in OpenGroup Pegasus 2.7.0 on Red Hat Enterprise Linux (RHEL) 5, Fedora 9, and Fedora 10 does not log failed authentication attempts to the OpenPegasus CIM server, which makes it easier for remote attackers to avoid detection of password ...

  • EPSS 0.05%
  • Veröffentlicht 03.10.2008 15:07:10
  • Zuletzt bearbeitet 09.04.2025 00:30:58

pam_krb5 2.2.14 in Red Hat Enterprise Linux (RHEL) 5 and earlier, when the existing_ticket option is enabled, uses incorrect privileges when reading a Kerberos credential cache, which allows local users to gain privileges by setting the KRB5CCNAME en...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 29.09.2008 17:17:29
  • Zuletzt bearbeitet 09.04.2025 00:30:58

fs/splice.c in the splice subsystem in the Linux kernel before 2.6.22.2 does not properly handle a failure of the add_to_page_cache_lru function, and subsequently attempts to unlock a page that was not locked, which allows local users to cause a deni...

  • EPSS 0.3%
  • Veröffentlicht 18.08.2008 17:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

yum-rhn-plugin in Red Hat Enterprise Linux (RHEL) 5 does not verify the SSL certificate for a file download from a Red Hat Network (RHN) server, which makes it easier for remote man-in-the-middle attackers to cause a denial of service (loss of update...

  • EPSS 0.71%
  • Veröffentlicht 30.06.2008 21:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Race condition in the ptrace and utrace support in the Linux kernel 2.6.9 through 2.6.25, as used in Red Hat Enterprise Linux (RHEL) 4, allows local users to cause a denial of service (oops) via a long series of PTRACE_ATTACH ptrace calls to another ...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 30.06.2008 21:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Double free vulnerability in the utrace support in the Linux kernel, probably 2.6.18, in Red Hat Enterprise Linux (RHEL) 5 and Fedora Core 6 (FC6) allows local users to cause a denial of service (oops), as demonstrated by a crash when running the GNU...

  • EPSS 0.12%
  • Veröffentlicht 25.06.2008 12:36:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Untrusted search path vulnerability in a certain Red Hat build script for Standards Based Linux Instrumentation for Manageability (sblim) libraries before 1-13a.el4_6.1 in Red Hat Enterprise Linux (RHEL) 4, and before 1-31.el5_2.1 in RHEL 5, allows l...

  • EPSS 2.64%
  • Veröffentlicht 02.06.2008 21:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The International Components for Unicode (ICU) library in Apple Mac OS X before 10.5.3, Red Hat Enterprise Linux 5, and other operating systems omits some invalid character sequences during conversion of some character encodings, which might allow re...