Red Hat / Software Collections
137 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-5870 | Postgresql: role pg_signal_backend can signal certain superuser processes. | MEDIUM | 4.4 | Dec 10, 2023 |
| CVE-2023-5868 | Postgresql: memory disclosure in aggregate function calls | MEDIUM | 4.3 | Dec 10, 2023 |
| CVE-2023-5869 | Postgresql: buffer overrun from integer overflow in array modification | HIGH | 8.8 | Dec 10, 2023 |
| CVE-2022-4900 | Potential buffer overflow in php_cli_server_startup_workers | MEDIUM | 6.2 | Nov 2, 2023 |
| CVE-2023-39417 | Postgresql: extension script @substitutions@ within quoting allow sql injection | HIGH | 8.8 | Aug 11, 2023 |
| CVE-2023-2455 | postgresql: row security policies disregard user ID changes after inlining. | MEDIUM | 5.4 | Jun 9, 2023 |
| CVE-2023-2454 | postgresql: schema_element defeats protective search_path changes | HIGH | 7.2 | Jun 9, 2023 |
| CVE-2023-0056 | haproxy: segfault DoS | MEDIUM | 6.5 | Mar 23, 2023 |
| CVE-2022-4904 | c-ares: buffer overflow in config_sortlist() due to missing string length check | HIGH | 8.6 | Mar 6, 2023 |
| CVE-2020-10735 | python: int() type in PyLong_FromString() does not limit amount of digits converting text to int leading to DoS | HIGH | 7.5 | Sep 9, 2022 |
| CVE-2021-4189 | python: ftplib should not use the host from the PASV response | MEDIUM | 5.3 | Aug 24, 2022 |
| CVE-2021-3656 | kernel: SVM nested virtualization issue in KVM (VMLOAD/VMSAVE) | HIGH | 8.8 | Mar 4, 2022 |
| CVE-2021-23214 | postgresql: server processes unencrypted bytes from man-in-the-middle | HIGH | 8.1 | Mar 4, 2022 |
| CVE-2022-0711 | haproxy: Denial of service via set-cookie2 header | HIGH | 7.5 | Mar 2, 2022 |
| CVE-2021-3677 | postgresql: memory disclosure in certain queries | MEDIUM | 6.5 | Mar 2, 2022 |
| CVE-2021-41819 | ruby: Cookie prefix spoofing in CGI::Cookie.parse | HIGH | 7.5 | Jan 1, 2022 |
| CVE-2021-41817 | ruby: Regular expression denial of service vulnerability of Date parsing methods | HIGH | 7.5 | Jan 1, 2022 |
| CVE-2021-4104 | Deserialization of untrusted data in JMSAppender in Apache Log4j 1.2 | HIGH | 7.5 | Dec 14, 2021 |
| CVE-2021-32672 | Vulnerability in Lua Debugger in Redis | MEDIUM | 5.3 | Oct 4, 2021 |
| CVE-2021-40438 KEV | mod_proxy SSRF | CRITICAL | 9.0 | Sep 16, 2021 |
| CVE-2021-32027 | postgresql: Buffer overrun from integer overflow in array subscripting calculations | HIGH | 8.8 | Jun 1, 2021 |
| CVE-2021-3426 | python: Information disclosure via pydoc | MEDIUM | 5.7 | May 20, 2021 |
| CVE-2021-3393 | postgresql: Partition constraint violation errors leak values of denied columns | MEDIUM | 4.3 | Apr 1, 2021 |
| CVE-2021-20270 | python-pygments: Infinite loop in SML lexer may lead to DoS | HIGH | 8.7 | Mar 23, 2021 |
| CVE-2019-10196 | nodejs-http-proxy-agent: Denial of Service and data leak due to improper buffer sanitization | MEDIUM | 9.8 | Mar 19, 2021 |
Showing 1 to 25 of 137 CVEs