Redhat

Enterprise Linux

1715 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.68%
  • Veröffentlicht 27.11.2019 21:15:12
  • Zuletzt bearbeitet 21.11.2024 01:28:49

The DHCPv6 client (dhcp6c) as used in the dhcpv6 project through 2011-07-25 allows remote DHCP servers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message.

Exploit
  • EPSS 1.45%
  • Veröffentlicht 27.11.2019 19:15:11
  • Zuletzt bearbeitet 21.11.2024 01:27:49

dirmngr before 2.1.0 improperly handles certain system calls, which allows remote attackers to cause a denial of service (DOS) via a specially-crafted certificate.

Exploit
  • EPSS 0.02%
  • Veröffentlicht 27.11.2019 18:15:11
  • Zuletzt bearbeitet 21.11.2024 01:46:37

An issue exists AccountService 0.6.37 in the user_change_password_authorized_cb() function in user.c which could let a local users obtain encrypted passwords.

  • EPSS 0.2%
  • Veröffentlicht 27.11.2019 17:15:14
  • Zuletzt bearbeitet 21.11.2024 04:34:23

SQLite 3.30.1 mishandles pExpr->y.pTab, as demonstrated by the TK_COLUMN case in sqlite3ExprCodeTarget in expr.c.

  • EPSS 0.13%
  • Veröffentlicht 27.11.2019 16:15:11
  • Zuletzt bearbeitet 21.11.2024 02:53:21

A password generation weakness exists in xquest through 2016-06-13.

  • EPSS 0.53%
  • Veröffentlicht 27.11.2019 13:15:10
  • Zuletzt bearbeitet 21.11.2024 04:18:40

In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that coul...

  • EPSS 0.87%
  • Veröffentlicht 27.11.2019 09:15:11
  • Zuletzt bearbeitet 21.11.2024 04:27:38

A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join...

  • EPSS 4.16%
  • Veröffentlicht 26.11.2019 04:15:11
  • Zuletzt bearbeitet 21.11.2024 01:30:53

Hardlink before 0.1.2 has multiple integer overflows leading to heap-based buffer overflows because of the way string lengths concatenation is done in the calculation of the required memory space to be used. A remote attacker could provide a speciall...

Exploit
  • EPSS 0.13%
  • Veröffentlicht 26.11.2019 04:15:11
  • Zuletzt bearbeitet 21.11.2024 01:30:53

Hardlink before 0.1.2 operates on full file system objects path names which can allow a local attacker to use this flaw to conduct symlink attacks.

  • EPSS 3.12%
  • Veröffentlicht 26.11.2019 04:15:10
  • Zuletzt bearbeitet 21.11.2024 01:30:53

Hardlink before 0.1.2 suffer from multiple stack-based buffer overflow flaws because of the way directory trees with deeply nested directories are processed. A remote attacker could provide a specially-crafted directory tree, and trick the local user...