Red Hat / Enterprise Linux Hpc Node Eus
81 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2015-3149 | OpenJDK8: insecure hsperfdata temporary file handling, CVE-2015-0383 regression (Hotspot) | MEDIUM | 5.5 | Jul 25, 2017 |
| CVE-2015-5300 | ntp: MITM attacker can force ntpd to make a step larger than the panic threshold | HIGH | 7.5 | Jul 21, 2017 |
| CVE-2016-7166 | libarchive: Denial of service using a crafted gzip file | MEDIUM | 5.5 | Sep 21, 2016 |
| CVE-2016-5844 | libarchive: undefined behaviour (integer overflow) in iso parser | MEDIUM | 6.5 | Sep 21, 2016 |
| CVE-2016-5418 | libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite | HIGH | 7.5 | Sep 21, 2016 |
| CVE-2016-4809 | libarchive: Memory allocate error with symbolic links in cpio archives | HIGH | 7.5 | Sep 21, 2016 |
| CVE-2016-4302 | libarchive: Heap buffer overflow in the Rar decompression functionality | HIGH | 7.8 | Sep 21, 2016 |
| CVE-2016-4300 | libarchive: Heap buffer overflow vulnerability in the 7zip read_SubStreamsInfo | HIGH | 8.4 | Sep 21, 2016 |
| CVE-2016-5388 | Tomcat: CGI sets environmental variable based on user supplied Proxy request header | HIGH | 8.1 | Jul 19, 2016 |
| CVE-2016-4470 | kernel: Uninitialized variable in request_key handling causes kernel crash in error handling path | HIGH | 7.8 | Jun 27, 2016 |
| CVE-2016-0758 | kernel: tags with indefinite length can corrupt pointers in asn1_find_indefinite_length() | HIGH | 7.8 | Jun 27, 2016 |
| CVE-2016-3698 | libndp: denial of service due to insufficient validation of source of NDP messages | HIGH | 8.1 | Jun 13, 2016 |
| CVE-2016-2150 | spice: Host memory access from guest with invalid primary surface parameters | HIGH | 7.1 | Jun 9, 2016 |
| CVE-2016-0749 | spice: heap-based memory corruption within smartcard handling | CRITICAL | 9.8 | Jun 9, 2016 |
| CVE-2015-5261 | spice: host memory access from guest using crafted images | HIGH | 7.1 | Jun 7, 2016 |
| CVE-2015-5260 | spice: insufficient validation of surface_id parameter can cause crash | HIGH | 7.8 | Jun 7, 2016 |
| CVE-2015-4605 | php: denial of service when processing a crafted file with Fileinfo | HIGH | 7.5 | May 16, 2016 |
| CVE-2015-4604 | php: denial of service when processing a crafted file with Fileinfo | HIGH | 7.5 | May 16, 2016 |
| CVE-2015-4603 | php: exception:: getTraceAsString type confusion issue after unserialize | CRITICAL | 9.8 | May 16, 2016 |
| CVE-2015-4602 | php: Incomplete Class unserialization type confusion | CRITICAL | 9.8 | May 16, 2016 |
| CVE-2015-4601 | php: type confusion issue in unserialize() with various SOAP methods | CRITICAL | 9.8 | May 16, 2016 |
| CVE-2015-4600 | php: type confusion issue in unserialize() with various SOAP methods | CRITICAL | 9.8 | May 16, 2016 |
| CVE-2015-4599 | php: type confusion issue in unserialize() with various SOAP methods | CRITICAL | 9.8 | May 16, 2016 |
| CVE-2015-4598 | php: missing null byte checks for paths in DOM and GD extensions | MEDIUM | 6.5 | May 16, 2016 |
| CVE-2015-3412 | php: missing null byte checks for paths in various PHP extensions | MEDIUM | 5.3 | May 16, 2016 |
Showing 1 to 25 of 81 CVEs