Skip to main content

Vendor/product archive

redhat / enterprise_linux_desktop CVEs

Beta · best-effort

1,939 CVEs tagged to redhat / enterprise_linux_desktop343 Critical, 702 High, 771 Medium, 123 Low, 0 Unrated.

CVE-2019-3835

Published Mar 25, 2019

It was found that the superexec operator was available in the internal dictionary in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to,…

CVSS 5.5 · Medium

CVE-2019-3863

Published Mar 25, 2019

A flaw was found in libssh2 before 1.8.1 creating a vulnerability on the SSH client side. A server could send a multiple keyboard interactive response messages whose total length…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2019-9948

Published Mar 23, 2019

urllib in Python 2.x through 2.7.16 supports the local_file: scheme, which makes it easier for remote attackers to bypass protection mechanisms that blacklist file: URIs, as demon…

CVSS 9.1 · Critical

CVE-2019-6116

Published Mar 21, 2019

In Artifex Ghostscript through 9.26, ephemeral or transient procedures can allow access to system operators, leading to remote code execution.

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2019-3816

Published Mar 14, 2019

Openwsman, versions up to and including 2.6.9, are vulnerable to arbitrary file disclosure because the working directory of openwsmand daemon was set to root directory. A remote,…

CVSS 7.5 · High

CVE-2018-18498

Published Feb 28, 2019

A potential vulnerability leading to an integer overflow can occur during buffer size calculations for images when a raw value is used instead of the checked value. This leads to…

CVSS 9.8 · Critical

CVE-2018-18494

Published Feb 28, 2019

A same-origin policy violation allowing the theft of cross-origin URL entries when using the Javascript location property to cause a redirection to another site using performance.…

CVSS 6.5 · Medium

CVE-2018-18493

Published Feb 28, 2019

A buffer overflow can occur in the Skia library during buffer offset calculations with hardware accelerated canvas 2D actions due to the use of 32-bit calculations instead of 64-b…

CVSS 9.8 · Critical

CVE-2018-18492

Published Feb 28, 2019

A use-after-free vulnerability can occur after deleting a selection element due to a weak reference to the select element in the options collection. This results in a potentially…

CVSS 9.8 · Critical

CVE-2018-12405

Published Feb 28, 2019

Mozilla developers and community members reported memory safety bugs present in Firefox 63 and Firefox ESR 60.3. Some of these bugs showed evidence of memory corruption and we pre…

CVSS 9.8 · Critical

CVE-2018-12396

Published Feb 28, 2019

A vulnerability where a WebExtension can run content scripts in disallowed contexts following navigation or other events. This allows for potential privilege escalation by the Web…

CVSS 6.5 · Medium

CVE-2018-12393

Published Feb 28, 2019

A potential vulnerability was found in 32-bit builds where an integer overflow during the conversion of scripts to an internal UTF-16 representation could result in allocating a b…

CVSS 7.5 · High

CVE-2018-12392

Published Feb 28, 2019

When manipulating user events in nested loops while opening a document through script, it is possible to trigger a potentially exploitable crash due to poor event handling. This v…

CVSS 9.8 · Critical

CVE-2018-12390

Published Feb 28, 2019

Mozilla developers and community members reported memory safety bugs present in Firefox 62 and Firefox ESR 60.2. Some of these bugs showed evidence of memory corruption and we pre…

CVSS 9.8 · Critical

CVE-2018-12389

Published Feb 28, 2019

Mozilla developers and community members reported memory safety bugs present in Firefox ESR 60.2. Some of these bugs showed evidence of memory corruption and we presume that with…

CVSS 8.8 · High
Showing 201-225 of 1,939 CVEsPage 9 of 78