Red Hat / Enterprise Linux Desktop
1,927 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-1086 KEV | Use-after-free in Linux kernel's netfilter: nf_tables component | HIGH | 7.8 | Jan 31, 2024 |
| CVE-2024-0409 | Xorg-x11-server: selinux context corruption | HIGH | 7.8 | Jan 18, 2024 |
| CVE-2024-0408 | Xorg-x11-server: selinux unlabeled glx pbuffer | MEDIUM | 5.5 | Jan 18, 2024 |
| CVE-2023-6816 | Xorg-x11-server: heap buffer overflow in devicefocusevent and procxiquerypointer | CRITICAL | 9.8 | Jan 18, 2024 |
| CVE-2023-5455 | Ipa: invalid csrf protection | MEDIUM | 6.5 | Jan 10, 2024 |
| CVE-2023-5869 | Postgresql: buffer overrun from integer overflow in array modification | HIGH | 8.8 | Dec 10, 2023 |
| CVE-2023-3972 | Insights-client: unsafe handling of temporary files and directories | HIGH | 7.8 | Nov 1, 2023 |
| CVE-2023-5367 | Xorg-x11-server: out-of-bounds write in xichangedeviceproperty/rrchangeoutputproperty | HIGH | 7.8 | Oct 25, 2023 |
| CVE-2023-3899 | Subscription-manager: inadequate authorization of com.redhat.rhsm1 d-bus interface allows local users to modify configuration | HIGH | 7.8 | Aug 23, 2023 |
| CVE-2023-0494 | xorg-x11-server: DeepCopyPointerClasses use-after-free leads to privilege elevation | HIGH | 7.8 | Mar 27, 2023 |
| CVE-2019-8720 KEV | webkitgtk: Multiple memory corruption issues leading to arbitrary code execution | HIGH | 8.8 | Mar 6, 2023 |
| CVE-2022-4254 | sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters | HIGH | 8.8 | Feb 1, 2023 |
| CVE-2022-0330 | kernel: possible privileges escalation due to missing TLB flush | HIGH | 7.8 | Mar 25, 2022 |
| CVE-2021-3656 | kernel: SVM nested virtualization issue in KVM (VMLOAD/VMSAVE) | HIGH | 8.8 | Mar 4, 2022 |
| CVE-2021-44142 | samba: Out-of-bounds heap read/write vulnerability in VFS module vfs_fruit allows code execution | CRITICAL | 9.9 | Feb 21, 2022 |
| CVE-2021-4091 | 389-ds-base: double free of the virtual attribute context in persistent search | HIGH | 7.5 | Feb 18, 2022 |
| CVE-2020-25719 | samba: Samba AD DC did not always rely on the SID and PAC in Kerberos tickets | HIGH | 7.2 | Feb 18, 2022 |
| CVE-2020-25717 | samba: Active Directory (AD) domain user could become root on domain members | HIGH | 8.1 | Feb 18, 2022 |
| CVE-2016-2124 | samba: SMB1 client connections can be downgraded to plaintext authentication | MEDIUM | 6.8 | Feb 18, 2022 |
| CVE-2021-4034 KEV | polkit: Local privilege escalation in pkexec due to incorrect handling of argument vector | HIGH | 7.8 | Jan 28, 2022 |
| CVE-2020-27769 | ImageMagick: outside the range of representable values of type 'float' at MagickCore/quantize.c | LOW | 3.3 | May 14, 2021 |
| CVE-2020-3864 | webkitgtk: Non-unique security origin for DOM object contexts | HIGH | 7.8 | Oct 27, 2020 |
| CVE-2019-8846 | webkitgtk: Use after free issue may lead to remote code execution | HIGH | 8.8 | Oct 27, 2020 |
| CVE-2019-8844 | webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution | HIGH | 8.8 | Oct 27, 2020 |
| CVE-2019-8835 | webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution | HIGH | 8.8 | Oct 27, 2020 |
Showing 1 to 25 of 1,927 CVEs