cbcvebase.

Redhat Enterprise Linux For Arm 64 vulnerabilities

46 known vulnerabilities affecting redhat/enterprise_linux_for_arm_64.

Total CVEs
46
CISA KEV
5
actively exploited
Public exploits
6
Exploited in wild
6
Severity breakdown
CRITICAL3HIGH23MEDIUM20

Vulnerabilities

Page 3 of 3
CVE-2023-6681P4MEDIUMCVSS 5.3v8.02024-02-12
CVE-2023-6681 [MEDIUM] CWE-400 CVE-2023-6681: A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (Do A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.
nvd
CVE-2023-5868P4MEDIUMCVSS 4.3v8.0v8.8_aarch642023-12-10
CVE-2023-5868 [MEDIUM] CWE-686 CVE-2023-5868: A memory disclosure vulnerability was found in PostgreSQL that allows remote users to access sensiti A memory disclosure vulnerability was found in PostgreSQL that allows remote users to access sensitive information by exploiting certain aggregate function calls with 'unknown'-type arguments. Handling 'unknown'-type values from string literals without type designation can disclose bytes, potentially revealing notable and confidential information. Thi
nvd
CVE-2024-9675P4MEDIUMCVSS 4.4v8.0_aarch64v9.0_aarch642024-10-09
CVE-2024-9675 [MEDIUM] CWE-22 CVE-2024-9675: A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified path A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified paths for the cache are within our cache directory, allowing a `RUN` instruction in a Container file to mount an arbitrary directory from the host (read/write) into the container as long as those files can be accessed by the user running Buildah.
nvd
CVE-2023-5870P4MEDIUMCVSS 4.4v8.0v8.8_aarch642023-12-10
CVE-2023-5870 [MEDIUM] CWE-400 CVE-2023-5870: A flaw was found in PostgreSQL involving the pg_cancel_backend role that signals background workers, A flaw was found in PostgreSQL involving the pg_cancel_backend role that signals background workers, including the logical replication launcher, autovacuum workers, and the autovacuum launcher. Successful exploitation requires a non-core extension with a less-resilient background worker and would affect that specific background worker only. This issue
nvd
CVE-2023-4042P4MEDIUMCVSS 5.5v8.0_aarch642023-08-23
CVE-2023-4042 [MEDIUM] CVE-2023-4042: A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA- A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.
nvd
CVE-2023-4732P4MEDIUMCVSS 4.7v8.0_aarch642023-10-03
CVE-2023-4732 [MEDIUM] CWE-366 CVE-2023-4732: A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In th A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In this flaw, an attacker with a local user privilege may cause a denial of service problem due to a BUG statement referencing pmd_t x.
nvd
Redhat Enterprise Linux For Arm 64 vulnerabilities | cvebase