Redhat

Enterprise Linux

1952 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Veröffentlicht 25.02.2026 10:31:50
  • Zuletzt bearbeitet 15.07.2026 02:18:59

A flaw was found in the udisks storage management daemon that exposes a privileged D-Bus API for restoring LUKS encryption headers without proper authorization checks. The issue allows a local unprivileged user to instruct the root-owned udisks daemo...

  • EPSS 0.43%
  • Veröffentlicht 13.02.2026 11:58:20
  • Zuletzt bearbeitet 23.03.2026 20:16:25

A flaw was identified in libsoup, a widely used HTTP library in GNOME-based systems. When processing specially crafted HTTP Range headers, the library may improperly validate requested byte ranges. In certain build configurations, this could allow a ...

  • EPSS 5.43%
  • Veröffentlicht 06.02.2026 19:13:27
  • Zuletzt bearbeitet 15.07.2026 02:18:19

A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perfo...

  • EPSS 0.38%
  • Veröffentlicht 03.02.2026 20:12:21
  • Zuletzt bearbeitet 26.03.2026 18:02:05

A flaw was found in libsoup, an HTTP client/server library. This HTTP Request Smuggling vulnerability arises from non-RFC-compliant parsing in the soup_filter_input_stream_read_line() logic, where libsoup accepts malformed chunk headers, such as lone...

  • EPSS 0.24%
  • Veröffentlicht 28.01.2026 15:15:48
  • Zuletzt bearbeitet 25.03.2026 14:08:59

A flaw was found in the libsoup HTTP library that can cause proxy authentication credentials to be sent to unintended destinations. When handling HTTP redirects, libsoup removes the Authorization header but does not remove the Proxy-Authorization hea...

Exploit
  • EPSS 0.3%
  • Veröffentlicht 28.01.2026 15:15:46
  • Zuletzt bearbeitet 25.03.2026 14:14:38

A flaw was found in libsoup. An attacker who can control the input for the Content-Disposition header can inject CRLF (Carriage Return Line Feed) sequences into the header value. These sequences are then interpreted verbatim when the HTTP request or ...

Exploit
  • EPSS 0.31%
  • Veröffentlicht 27.01.2026 09:17:44
  • Zuletzt bearbeitet 25.03.2026 14:20:18

A flaw was found in libsoup, an HTTP client library. This vulnerability, known as CRLF (Carriage Return Line Feed) Injection, occurs when an HTTP proxy is configured and the library improperly handles URL-decoded input used to create the Host header....

Exploit
  • EPSS 0.43%
  • Veröffentlicht 15.01.2026 14:20:24
  • Zuletzt bearbeitet 01.09.2026 13:18:07

A flaw was found in the libxml2 library. This uncontrolled resource consumption vulnerability occurs when processing XML catalogs that contain repeated <nextCatalog> elements pointing to the same downstream catalog. A remote attacker can exploit this...

Exploit
  • EPSS 0.46%
  • Veröffentlicht 15.01.2026 14:20:23
  • Zuletzt bearbeitet 01.09.2026 13:18:07

A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schem...

Exploit
  • EPSS 0.82%
  • Veröffentlicht 15.01.2026 14:20:06
  • Zuletzt bearbeitet 01.09.2026 12:17:34

A flaw was found in libxml2, an XML parsing library. This uncontrolled recursion vulnerability occurs in the xmlCatalogXMLResolveURI function when an XML catalog contains a delegate URI entry that references itself. A remote attacker could exploit th...