Skip to main content

Vendor archive

redhat CVEs

Beta · best-effort

5,981 CVEs tagged to vendor redhat666 Critical, 2,011 High, 2,837 Medium, 467 Low, 0 Unrated.

CVE-2024-6505

Published Jul 5, 2024

A flaw was found in the virtio-net device in QEMU. When enabling the RSS feature on the virtio-net network card, the indirections_table data within RSS becomes controllable. Setti…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-38319

Published Jun 22, 2024

IBM Security SOAR 51.0.2.0 could allow an authenticated user to execute malicious code loaded from a specially crafted script. IBM X-Force ID: 294830.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0092

Published Jun 13, 2024

NVIDIA GPU Driver for Windows and Linux contains a vulnerability where an improper check or improper handling of exception conditions might lead to denial of service.

CVSS 5.5 · Medium

CVE-2024-0091

Published Jun 13, 2024

NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where a user can cause an untrusted pointer dereference by executing a driver API. A successful exploit of…

CVSS 7.8 · High

CVE-2024-0090

Published Jun 13, 2024

NVIDIA GPU driver for Windows and Linux contains a vulnerability where a user can cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execu…

CVSS 7.8 · High

CVE-2024-5891

Published Jun 12, 2024

A vulnerability was found in Quay. If an attacker can obtain the client ID for an application, they can use an OAuth token to authenticate despite not having access to the organiz…

CVSS 4.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5742

Published Jun 12, 2024

A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If Nano is killed while editing, a file it saves to an emerge…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-3049

Published Jun 6, 2024

A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), it may allow an invalid HMAC to be accepted by the Booth ser…

CVSS 5.9 · Medium

CVE-2024-4812

Published Jun 5, 2024

A flaw was found in the Katello plugin for Foreman, where it is possible to store malicious JavaScript code in the "Description" field of a user. This code can be executed when op…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-3716

Published Jun 5, 2024

A flaw was found in foreman-installer when puppet-candlepin is invoked cpdb with the --password parameter. This issue leaks the password in the process list and allows an attacker…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-3623

Published Apr 25, 2024

A flaw was found when using mirror-registry to install Quay. It uses a default database secret key, which is stored in plain-text format in one of the configuration template files…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-3622

Published Apr 25, 2024

A flaw was found when using mirror-registry to install Quay. It uses a default secret, which is stored in plain-text format in one of the configuration template files. This issue…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 401-425 of 5,981 CVEsPage 17 of 240