Vulnerabilidades em RED HAT

2.045 resultados
Análise Vexday

Red Hat apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes sob exploração ativa no momento. A vulnerabilidade identificada relaciona-se a deficiências em armazenamento de credenciais (CWE-522), mas não figura entre as críticas e permanece sem atividade recente de ataque.

CVE-2023-4639HIGHUndertow: cookie smuggling/spoofingEPSS 1.1%CVE-2024-2002HIGHLibdwarf: crashes randomly on fuzzed objectEPSS 1.1%CVE-2025-9566HIGHPodman: podman kube play command may overwrite host filesEPSS 1.1%CVE-2018-10937MEDIUMA cross site scripting flaw exists in the tetonic-console component of Openshift Container Platform 3.11. An attacker with the ability to crEPSS 1.1%CVE-2023-39418LOWPostgresql: merge fails to enforce update or select row security policiesEPSS 1.1%CVE-2023-1194HIGHUse-after-free in parse_lease_state()EPSS 1.1%CVE-2019-14855MEDIUMA flaw was found in the way certificate signatures could be forged using collisions found in the SHA-1 algorithm. An attacker could use thisEPSS 1.1%CVE-2023-6544MEDIUMKeycloak: authorization bypassEPSS 1.1%CVE-2026-5121HIGHLibarchive: libarchive: arbitrary code execution via integer overflow in iso9660 image processingEPSS 1.1%CVE-2026-5201HIGHGdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg imageEPSS 1.1%CVE-2014-3585—redhat-upgrade-tool: Does not check GPG signatures when upgrading versionsEPSS 1.1%CVE-2024-1300MEDIUMIo.vertx:vertx-core: memory leak when a tcp server is configured with tls and sni supportEPSS 1.1%CVE-2026-42010HIGHGnutls: gnutls: authentication bypass via nul character in usernameEPSS 1.1%CVE-2026-23537CRITICALFeast: unauthenticated arbitrary file writeEPSS 1.0%CVE-2023-1193MEDIUMUse-after-free in setup_async_work()EPSS 1.0%CVE-2025-2251MEDIUMOrg.jboss.eap:wildfly-ejb3: improper deserialization in jboss marshalling allows remote code executionEPSS 1.0%CVE-2022-1415HIGHDrools: unsafe data deserialization in streamutilsEPSS 1.0%CVE-2026-84838HIGHRpm: command injection in rpmuncompress via unescaped filenames passed to popen()EPSS 1.0%CVE-2026-16445HIGHDracut: dracut: root code execution via dhcp options command injection in networkmanager initrd moduleEPSS 1.0%CVE-2023-3758HIGHSssd: race condition during authorization leads to gpo policies functioning inconsistentlyEPSS 1.0%