Vulnerability index

Browse CVEs

60 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Hardened Images MEDIUM 6.5
CVE-2026-59843

A flaw was found in libssh. A remote authenticated peer can advertise a zero maximum packet size in SSH_MSG_CHANNEL_OPEN, causing later channel write…

No fix yet
Fix from $1,600 2026-07-21
Directory Server MEDIUM 6.5
CVE-2026-11611

A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory growth when an authenticated c…

Mitigation only
Fix from $1,600 2026-06-08
Hardened Images MEDIUM 5.5
CVE-2026-6844

A flaw was found in the `readelf` utility of the binutils package. A local attacker could exploit two Denial of Service (DoS) vulnerabilities by prov…

Mitigation only
Fix from $1,600 2026-04-22
Openshift Container Platform HIGH 7.7
CVE-2024-3056

A flaw was found in Podman. This issue may allow an attacker to create a specially crafted container that, when configured to share the same IPC with…

Fix: after 5.2.0
Fix from $1,950 2024-08-02
Enterprise Linux HIGH 7.5
CVE-2023-50868EPSS 82%

The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of se…

Fix: 4.8.5 / 4.9.3+
Fix from $1,950 2024-02-14
Storage MEDIUM 6.5
CVE-2023-42669

A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC stack elements. This vulnera…

Fix: 4.17.12 / 4.18.8+
Fix from $1,600 2023-11-06
Openshift Container Platform For Arm64 HIGH 7.5
CVE-2023-5625

A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2…

Patch available
Fix from $1,950 2023-11-01
Enterprise Linux MEDIUM 5.5
CVE-2023-43786

A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function. This flaw allows a local user to consume all available…

Fix: 1.8.7+
Fix from $1,600 2023-10-10
Openshift Container Platform MEDIUM 5.3
CVE-2023-3153

A flaw was found in Open Virtual Network where the service monitor MAC does not properly rate limit. This issue could allow an attacker to cause a de…

Fix: 22.03.3 / 22.09.2+
Fix from $1,600 2023-10-04
Openstack Platform MEDIUM 6.5
CVE-2023-3637

An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security gr…

Mitigation only
Fix from $1,600 2023-07-25
Enterprise Linux HIGH 7.5
CVE-2023-38200

A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections…

Patch available
Fix from $1,950 2023-07-24
Enterprise Linux HIGH 7.5
CVE-2023-2295

A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptabl…

Mitigation only
Fix from $1,950 2023-05-17
Ceph Storage MEDIUM 6.5
CVE-2023-0056

An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated r…

Mitigation only
Fix from $1,600 2023-03-23
Openstack Platform MEDIUM 6.5
CVE-2022-3277

An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security gr…

Fix: 18.6.0 / 19.5.0+
Fix from $1,600 2023-03-06
Openshift Container Platform MEDIUM 6.3
CVE-2022-1677

In OpenShift Container Platform, a user with permissions to create or modify Routes can craft a payload that inserts a malformed entry into one of th…

Patch available
Fix from $1,600 2022-09-01
Build Of Quarkus HIGH 7.5
CVE-2022-1259

A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of servic…

Fix: after 2.2.17
Fix from $1,950 2022-08-31
Openshift Container Platform MEDIUM 6.5
CVE-2022-0669

A flaw was found in dpdk. This flaw allows a malicious vhost-user master to attach an unexpected number of fds as ancillary data to VHOST_USER_GET_IN…

Fix: 22.03+
Fix from $1,600 2022-08-29
Amq Broker MEDIUM 5.3
CVE-2021-4040

A flaw was found in AMQ Broker. This issue can cause a partial interruption to the availability of AMQ Broker via an Out of memory (OOM) condition. T…

Fix: 2.19.1 / 7.10.0+
Fix from $1,600 2022-08-24
Fuse HIGH 7.5
CVE-2021-3690

A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw allows an attacker to cau…

Fix: 2.0.40 / 2.2.10+
Fix from $1,950 2022-08-23
Storage MEDIUM 6.5
CVE-2021-3670

MaxQueryDuration not honoured in Samba AD DC LDAP

Fix: 4.16.0+
Fix from $1,600 2022-08-23
Integration Camel K HIGH 7.5
CVE-2022-2053

When a POST request comes through AJP and the request exceeds the max-post-size limit (maxEntitySize), Undertow's AjpServerRequestConduit implementat…

Fix: 2.2.19+
Fix from $1,950 2022-08-05
Jboss Aerogear HIGH 7.5
CVE-2014-3648

The simplepush server iterates through the application installations and pushes a notification to the server provided by deviceToken. But this is use…

Mitigation only
Fix from $1,950 2022-07-01
Integration MEDIUM 5.9
CVE-2021-3629

A flaw was found in Undertow. A potential security issue in flow control handling by the browser over http/2 may potentially cause overhead or a deni…

Fix: 2.0.40 / 2.2.11+
Fix from $1,600 2022-05-24
Enterprise Linux MEDIUM 5.5
CVE-2021-4115

There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor exhaustion. The highest threa…

Patch available
Fix from $1,600 2022-02-21
Vscode Xml CRITICAL 9.1
CVE-2022-0671

A flaw was found in vscode-xml in versions prior to 0.19.0. Schema download could lead to blind SSRF or DoS via a large file.

Fix: 0.19.0+
Fix from $2,300 2022-02-18
Machine Config Operator MEDIUM 6.5
CVE-2020-1750

A flaw was found in the machine-config-operator that causes an OpenShift node to become unresponsive when a container consumes a large amount of memo…

Fix: 4.2.36 / 4.3.25+
Fix from $1,600 2021-06-07
Jboss Remoting MEDIUM 5.9
CVE-2020-35510

A flaw was found in jboss-remoting in versions before 5.0.20.SP1-redhat-00001. A malicious attacker could cause threads to hold up forever in the EJB…

Fix: 5.0.20+
Fix from $1,600 2021-06-02
Xnio MEDIUM 5.9
CVE-2020-14340

A vulnerability was discovered in XNIO where file descriptor leak caused by growing amounts of NIO Selector file handles between garbage collection c…

Fix: 3.7.9 / 3.8.2+
Fix from $1,600 2021-06-02
Integration Camel K HIGH 7.5
CVE-2020-14326

A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with…

Fix: 4.5.6+
Fix from $1,950 2021-06-02
Enterprise Linux MEDIUM 5.3
CVE-2021-20201

A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumpt…

Fix: 0.14.92+
Fix from $1,600 2021-05-28