Redhat Update Infrastructure vulnerabilities
4 known vulnerabilities affecting redhat/update_infrastructure.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2023-50782HIGHCVSS 7.5v42024-02-05
CVE-2023-50782 [HIGH] CWE-203 CVE-2023-50782: A flaw was found in the python-cryptography package. This issue may allow a remote attacker to decry
A flaw was found in the python-cryptography package. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data.
nvd
CVE-2023-50781HIGHCVSS 7.5v42024-02-05
CVE-2023-50781 [HIGH] CWE-203 CVE-2023-50781: A flaw was found in m2crypto. This issue may allow a remote attacker to decrypt captured messages in
A flaw was found in m2crypto. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data.
nvd
CVE-2022-3644MEDIUMCVSS 5.5v3.02022-10-25
CVE-2022-3644 [MEDIUM] CWE-256 CVE-2022-3644: The collection remote for pulp_ansible stores tokens in plaintext instead of using pulp's encrypted
The collection remote for pulp_ansible stores tokens in plaintext instead of using pulp's encrypted field and exposes them in read/write mode via the API () instead of marking it as write only.
nvd
CVE-2013-4518MEDIUMCVSS 5.5v2.1.32019-11-04
CVE-2013-4518 [MEDIUM] CWE-200 CVE-2013-4518: RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
nvd