cbcvebase.

Redhat Enterprise Linux vulnerabilities

1,853 known vulnerabilities affecting redhat/enterprise_linux.

Total CVEs
1,853
CISA KEV
23
actively exploited
Public exploits
96
Exploited in wild
44
Severity breakdown
CRITICAL167HIGH638MEDIUM890LOW158

Vulnerabilities

Page 51 of 93
CVE-2026-2239P4MEDIUMCVSS 6.5v7.0v8.0+1 more2026-03-26
CVE-2026-2239 [MEDIUM] CWE-170 CVE-2026-2239: A flaw was found in GIMP. Heap-buffer-overflow vulnerability exists in the fread_pascal_string funct A flaw was found in GIMP. Heap-buffer-overflow vulnerability exists in the fread_pascal_string function when processing a specially crafted PSD (Photoshop Document) file. This occurs because the buffer allocated for a Pascal string is not properly null-terminated, leading to an out-of-bounds read when strlen() is subsequently called. Successfully expl
nvd
CVE-2023-39198P4MEDIUMCVSS 6.4v8.0v9.02023-11-09
CVE-2023-39198 [MEDIUM] CWE-416 CVE-2023-39198: A race condition was found in the QXL driver in the Linux kernel. The qxl_mode_dumb_create() functio A race condition was found in the QXL driver in the Linux kernel. The qxl_mode_dumb_create() function dereferences the qobj returned by the qxl_gem_object_create_with_handle(), but the handle is the only one holding a reference to it. This flaw allows an attacker to guess the returned handle value and trigger a use-after-free issue, potentially lead
nvd
CVE-2019-3838P4MEDIUMCVSS 5.5v5.0v6.02019-03-25
CVE-2019-3838 [MEDIUM] CWE-648 CVE-2019-3838: It was found that the forceput operator could be extracted from the DefineResource method in ghostsc It was found that the forceput operator could be extracted from the DefineResource method in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example, have access to the file system outside of the constrains imposed by -dSAFER.
nvd
CVE-2022-1462P4MEDIUMCVSS 6.3v8.0v9.02022-06-02
CVE-2022-1462 [MEDIUM] CWE-362 CVE-2022-1462: An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in h An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memory in the flush_to_ldisc function. This flaw allows a local user to crash the system or read unauthorized random data from memory.
nvd
CVE-2021-3714P4MEDIUMCVSS 5.9v6.0v7.0+1 more2022-08-23
CVE-2021-3714 [MEDIUM] CWE-200 CVE-2021-3714: A flaw was found in the Linux kernels memory deduplication mechanism. Previous work has shown that m A flaw was found in the Linux kernels memory deduplication mechanism. Previous work has shown that memory deduplication can be attacked via a local exploitation mechanism. The same technique can be used if an attacker can upload page sized files and detect the change in access time from a networked service to determine if the page has been merged.
nvd
CVE-2023-5992P4MEDIUMCVSS 5.9v7.0v8.0+1 more2024-01-31
CVE-2023-5992 [MEDIUM] CWE-203 CVE-2023-5992: A vulnerability was found in OpenSC where PKCS#1 encryption padding removal is not implemented as si A vulnerability was found in OpenSC where PKCS#1 encryption padding removal is not implemented as side-channel resistant. This issue may result in the potential leak of private data.
nvd
CVE-2024-0914P4MEDIUMCVSS 5.9v8.0v9.02024-01-31
CVE-2024-0914 [MEDIUM] CWE-203 CVE-2024-0914: A timing side-channel vulnerability has been discovered in the opencryptoki package while processing A timing side-channel vulnerability has been discovered in the opencryptoki package while processing RSA PKCS#1 v1.5 padded ciphertexts. This flaw could potentially enable unauthorized RSA ciphertext decryption or signing, even without access to the corresponding private key.
nvd
CVE-2020-10759P4MEDIUMCVSS 6.0v7.0v8.02020-09-15
CVE-2020-10759 [MEDIUM] CWE-347 CVE-2020-10759: A PGP signature bypass flaw was found in fwupd (all versions), which could lead to the installation A PGP signature bypass flaw was found in fwupd (all versions), which could lead to the installation of unsigned firmware. As per upstream, a signature bypass is theoretically possible, but not practical because the Linux Vendor Firmware Service (LVFS) is either not implemented or enabled in versions of fwupd shipped with Red Hat Enterprise Linux 7 an
nvd
CVE-2008-6123P4MEDIUMCVSS 5.0v3.02009-02-12
CVE-2008-6123 [MEDIUM] CWE-863 CVE-2008-6123: The netsnmp_udp_fmtaddr function (snmplib/snmpUDPDomain.c) in net-snmp 5.0.9 through 5.4.2.1, when u The netsnmp_udp_fmtaddr function (snmplib/snmpUDPDomain.c) in net-snmp 5.0.9 through 5.4.2.1, when using TCP wrappers for client authorization, does not properly parse hosts.allow rules, which allows remote attackers to bypass intended access restrictions and execute SNMP queries, related to "source/destination IP address confusion."
nvd
CVE-2020-14370P4MEDIUMCVSS 5.3v7.0v8.02020-09-23
CVE-2020-14370 [MEDIUM] CWE-212 CVE-2020-14370: An information disclosure vulnerability was found in containers/podman in versions before 2.0.5. Whe An information disclosure vulnerability was found in containers/podman in versions before 2.0.5. When using the deprecated Varlink API or the Docker-compatible REST API, if multiple containers are created in a short duration, the environment variables from the first container will get leaked into subsequent containers. An attacker who has control ov
nvd
CVE-2023-34968P4MEDIUMCVSS 5.3v8.0v9.02023-07-20
CVE-2023-34968 [MEDIUM] CWE-201 CVE-2023-34968: A path disclosure vulnerability was found in Samba. As part of the Spotlight protocol, Samba disclos A path disclosure vulnerability was found in Samba. As part of the Spotlight protocol, Samba discloses the server-side absolute path of shares, files, and directories in the results for search queries. This flaw allows a malicious client or an attacker with a targeted RPC request to view the information that is part of the disclosed path.
nvd
CVE-2025-32989P4MEDIUMCVSS 5.3v6.0v7.0+3 more2025-07-10
CVE-2025-32989 [MEDIUM] CWE-295 CVE-2025-32989: A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transpare A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw allows a malicious user to create a certificate containing a malformed SCT extension (OID 1.3.6.1.4.1.11129.2.4.2) that contains sensitive data. This iss
nvd
CVE-2004-1004P4HIGHCVSS 7.5v2.12005-04-14
CVE-2004-1004 [HIGH] CVE-2004-1004: Multiple format string vulnerabilities in Midnight Commander (mc) 4.5.55 and earlier allow remote at Multiple format string vulnerabilities in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to have an unknown impact.
nvd
CVE-2020-12826P4MEDIUMCVSS 5.3v5.0v6.0+2 more2020-05-12
CVE-2020-12826 [MEDIUM] CWE-190 CVE-2020-12826: A signal access-control issue was discovered in the Linux kernel before 5.6.5, aka CID-7395ea4e65c2. A signal access-control issue was discovered in the Linux kernel before 5.6.5, aka CID-7395ea4e65c2. Because exec_id in include/linux/sched.h is only 32 bits, an integer overflow can interfere with a do_notify_parent protection mechanism. A child process can send an arbitrary signal to a parent process in a different security domain. Exploitation li
nvd
CVE-2026-54231P4MEDIUMCVSS 5.5v7.0v8.02026-06-13
CVE-2026-54231 [MEDIUM] CWE-74 CVE-2026-54231: A content injection vulnerability was found in the ABRT post-create event handler scripts in librepo A content injection vulnerability was found in the ABRT post-create event handler scripts in libreport. The event script queries the systemd journal for log entries matching the crashed process and writes the results to files in the dump directory without sanitizing embedded control characters. A local user can inject arbitrary content into the journ
nvd
CVE-2013-1872P4MEDIUMCVSS 6.8v6.02013-08-19
CVE-2013-1872 [MEDIUM] CVE-2013-1872: The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of ser The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly execute arbitrary code via vectors involving 3d graphics that trigger an out-of-bounds array access, related to the fs_visitor::remove_dead_constants function. NOTE: this issue might be related to CVE-2013-0796.
nvd
CVE-2015-1819P4MEDIUMCVSS 5.0≤ 5.02015-08-14
CVE-2015-1819 [MEDIUM] CWE-399 CVE-2015-1819: The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) vi The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack.
nvd
CVE-2018-12372P4MEDIUMCVSS 6.5v6.0v7.0+2 more2018-10-18
CVE-2018-12372 [MEDIUM] CWE-200 CVE-2018-12372: Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when include Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 52.9.
nvd
CVE-2015-3247P4MEDIUMCVSS 6.9v6.0v7.02015-09-08
CVE-2015-3247 [MEDIUM] CWE-119 CVE-2015-3247: Race condition in the worker_update_monitors_config function in SPICE 0.12.4 allows a remote authent Race condition in the worker_update_monitors_config function in SPICE 0.12.4 allows a remote authenticated guest user to cause a denial of service (heap-based memory corruption and QEMU-KVM crash) or possibly execute arbitrary code on the host via unspecified vectors.
nvd
CVE-2021-20271P4HIGHCVSS 7.0v8.02021-03-26
CVE-2021-20271 [HIGH] CWE-345 CVE-2021-20271: A flaw was found in RPM's signature check functionality when reading a package file. This flaw allow A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package, whose signature header was modified, to cause RPM database corruption and execute code. The highest threat from this vulnerability is to data integrity, confidentiality,
nvd
Redhat Enterprise Linux vulnerabilities | cvebase