cbcvebase.

Redhat Enterprise Linux vulnerabilities

1,853 known vulnerabilities affecting redhat/enterprise_linux.

Total CVEs
1,853
CISA KEV
23
actively exploited
Public exploits
96
Exploited in wild
44
Severity breakdown
CRITICAL167HIGH638MEDIUM890LOW158

Vulnerabilities

Page 17 of 93
CVE-2014-8158P3MEDIUMCVSS 6.8v6.0v7.02015-01-26
CVE-2014-8158 [MEDIUM] CWE-119 CVE-2014-8158: Multiple stack-based buffer overflows in jpc_qmfb.c in JasPer 1.900.1 and earlier allow remote attac Multiple stack-based buffer overflows in jpc_qmfb.c in JasPer 1.900.1 and earlier allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted JPEG 2000 image.
nvd
CVE-2013-4342P3HIGHCVSS 7.6v5v6.02013-10-10
CVE-2013-4342 [HIGH] CWE-264 CVE-2013-4342: xinetd does not enforce the user and group configuration directives for TCPMUX services, which cause xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and makes it easier for remote attackers to gain privileges by leveraging another vulnerability in a service.
nvd
CVE-2010-2941P3CRITICALCVSS 9.8v5.0v6.02010-11-05
CVE-2010-2941 [CRITICAL] CWE-416 CVE-2010-2941: ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbitrary code via a crafted IPP request.
nvd
CVE-2025-26465P3MEDIUMCVSS 6.8v9.02025-02-18
CVE-2025-26465 [MEDIUM] CWE-390 CVE-2025-26465: A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled. A machine-in-the-m A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled. A machine-in-the-middle attack can be performed by a malicious machine impersonating a legit server. This issue occurs due to how OpenSSH mishandles error codes in specific conditions when verifying the host key. For an attack to be considered successful, the attacker
nvd
CVE-2017-5448P3HIGHCVSS 8.6v6.0v7.02018-06-11
CVE-2017-5448 [HIGH] CWE-787 CVE-2017-5448: An out-of-bounds write in "ClearKeyDecryptor" while decrypting some Clearkey-encrypted media content An out-of-bounds write in "ClearKeyDecryptor" while decrypting some Clearkey-encrypted media content. The "ClearKeyDecryptor" code runs within the Gecko Media Plugin (GMP) sandbox. If a second mechanism is found to escape the sandbox, this vulnerability allows for the writing of arbitrary data within memory, resulting in a potentially exploitable crash.
nvd
CVE-2018-12121P3HIGHCVSS 7.5v8.02018-11-28
CVE-2018-12121 [HIGH] CWE-400 CVE-2018-12121: Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Denial of Service with la Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Denial of Service with large HTTP headers: By using a combination of many requests with maximum sized headers (almost 80 KB per connection), and carefully timed completion of the headers, it is possible to cause the HTTP server to abort from heap allocation failure. Attack pote
nvd
CVE-2012-1168P3HIGHCVSS 8.2v6.02019-11-14
CVE-2012-1168 [HIGH] CWE-20 CVE-2012-1168: Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.
nvd
CVE-2021-3656P3HIGHCVSS 8.8v8.02022-03-04
CVE-2021-3656 [HIGH] CWE-862 CVE-2021-3656: A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs whe A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMCB (virtual machine control block) provided by the L1 guest to spawn/handle a nested guest (L2). Due to improper validation of the "virt_ext" field, this issue could allow a malicious L1 to disable both VMLOAD/VMSAVE intercepts and VLS
nvd
CVE-2021-3653P3HIGHCVSS 8.8v7.02021-09-29
CVE-2021-3653 [HIGH] CWE-862 CVE-2021-3653: A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs whe A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMCB (virtual machine control block) provided by the L1 guest to spawn/handle a nested guest (L2). Due to improper validation of the "int_ctl" field, this issue could allow a malicious L1 to enable AVIC support (Advanced Virtual Interrupt
nvd
CVE-2020-25717P3HIGHCVSS 8.1v7.0v8.02022-02-18
CVE-2020-25717 [HIGH] CWE-20 CVE-2020-25717: A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cause possible privilege escalation.
nvd
CVE-2026-58014P3HIGHCVSS 8.6v6.0v7.0+3 more2026-06-30
CVE-2026-58014 [HIGH] CWE-193 CVE-2026-58014: A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list fun A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list function in the gkeyfile.c file when loading a key file with an empty value. This flaw can cause an out-of-bounds access of 1 byte or a denial of service when the out-of-bounds access crosses a page boundary.
nvd
CVE-2017-5428P3CRITICALCVSS 9.8v7.02018-06-11
CVE-2017-5428 [CRITICAL] CWE-190 CVE-2017-5428: An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for t An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental extensions to the "createImageBitmap" API. This function runs in the content sandbox, requiring a second vulnerability to compromise a user's computer. This vulnerability affects Firefox ESR < 52.0.1 and Fir
nvd
CVE-2025-32988P3HIGHCVSS 8.2v6.0v7.0+3 more2025-07-10
CVE-2025-32988 [HIGH] CWE-415 CVE-2025-32988: A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the export logic of Subject Alternative Name (SAN) entries containing an otherName. If the type-id OID is invalid or malformed, GnuTLS will call asn1_delete_structure() on an ASN.1 node it does not own, leading to a double-free condition when
nvd
CVE-2021-20179P3HIGHCVSS 8.1v7.0v8.02021-03-15
CVE-2021-20179 [HIGH] CWE-863 CVE-2021-20179: A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw to renew the corresponding certificate over and over again, as long as it is not explicitly revoked. The highest threat from this vulnerability is to data confidentiality and integrity.
nvd
CVE-2018-10184P3HIGHCVSS 7.5v7.0v7.3+2 more2018-05-09
CVE-2018-10184 [HIGH] CWE-119 CVE-2018-10184: An issue was discovered in HAProxy before 1.8.8. The incoming H2 frame length was checked against th An issue was discovered in HAProxy before 1.8.8. The incoming H2 frame length was checked against the max_frame_size setting instead of being checked against the bufsize. The max_frame_size only applies to outgoing traffic and not to incoming, so if a large enough frame size is advertised in the SETTINGS frame, a wrapped frame will be defragmented int
nvd
CVE-2020-27786P3HIGHCVSS 7.8v7.0v8.02020-12-11
CVE-2020-27786 [HIGH] CWE-416 CVE-2020-27786: A flaw was found in the Linux kernel’s implementation of MIDI, where an attacker with a local accoun A flaw was found in the Linux kernel’s implementation of MIDI, where an attacker with a local account and the permissions to issue ioctl commands to midi devices could trigger a use-after-free issue. A write to this specific memory while freed and before use causes the flow of execution to change and possibly allow for memory corruption or privilege e
nvd
CVE-2026-5119P3HIGHCVSS 8.2v7.0v8.0+2 more2026-03-30
CVE-2026-5119 [HIGH] CWE-319 CVE-2026-5119: A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensit A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or user impersonation.
nvd
CVE-2015-4024P3MEDIUMCVSS 5.0v6.0v7.02015-06-09
CVE-2015-4024 [MEDIUM] CWE-399 CVE-2015-4024: Algorithmic complexity vulnerability in the multipart_buffer_headers function in main/rfc1867.c in P Algorithmic complexity vulnerability in the multipart_buffer_headers function in main/rfc1867.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 allows remote attackers to cause a denial of service (CPU consumption) via crafted form data that triggers an improper order-of-growth outcome.
nvd
CVE-2026-1767P3HIGHCVSS 8.1v8.0v9.0+1 more2026-06-16
CVE-2026-1767 [HIGH] CWE-805 CVE-2026-1767: A flaw was found in the GNOME localsearch (previously known as tracker-miners) MP3 Extractor `tracke A flaw was found in the GNOME localsearch (previously known as tracker-miners) MP3 Extractor `tracker-extract-mp3` component. A remote attacker could exploit this heap buffer overflow vulnerability by providing a specially crafted MP3 file containing malformed ID3 tags. This incorrect length calculation during the parsing of performer tags can lead to a
nvd
CVE-2011-2726P3HIGHCVSS 7.5v5.0v6.02019-11-15
CVE-2011-2726 [HIGH] CWE-863 CVE-2011-2726: An access bypass issue was found in Drupal 7.x before version 7.5. If a Drupal site has the ability An access bypass issue was found in Drupal 7.x before version 7.5. If a Drupal site has the ability to attach File upload fields to any entity type in the system or has the ability to point individual File upload fields to the private file directory in comments, and the parent node is denied access, non-privileged users can still download the file attach
nvd
Redhat Enterprise Linux vulnerabilities | cvebase