Red Hat / Enterprise Linux Hpc Node
146 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2015-3149 | OpenJDK8: insecure hsperfdata temporary file handling, CVE-2015-0383 regression (Hotspot) | MEDIUM | 5.5 | Jul 25, 2017 |
| CVE-2015-5300 | ntp: MITM attacker can force ntpd to make a step larger than the panic threshold | HIGH | 7.5 | Jul 21, 2017 |
| CVE-2015-5219 | ntp: infinite loop in sntp processing crafted packet | HIGH | 7.5 | Jul 21, 2017 |
| CVE-2015-5195 | ntp: ntpd crash when processing config commands with statistics type | HIGH | 7.5 | Jul 21, 2017 |
| CVE-2015-5194 | ntp: crash with crafted logconfig configuration command | HIGH | 7.5 | Jul 21, 2017 |
| CVE-2016-7050 | RESTEasy: SerializableProvider enabled by default and deserializes untrusted data | CRITICAL | 9.8 | Jun 8, 2017 |
| CVE-2016-5416 | 389-ds-base: ACI readable by anonymous user | HIGH | 7.5 | Jun 8, 2017 |
| CVE-2016-5405 | 389-ds-base: Password verification vulnerable to timing attack | CRITICAL | 9.8 | Jun 8, 2017 |
| CVE-2016-4992 | 389-ds-base: Information disclosure via repeated use of LDAP ADD operation | HIGH | 7.5 | Jun 8, 2017 |
| CVE-2016-3099 | mod_nss: Invalid handling of +CIPHER operator | HIGH | 7.5 | Jun 8, 2017 |
| CVE-2016-5410 | firewalld: Firewall configuration can be modified by any logged in user | MEDIUM | 6.1 | Apr 19, 2017 |
| CVE-2016-6489 | nettle: RSA/DSA code is vulnerable to cache-timing related attacks | HIGH | 7.5 | Apr 14, 2017 |
| CVE-2016-4455 | subscription-manager: sensitive world readable files in /var/lib/rhsm/ | LOW | 3.3 | Apr 14, 2017 |
| CVE-2016-4989 | setroubleshoot: command injection issues | HIGH | 7.0 | Apr 11, 2017 |
| CVE-2016-4446 | setroubleshoot-plugins: insecure commands.getoutput use in the allow_execstack plugin | HIGH | 7.0 | Apr 11, 2017 |
| CVE-2016-4445 | setroubleshoot: insecure use of commands.getstatusoutput in sealert | HIGH | 7.0 | Apr 11, 2017 |
| CVE-2016-4444 | setroubleshoot-plugins: insecure commands.getstatusoutput use in the allow_execmod plugin | HIGH | 7.0 | Apr 11, 2017 |
| CVE-2016-9636 | gstreamer-plugins-good: Heap buffer overflow in FLIC decoder | CRITICAL | 9.8 | Jan 27, 2017 |
| CVE-2016-9635 | gstreamer-plugins-good: Heap buffer overflow in FLIC decoder | CRITICAL | 9.8 | Jan 27, 2017 |
| CVE-2016-9634 | gstreamer-plugins-good: Heap buffer overflow in FLIC decoder | CRITICAL | 9.8 | Jan 27, 2017 |
| CVE-2016-7545 | policycoreutils: SELinux sandbox escape via TIOCSTI ioctl | HIGH | 8.8 | Jan 19, 2017 |
| CVE-2016-7091 | sudo: Possible info leak via INPUTRC | MEDIUM | 4.4 | Dec 22, 2016 |
| CVE-2014-8241 | tigervnc: NULL pointer dereference flaw in XRegion | CRITICAL | 9.8 | Dec 14, 2016 |
| CVE-2016-7796 | systemd: freeze when PID 1 receives a zero-length message over notify socket | MEDIUM | 6.8 | Oct 13, 2016 |
| CVE-2016-7166 | libarchive: Denial of service using a crafted gzip file | MEDIUM | 5.5 | Sep 21, 2016 |
Showing 1 to 25 of 146 CVEs