Skip to main content

Vendor/product archive

redhat / enterprise_linux CVEs

Beta · best-effort

2,186 CVEs tagged to redhat / enterprise_linux201 Critical, 706 High, 1,086 Medium, 193 Low, 0 Unrated.

CVE-2014-0186

Published Jun 14, 2014

A certain tomcat7 package for Apache Tomcat 7 in Red Hat Enterprise Linux (RHEL) 7 allows remote attackers to cause a denial of service (CPU consumption) via a crafted request. N…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3470

Published Jun 5, 2014

The ssl3_send_client_key_exchange function in s3_clnt.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h, when an anonymous ECDH cipher suite is used, allow…

CVSS 4.3 · Medium
evidence mentions
4
Buzz score
24.1

CVE-2014-0221

Published Jun 5, 2014

The dtls1_get_message_fragment function in d1_both.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h allows remote attackers to cause a denial of service (…

CVSS 4.3 · Medium
evidence mentions
3
Buzz score
21.9

CVE-2014-0150

Published Apr 18, 2014

Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3277

Published Apr 15, 2014

Untrusted search path vulnerability in a certain Red Hat build script for the ibmssh executable in ibutils packages before ibutils-1.5.7-2.el6 in Red Hat Enterprise Linux (RHEL) 6…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-7347

Published Mar 31, 2014

Luci in Red Hat Conga does not properly enforce the user session timeout, which might allow attackers to gain access to the session by reading the __ac session cookie. NOTE: this…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-3359

Published Mar 31, 2014

Luci in Red Hat Conga stores the user's username and password in a Base64 encoded string in the __ac session cookie, which allows attackers to gain privileges by accessing this co…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-0055

Published Mar 26, 2014

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properl…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1,776-1,800 of 2,186 CVEsPage 72 of 88