Red Hat / Enterprise Linux Eus
786 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-31431 KEV | crypto: algif_aead - Revert to operating out-of-place | HIGH | 7.8 | Apr 22, 2026 |
| CVE-2026-34486 KEV | Apache Tomcat: Fix for CVE-2026-29146 allowed bypass of EncryptInterceptor | HIGH | 7.5 | Apr 9, 2026 |
| CVE-2026-21710 | Node.js: Node.js: Denial of Service due to crafted HTTP `__proto__` header | HIGH | 7.5 | Mar 30, 2026 |
| CVE-2026-1709 | Keylime: keylime: authentication bypass allows unauthorized administrative operations due to missing client-side tls authentication | CRITICAL | 9.8 | Feb 6, 2026 |
| CVE-2025-62230 | Xorg: xwayland: use-after-free in xkb client resource removal | HIGH | 7.3 | Oct 30, 2025 |
| CVE-2025-62231 | Xorg: xmayland: value overflow in xkbsetcompatmap() | HIGH | 7.3 | Oct 30, 2025 |
| CVE-2025-31277 KEV | webkitgtk: Processing maliciously crafted web content may lead to memory corruption | HIGH | 8.8 | Jul 29, 2025 |
| CVE-2025-6021 | Libxml2: integer overflow in xmlbuildqname() leads to stack buffer overflow in libxml2 | HIGH | 7.5 | Jun 12, 2025 |
| CVE-2025-3155 | Yelp: arbitrary file read | HIGH | 7.4 | Apr 3, 2025 |
| CVE-2025-2784 | Libsoup: heap buffer over-read in `skip_insignificant_space` when sniffing content | HIGH | 7.0 | Apr 3, 2025 |
| CVE-2025-1756 | MongoDB Shell may be susceptible to local privilege escalation in Windows | HIGH | 7.8 | Feb 27, 2025 |
| CVE-2024-12087 | Rsync: path traversal vulnerability in rsync | HIGH | 7.5 | Jan 14, 2025 |
| CVE-2024-12088 | Rsync: --safe-links option bypass leads to path traversal | HIGH | 7.5 | Jan 14, 2025 |
| CVE-2024-12085 | Rsync: info leak via uninitialized stack contents | HIGH | 7.5 | Jan 14, 2025 |
| CVE-2024-9676 | Podman: buildah: cri-o: symlink traversal vulnerability in the containers/storage library can cause denial of service (dos) | MEDIUM | 6.5 | Oct 15, 2024 |
| CVE-2024-9675 | Buildah: buildah allows arbitrary directory mount | MEDIUM | 5.3 | Oct 9, 2024 |
| CVE-2024-6387 | Openssh: regresshion - race condition in ssh allows rce/dos | HIGH | 8.1 | Jul 1, 2024 |
| CVE-2024-3183 | Freeipa: user can obtain a hash of the passwords of all domain users and perform offline brute force | HIGH | 8.1 | Jun 12, 2024 |
| CVE-2024-3049 | Booth: specially crafted hash can lead to invalid hmac being accepted by booth server | MEDIUM | 5.9 | Jun 6, 2024 |
| CVE-2023-3758 | Sssd: race condition during authorization leads to gpo policies functioning inconsistently | HIGH | 7.1 | Apr 18, 2024 |
| CVE-2022-24809 | net-snmp: A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference | MEDIUM | 6.5 | Apr 16, 2024 |
| CVE-2022-24808 | net-snmp: A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer dereference | MEDIUM | 6.5 | Apr 16, 2024 |
| CVE-2022-24807 | net-snmp: A malformed OID in a SET request to SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out-of-bounds memory access | MEDIUM | 6.5 | Apr 16, 2024 |
| CVE-2022-24806 | net-snmp vulnerable to Improper Input Validation when SETing malformed OIDs in master agent and subagent simultaneously | MEDIUM | 6.5 | Apr 16, 2024 |
| CVE-2022-24805 | net-snmp: A buffer overflow in the handling of the INDEX of NET-SNMP-VACM-MIB can cause an out-of-bounds memory access. | HIGH | 8.8 | Apr 16, 2024 |
Showing 1 to 25 of 786 CVEs