Redhat

Enterprise Linux

1952 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.21%
  • Veröffentlicht 17.03.2026 09:44:19
  • Zuletzt bearbeitet 19.03.2026 19:56:43

A flaw was found in libsoup, a library used by applications to send network requests. This vulnerability occurs because libsoup does not properly validate hostnames, allowing special characters to be injected into HTTP headers. A remote attacker coul...

Exploit
  • EPSS 0.22%
  • Veröffentlicht 17.03.2026 09:44:19
  • Zuletzt bearbeitet 19.03.2026 19:53:34

A flaw was found in libsoup. A remote attacker, by controlling the method parameter of the `soup_message_new()` function, could inject arbitrary headers and additional request data. This vulnerability, known as CRLF (Carriage Return Line Feed) inject...

Exploit
  • EPSS 0.18%
  • Veröffentlicht 17.03.2026 09:44:19
  • Zuletzt bearbeitet 19.03.2026 19:52:33

A flaw was found in libsoup. An attacker controlling the value used to set the Content-Type header can inject a Carriage Return Line Feed (CRLF) sequence due to improper input sanitization in the `soup_message_headers_set_content_type()` function. Th...

  • EPSS 0.18%
  • Veröffentlicht 15.03.2026 00:19:07
  • Zuletzt bearbeitet 01.09.2026 13:19:17

A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in the bfd linker, allows an attacker to gain access to sensitive information. By convincing a user to process a specially crafted XCO...

  • EPSS 0.26%
  • Veröffentlicht 15.03.2026 00:19:02
  • Zuletzt bearbeitet 01.09.2026 13:19:17

A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker component. An attacker could exploit this by convincing a user to process a specially crafted malicious X...

Medienbericht
  • EPSS 2.18%
  • Veröffentlicht 12.03.2026 18:27:44
  • Zuletzt bearbeitet 15.07.2026 02:21:00

Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH upstream project itself. The usage of sshpkt_disconn...

Exploit
  • EPSS 0.36%
  • Veröffentlicht 12.03.2026 13:53:48
  • Zuletzt bearbeitet 23.03.2026 14:02:25

A flaw was found in Libsoup. The server-side digest authentication implementation in the SoupAuthDomainDigest class does not properly track issued nonces or enforce the required incrementing nonce-count (nc) attribute. This vulnerability allows a rem...

  • EPSS 0.46%
  • Veröffentlicht 04.03.2026 15:25:53
  • Zuletzt bearbeitet 01.09.2026 12:17:15

A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows the client to a...

  • EPSS 0.35%
  • Veröffentlicht 27.02.2026 07:28:44
  • Zuletzt bearbeitet 24.03.2026 12:16:12

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leadi...

  • EPSS 0.08%
  • Veröffentlicht 25.02.2026 10:51:15
  • Zuletzt bearbeitet 25.03.2026 19:16:48

A flaw was found in the udisks storage management daemon that allows unprivileged users to back up LUKS encryption headers without authorization. The issue occurs because a privileged D-Bus method responsible for exporting encryption metadata does no...