cbcvebase.

Redhat Enterprise Linux Workstation vulnerabilities

1,845 known vulnerabilities affecting redhat/enterprise_linux_workstation.

Total CVEs
1,845
CISA KEV
57
actively exploited
Public exploits
138
Exploited in wild
75
Severity breakdown
CRITICAL336HIGH698MEDIUM712LOW99

Vulnerabilities

Page 93 of 93
CVE-2011-1044P4LOWCVSS 2.1v5.02011-02-18
CVE-2011-1044 [LOW] CVE-2011-1044: The ib_uverbs_poll_cq function in drivers/infiniband/core/uverbs_cmd.c in the Linux kernel before 2. The ib_uverbs_poll_cq function in drivers/infiniband/core/uverbs_cmd.c in the Linux kernel before 2.6.37 does not initialize a certain response buffer, which allows local users to obtain potentially sensitive information from kernel memory via vectors that cause this buffer to be only partially filled, a different vulnerability than CVE-2010-4649.
nvd
CVE-2014-0189P4LOWCVSS 2.1v7.02014-05-02
CVE-2014-0189 [LOW] CWE-310 CVE-2014-0189: virt-who uses world-readable permissions for /etc/sysconfig/virt-who, which allows local users to ob virt-who uses world-readable permissions for /etc/sysconfig/virt-who, which allows local users to obtain password for hypervisors by reading the file.
nvd
CVE-2013-0241P4LOWCVSS 2.1v6.02013-02-13
CVE-2013-0241 [LOW] CWE-399 CVE-2013-0241: The QXL display driver in QXL Virtual GPU 0.1.0 allows local users to cause a denial of service (gue The QXL display driver in QXL Virtual GPU 0.1.0 allows local users to cause a denial of service (guest crash or hang) via a SPICE connection that prevents other threads from obtaining the qemu_mutex mutex. NOTE: some of these details are obtained from third party information.
nvd
CVE-2012-3160P4LOWCVSS 2.1v6.02012-10-16
CVE-2012-3160 [LOW] CVE-2012-3160: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5. Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows local users to affect confidentiality via unknown vectors related to Server Installation.
nvd
CVE-2012-4453P4LOWCVSS 2.1v6.02012-10-09
CVE-2012-4453 [LOW] CWE-276 CVE-2012-4453: dracut.sh in dracut, as used in Red Hat Enterprise Linux 6, Fedora 16 and 17, and possibly other pro dracut.sh in dracut, as used in Red Hat Enterprise Linux 6, Fedora 16 and 17, and possibly other products, creates initramfs images with world-readable permissions, which might allow local users to obtain sensitive information.
nvd
Redhat Enterprise Linux Workstation vulnerabilities | cvebase