Redhat

Enterprise Linux

1952 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.18%
  • Veröffentlicht 10.07.2025 08:05:26
  • Zuletzt bearbeitet 01.09.2026 12:17:18

A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw allows a malicious user to create a certificate cont...

  • EPSS 1.19%
  • Veröffentlicht 10.07.2025 08:04:57
  • Zuletzt bearbeitet 01.09.2026 12:17:18

A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the export logic of Subject Alternative Name (SAN) entries containing an otherName. If the type-id OID is invalid or malformed, GnuTLS wil...

  • EPSS 0.53%
  • Veröffentlicht 04.07.2025 08:16:47
  • Zuletzt bearbeitet 01.09.2026 12:17:26

A flaw was found in the key export functionality of libssh. The issue occurs in the internal function responsible for converting cryptographic keys into serialized formats. During error handling, a memory structure is freed but not cleared, leading t...

Medienbericht
  • EPSS 0.43%
  • Veröffentlicht 04.07.2025 06:01:27
  • Zuletzt bearbeitet 01.09.2026 12:17:26

A flaw was found in libssh versions built with OpenSSL versions older than 3.0, specifically in the ssh_kdf() function responsible for key derivation. Due to inconsistent interpretation of return values where OpenSSL uses 0 to indicate failure and li...

Warnung Medienbericht Exploit
  • EPSS 58.76%
  • Veröffentlicht 30.06.2025 00:00:00
  • Zuletzt bearbeitet 05.11.2025 19:26:48

Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.

  • EPSS 1.54%
  • Veröffentlicht 24.06.2025 14:15:30
  • Zuletzt bearbeitet 08.09.2026 15:18:39

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and t...

  • EPSS 0.22%
  • Veröffentlicht 16.06.2025 15:24:05
  • Zuletzt bearbeitet 09.10.2026 05:16:42

A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML files. When a user inputs an overly long command, the program does not check the input size properly, which can cause it to crash. This issue might allow...

Medienbericht Exploit
  • EPSS 1.17%
  • Veröffentlicht 12.06.2025 12:49:16
  • Zuletzt bearbeitet 18.09.2026 18:17:04

A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer size calculations can lead to a stack-based buffer overflow. This issue can result in memory corruption or a denial of service when processing crafted input.

Medienbericht Exploit
  • EPSS 0.34%
  • Veröffentlicht 09.06.2025 19:53:48
  • Zuletzt bearbeitet 07.10.2026 04:17:33

A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free ...

  • EPSS 0.17%
  • Veröffentlicht 09.06.2025 19:49:13
  • Zuletzt bearbeitet 01.09.2026 13:17:47

A vulnerability has been identified in the libarchive library. This flaw involves an 'off-by-one' miscalculation when handling prefixes and suffixes for file names. This can lead to a 1-byte write overflow. While seemingly small, such an overflow can...