Redhat

Enterprise Linux

1731 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.18%
  • Veröffentlicht 19.04.2021 21:15:13
  • Zuletzt bearbeitet 17.03.2026 15:52:33

GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files.

  • EPSS 0.24%
  • Veröffentlicht 19.04.2021 21:15:13
  • Zuletzt bearbeitet 17.03.2026 15:52:33

GStreamer before 1.18.4 might cause heap corruption when parsing certain malformed Matroska files.

Exploit
  • EPSS 0.13%
  • Veröffentlicht 19.04.2021 21:15:13
  • Zuletzt bearbeitet 21.11.2024 06:21:42

A flaw was found in libtpms in versions before 0.8.0. The TPM 2 implementation returns 2048 bit keys with ~1984 bit strength due to a bug in the TCG specification. The bug is in the key creation algorithm in RsaAdjustPrimeCandidate(), which is called...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 08.04.2021 23:15:12
  • Zuletzt bearbeitet 03.12.2025 01:15:46

A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmas...

  • EPSS 0.2%
  • Veröffentlicht 08.04.2021 23:15:12
  • Zuletzt bearbeitet 21.11.2024 06:21:38

A flaw was found in Exiv2 in versions before and including 0.27.4-RC1. Improper input validation of the rawData.size property in Jp2Image::readMetadata() in jp2image.cpp can lead to a heap-based buffer overflow via a crafted JPG image containing mali...

  • EPSS 0.18%
  • Veröffentlicht 05.04.2021 22:15:12
  • Zuletzt bearbeitet 21.11.2024 05:46:19

A flaw was found in Nettle in versions before 3.7.2, where several Nettle signature verification functions (GOST DSA, EDDSA & ECDSA) result in the Elliptic Curve Cryptography point (ECC) multiply function being called with out-of-range scalers, possi...

Exploit
  • EPSS 1.03%
  • Veröffentlicht 01.04.2021 18:15:12
  • Zuletzt bearbeitet 21.11.2024 05:46:17

A deadlock vulnerability was found in 'github.com/containers/storage' in versions before 1.28.1. When a container image is processed, each layer is unpacked using `tar`. If one of those layers is not a valid `tar` archive this causes an error leading...

  • EPSS 0.1%
  • Veröffentlicht 01.04.2021 14:15:13
  • Zuletzt bearbeitet 21.11.2024 06:21:24

An information leak was discovered in postgresql in versions before 13.2, before 12.6 and before 11.11. A user having UPDATE permission but not SELECT permission to a particular column could craft queries which, under some circumstances, might disclo...

  • EPSS 0.23%
  • Veröffentlicht 26.03.2021 17:15:13
  • Zuletzt bearbeitet 21.11.2024 05:46:15

A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package, whose signature header was modified, to cause RPM database corrupti...

  • EPSS 0.05%
  • Veröffentlicht 26.03.2021 17:15:12
  • Zuletzt bearbeitet 21.11.2024 05:27:27

A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass chec...