Redhat

Enterprise Linux Workstation

1845 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.54%
  • Published 26.07.2018 17:29:00
  • Last modified 21.11.2024 03:08:58

A regression was found in the Red Hat Enterprise Linux 6.9 version of httpd 2.2.15-60, causing comments in the "Allow" and "Deny" configuration lines to be parsed incorrectly. A web administrator could unintentionally allow any client to access a res...

  • EPSS 0.15%
  • Published 26.07.2018 17:29:00
  • Last modified 21.11.2024 03:42:15

A flaw was found in Linux kernel's KVM virtualization subsystem. The VMX code does not restore the GDT.LIMIT to the previous host value, but instead sets it to 64KB. With a corrupted GDT limit a host's userspace code has an ability to place malicious...

  • EPSS 27.33%
  • Published 26.07.2018 16:29:00
  • Last modified 21.11.2024 03:08:57

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to ...

  • EPSS 0.26%
  • Published 26.07.2018 15:29:00
  • Last modified 21.11.2024 03:32:10

An authentication bypass flaw was found in the way krb5's certauth interface before 1.16.1 handled the validation of client certificates. A remote attacker able to communicate with the KDC could potentially use this flaw to impersonate arbitrary prin...

Exploit
  • EPSS 0.08%
  • Published 26.07.2018 13:29:00
  • Last modified 21.11.2024 03:32:06

It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10.6.4. An attacker could potentially use this flaw to bypass the regular authentication process and trick t...

  • EPSS 0.84%
  • Published 25.07.2018 23:29:00
  • Last modified 21.11.2024 03:48:22

Poppler through 0.62 contains an out of bounds read vulnerability due to an incorrect memory access that is not mapped in its memory space, as demonstrated by pdfunite. This can result in memory corruption and denial of service. This may be exploitab...

Exploit
  • EPSS 1.9%
  • Published 25.07.2018 17:29:00
  • Last modified 21.11.2024 03:40:39

plexus-archiver before 3.6.0 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in an archive entry that is mishandled during extraction. This vulnerability is also known as 'Zip-Slip'.

Exploit
  • EPSS 0.06%
  • Published 24.07.2018 20:29:00
  • Last modified 21.11.2024 03:42:16

In fuse before versions 2.9.8 and 3.x before 3.2.5, fusermount is vulnerable to a restriction bypass when SELinux is active. This allows non-root users to mount a FUSE file system with the 'allow_other' mount option regardless of whether 'user_allow_...

  • EPSS 6.12%
  • Published 20.07.2018 19:29:02
  • Last modified 21.11.2024 04:07:54

Adobe Flash Player 30.0.0.113 and earlier versions have a Type Confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

  • EPSS 6.87%
  • Published 20.07.2018 19:29:02
  • Last modified 21.11.2024 04:07:54

Adobe Flash Player 30.0.0.113 and earlier versions have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.