Redhat

Enterprise Linux Workstation

1845 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.21%
  • Published 03.03.2021 17:15:11
  • Last modified 21.11.2024 05:03:07

A flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI command when Secure Boot is enabled. This flaw allows an attacker with privileged access to craft a Secondary System Description Table (SSDT) cont...

  • EPSS 0.02%
  • Published 03.03.2021 17:15:11
  • Last modified 21.11.2024 05:18:17

A flaw was found in grub2 in versions prior to 2.06. The rmmod implementation allows the unloading of a module used as a dependency without checking if any other dependent module is still loaded leading to a use-after-free scenario. This could allow ...

  • EPSS 0.01%
  • Published 03.03.2021 17:15:11
  • Last modified 21.11.2024 05:18:19

A flaw was found in grub2 in versions prior to 2.06. During USB device initialization, descriptors are read with very little bounds checking and assumes the USB device is providing sane values. If properly exploited, an attacker could trigger memory ...

  • EPSS 0.04%
  • Published 03.03.2021 17:15:11
  • Last modified 21.11.2024 05:21:45

A flaw was found in grub2 in versions prior to 2.06. Variable names present are expanded in the supplied command line into their corresponding variable contents, using a 1kB stack buffer for temporary storage, without sufficient bounds checking. If t...

  • EPSS 0.02%
  • Published 03.03.2021 17:15:11
  • Last modified 21.11.2024 05:21:49

A flaw was found in grub2 in versions prior to 2.06. The cutmem command does not honor secure boot locking allowing an privileged attacker to remove address ranges from memory creating an opportunity to circumvent SecureBoot protections after proper ...

  • EPSS 0.05%
  • Published 03.03.2021 17:15:11
  • Last modified 21.11.2024 05:46:09

A flaw was found in grub2 in versions prior to 2.06. The option parser allows an attacker to write past the end of a heap-allocated buffer by calling certain commands with a large number of specific short forms of options. The highest threat from thi...

  • EPSS 0.06%
  • Published 27.10.2020 21:15:15
  • Last modified 21.11.2024 05:31:51

A logic issue was addressed with improved validation. This issue is fixed in iCloud for Windows 7.17, iTunes 12.10.4 for Windows, iCloud for Windows 10.9.2, tvOS 13.3.1, Safari 13.0.5, iOS 13.3.1 and iPadOS 13.3.1. A DOM object context may not have h...

  • EPSS 0.57%
  • Published 27.10.2020 21:15:12
  • Last modified 21.11.2024 04:50:35

A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing maliciously craf...

  • EPSS 2.47%
  • Published 27.10.2020 20:15:21
  • Last modified 21.11.2024 04:50:35

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, watchOS 6.1.1, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Pr...

  • EPSS 0.57%
  • Published 27.10.2020 20:15:20
  • Last modified 21.11.2024 04:50:34

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing malici...