Redhat

Enterprise Linux

1952 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Warnung Exploit
  • EPSS 99.94%
  • Veröffentlicht 25.09.2014 01:55:04
  • Zuletzt bearbeitet 22.04.2026 14:32:42

GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted enviro...

Warnung Exploit
  • EPSS 100%
  • Veröffentlicht 24.09.2014 18:48:04
  • Zuletzt bearbeitet 22.04.2026 16:07:22

GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceComman...

  • EPSS 2.2%
  • Veröffentlicht 21.08.2014 14:55:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Red Hat Directory Server 8 and 389 Directory Server, when debugging is enabled, allows remote attackers to obtain sensitive replicated metadata by searching the directory.

  • EPSS 56.38%
  • Veröffentlicht 06.08.2014 18:55:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

NetBIOS name services daemon (nmbd) in Samba 4.0.x before 4.0.21 and 4.1.x before 4.1.11 allows remote attackers to execute arbitrary code via unspecified vectors that modify heap memory, involving a sizeof operation on an incorrect variable in the u...

  • EPSS 0.56%
  • Veröffentlicht 03.08.2014 18:55:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

libvirt 0.7.5 through 1.2.x before 1.2.5 allows local users to cause a denial of service (read block and hang) via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virConnectCompa...

  • EPSS 0.53%
  • Veröffentlicht 03.08.2014 18:55:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

libvirt 1.0.0 through 1.2.x before 1.2.5, when fine grained access control is enabled, allows local users to read arbitrary files via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the ...

Exploit
  • EPSS 5.23%
  • Veröffentlicht 17.07.2014 05:10:14
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Unspecified vulnerability in the Java SE component in Oracle Java SE Java SE 7u60 and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CV...

  • EPSS 0.65%
  • Veröffentlicht 23.06.2014 11:21:18
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensitive information from ramdisk_mcp memory by leveragin...

  • EPSS 2.44%
  • Veröffentlicht 14.06.2014 11:18:54
  • Zuletzt bearbeitet 06.05.2026 22:30:45

A certain tomcat7 package for Apache Tomcat 7 in Red Hat Enterprise Linux (RHEL) 7 allows remote attackers to cause a denial of service (CPU consumption) via a crafted request. NOTE: this vulnerability exists because of an unspecified regression.

  • EPSS 0.34%
  • Veröffentlicht 11.06.2014 14:55:07
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The System Security Services Daemon (SSSD) 1.11.6 does not properly identify group membership when a non-POSIX group is in a group membership chain, which allows local users to bypass access restrictions via unspecified vectors.