← redhat

redhat / enterprise_linux

215 known vulnerabilities in redhat enterprise_linux.

CVEPriorityEPSSCVSSKEVWhat
CVE-2021-40438 Act now 100.0% 9.0 A crafted request uri-path can cause mod_proxy to forward the request to an orig…
CVE-2026-31431 Act now 99.9% 7.8 In the Linux kernel, the following vulnerability has been resolved: crypto: alg…
CVE-2026-34486 Act now 98.6% 7.5 Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the f…
CVE-2021-4034 Act now 94.9% 7.8 A local privilege escalation vulnerability was found on polkit's pkexec utility.…
CVE-2015-3246 Act now 8.8% 5.1 libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper progr…
CVE-2015-5287 Act now 5.0% 7.8 The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.…
CVE-2023-46847 High 88.4% 8.6 Squid is vulnerable to a Denial of Service, where a remote attacker can perform…
CVE-2026-21710 Medium 25.0% 7.5 A flaw in Node.js HTTP request handling causes an uncaught `TypeError` when a re…
CVE-2023-1380 Medium 16.5% 7.1 A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net…
CVE-2026-4480 Medium 13.9% 9.0 A flaw was found in the Samba printing subsystem. Samba passes the client-contro…
CVE-2026-9256 Medium 10.9% 8.1 NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_mo…
CVE-2024-12085 Medium 8.8% 7.5 A flaw was found in rsync which could be triggered when rsync compares file chec…
CVE-2026-42055 Medium 6.5% 8.1 NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_m…
CVE-2022-27666 Medium 5.5% 7.8 A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ip…
CVE-2026-4408 Medium 2.5% 9.0 A flaw was found in Samba. A remote attacker can exploit a misconfiguration in S…
CVE-2025-9784 Medium 2.3% 7.5 A flaw was found in Undertow where malformed client requests can trigger server-…
CVE-2022-1199 Medium 2.0% 7.5 A flaw was found in the Linux kernel. This flaw allows an attacker to crash the …
CVE-2023-52355 Medium 1.8% 7.5 An out-of-memory flaw was found in libtiff that could be triggered by passing a …
CVE-2023-4853 Medium 1.4% 8.1 A flaw was found in Quarkus where HTTP security policies are not sanitizing cert…
CVE-2025-6021 Medium 1.4% 7.5 A flaw was found in libxml2's xmlBuildQName function, where integer overflows in…
CVE-2026-42009 Medium 1.3% 7.5 A flaw was found in gnutls. A remote attacker could exploit an issue in the Data…
CVE-2025-7424 Medium 1.2% 7.5 A flaw was found in the libxslt library. The same memory field, psvi, is used fo…
CVE-2024-5154 Medium 1.2% 8.1 A flaw was found in cri-o. A malicious container can create a symbolic link to a…
CVE-2026-4424 Medium 1.2% 7.5 A flaw was found in libarchive. This heap out-of-bounds read vulnerability exist…
CVE-2022-1011 Medium 1.2% 7.8 A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way…
CVE-2023-50781 Medium 1.1% 7.5 A flaw was found in m2crypto. This issue may allow a remote attacker to decrypt …
CVE-2026-5121 Medium 1.1% 7.5 A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerabi…
CVE-2026-42010 Medium 1.1% 7.1 A flaw was found in gnutls. Servers configured with RSA-PSK (Rivest–Shamir–Adlem…
CVE-2026-35092 Medium 1.0% 7.5 A flaw was found in Corosync. An integer overflow vulnerability in Corosync's jo…
CVE-2026-46625 Medium 0.9% 7.5 JavaScript Cookie is a JavaScript API for handling cookies, client-side. Prior t…
CVE-2026-35091 Medium 0.9% 8.2 A flaw was found in Corosync. A remote unauthenticated attacker can exploit a wr…
CVE-2026-1933 Medium 0.9% 7.1 A flaw was found in Samba’s handling of NTFS-style reparse points on shares conf…
CVE-2024-7341 Medium 0.8% 7.1 A session fixation issue was discovered in the SAML adapters provided by Keycloa…
CVE-2026-15722 Medium 0.8% 7.5 A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). Th…
CVE-2026-9064 Medium 0.8% 7.5 A flaw was found in 389-ds-base. The get_ldapmessage_controls_ext() function in …
CVE-2026-33845 Medium 0.8% 7.5 A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero len…
CVE-2023-3640 Medium 0.8% 7.0 A possible unauthorized memory access flaw was found in the Linux kernel's cpu_e…
CVE-2023-6546 Medium 0.7% 7.0 A race condition was found in the GSM 0710 tty multiplexor in the Linux kernel. …
CVE-2025-71319 Medium 0.7% 7.5 image-size through 2.0.2 contains a denial of service vulnerability that allows …
CVE-2021-44733 Medium 0.7% 7.0 A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Lin…
CVE-2026-44172 Medium 0.7% 9.1 MariaDB server is a community developed fork of MySQL server. In versions 3.3.18…
CVE-2026-28369 Medium 0.7% 8.7 A flaw was found in Undertow. When Undertow receives an HTTP request where the f…
CVE-2026-59090 Medium 0.6% 8.4 A flaw was found in GIMP's PSD file format plugin. This vulnerability, an unsign…
CVE-2026-0966 Medium 0.6% 8.2 A flaw was found in libssh. The API function `ssh_get_hexa()` is vulnerable to a…
CVE-2026-58016 Medium 0.5% 7.5 A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new…
CVE-2023-4692 Medium 0.5% 7.5 An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This is…
CVE-2026-11770 Medium 0.5% 7.5 A flaw was found in 389 Directory Server. An unauthenticated remote attacker can…
CVE-2023-42753 Medium 0.5% 7.0 An array indexing vulnerability was found in the netfilter subsystem of the Linu…
CVE-2022-1055 Medium 0.5% 7.8 A use-after-free exists in the Linux Kernel in tc_new_tfilter that could allow a…
CVE-2026-59087 Medium 0.5% 7.8 A flaw was found in the GIMP image manipulation program, specifically within its…
Page 1 of 5 Next →