Redhat

Enterprise Linux

1730 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Veröffentlicht 19.12.2022 20:15:11
  • Zuletzt bearbeitet 21.11.2024 07:20:13

When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bitmap size. As consequence an attacker can craft an input which will lead to a out-of-bounds write int...

  • EPSS 0.18%
  • Veröffentlicht 14.12.2022 21:15:14
  • Zuletzt bearbeitet 29.08.2025 13:42:30

A vulnerability was found in X.Org. This security flaw occurs because the XkbCopyNames function left a dangling pointer to freed memory, resulting in out-of-bounds memory access on subsequent XkbGetKbdByName requests.. This issue can lead to local pr...

  • EPSS 0.02%
  • Veröffentlicht 29.11.2022 18:15:10
  • Zuletzt bearbeitet 14.04.2025 18:15:24

An out-of-bounds read flaw was found in the QXL display device emulation in QEMU. The qxl_phys2virt() function does not check the size of the structure pointed to by the guest physical address, potentially reading past the end of the bar space into a...

  • EPSS 0.15%
  • Veröffentlicht 22.11.2022 19:15:17
  • Zuletzt bearbeitet 29.04.2025 05:15:43

A vulnerability was found in keylime. This security issue happens in some circumstances, due to some improperly handled exceptions, there exists the possibility that a rogue agent could create errors on the verifier that stopped attestation attempts ...

Exploit
  • EPSS 0.02%
  • Veröffentlicht 08.11.2022 22:15:16
  • Zuletzt bearbeitet 02.05.2025 18:15:24

An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.

Exploit
  • EPSS 0.2%
  • Veröffentlicht 14.10.2022 18:15:15
  • Zuletzt bearbeitet 15.05.2025 15:15:53

A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.

Exploit
  • EPSS 0.34%
  • Veröffentlicht 14.10.2022 18:15:14
  • Zuletzt bearbeitet 03.11.2025 21:15:52

A flaw was found In 389-ds-base. When the Content Synchronization plugin is enabled, an authenticated user can reach a NULL pointer dereference using a specially crafted query. This flaw allows an authenticated attacker to cause a denial of service. ...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 13.09.2022 14:15:08
  • Zuletzt bearbeitet 05.06.2025 19:15:23

An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups ar...

Exploit
  • EPSS 0.09%
  • Veröffentlicht 13.09.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 07:02:02

An incorrect handling of the supplementary groups in the Buildah container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups a...

Exploit
  • EPSS 0.01%
  • Veröffentlicht 09.09.2022 15:15:10
  • Zuletzt bearbeitet 21.11.2024 07:01:54

An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than the max_entries of the map. This flaw allows a local user to gain unauthorized access to data.