Skip to main content

Vendor/product archive

redhat / enterprise_linux_server_tus CVEs

Beta · best-effort

756 CVEs tagged to redhat / enterprise_linux_server_tus104 Critical, 266 High, 332 Medium, 54 Low, 0 Unrated.

CVE-2017-10664

Published Aug 2, 2017

qemu-nbd in QEMU (aka Quick Emulator) does not ignore SIGPIPE, which allows remote attackers to cause a denial of service (daemon crash) by disconnecting during a server-to-client…

CVSS 7.5 · High

CVE-2016-8743

Published Jul 27, 2017

Apache HTTP Server, in all releases prior to 2.2.32 and 2.4.25, was liberal in the whitespace accepted from requests and sent in response lines and headers. Accepting these differ…

CVSS 7.5 · High

CVE-2017-7980

Published Jul 25, 2017

Heap-based buffer overflow in Cirrus CLGD 54xx VGA Emulator in Quick Emulator (Qemu) 2.8 and earlier allows local guest OS users to execute arbitrary code or cause a denial of ser…

CVSS 7.8 · High

CVE-2017-9776

Published Jun 22, 2017

Integer overflow leading to Heap buffer overflow in JBIG2Stream.cc in pdftocairo in Poppler before 0.56 allows remote attackers to cause a denial of service (application crash) or…

CVSS 7.8 · High

CVE-2017-9775

Published Jun 22, 2017

Stack buffer overflow in GfxState.cc in pdftocairo in Poppler before 0.56 allows remote attackers to cause a denial of service (application crash) via a crafted PDF document.

CVSS 6.5 · Medium

CVE-2017-7668

Published Jun 20, 2017

The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input st…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2017-9462

Published Jun 6, 2017

In Mercurial before 4.1.3, "hg serve --stdio" allows remote authenticated users to launch the Python debugger, and consequently execute arbitrary code, by using --debugger as a re…

CVSS 8.8 · High

CVE-2017-9461

Published Jun 6, 2017

smbd in Samba before 4.4.10 and 4.5.x before 4.5.6 has a denial of service vulnerability (fd_open_atomic infinite loop with high CPU usage and memory consumption) due to wrongly h…

CVSS 6.5 · Medium

CVE-2017-9287

Published May 29, 2017

servers/slapd/back-mdb/search.c in OpenLDAP through 2.4.44 is prone to a double free vulnerability. A user with access to search the directory can crash slapd by issuing a search…

CVSS 6.5 · Medium

CVE-2017-8291

Published Apr 27, 2017

Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile (%pipe%" substring in a crafted .eps do…

CVSS 7.8 · High
evidence mentions
2
Buzz score
42.5
KEV listed

CVE-2017-3600

Published Apr 24, 2017

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client mysqldump). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and 5…

CVSS 6.6 · Medium

CVE-2017-3544

Published Apr 24, 2017

Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 6u141, 7u131 and…

CVSS 3.7 · Low
evidence mentions
3
Buzz score
23.9

CVE-2017-3539

Published Apr 24, 2017

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u141, 7u131 and 8u121; Java…

CVSS 3.1 · Low

CVE-2017-3533

Published Apr 24, 2017

Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 6u141, 7u131 and…

CVSS 3.7 · Low

CVE-2017-3464

Published Apr 24, 2017

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and 5.7.17…

CVSS 4.3 · Medium

CVE-2017-3456

Published Apr 24, 2017

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and 5.7.17…

CVSS 4.9 · Medium

CVE-2017-3453

Published Apr 24, 2017

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and…

CVSS 6.5 · Medium

CVE-2017-3309

Published Apr 24, 2017

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and…

CVSS 7.7 · High

CVE-2017-3308

Published Apr 24, 2017

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and 5.7.17…

CVSS 7.7 · High
Showing 551-575 of 756 CVEsPage 23 of 31