Vulnerability index

Browse CVEs

60 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
MEDIUM 6.5 CVE-2026-59843 A flaw was found in libssh. A remote authenticated peer can advertise a zero maximum packet size in SSH_MSG_CHANNEL_OPEN, causing later channel write… Hardened Images No fix yet Fix from $1,6002026-07-21 MEDIUM 6.5 CVE-2026-11611 A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory growth when an authenticated c… Directory Server Mitigation only Fix from $1,6002026-06-08 MEDIUM 5.5 CVE-2026-6844 A flaw was found in the `readelf` utility of the binutils package. A local attacker could exploit two Denial of Service (DoS) vulnerabilities by prov… Hardened Images Mitigation only Fix from $1,6002026-04-22 HIGH 7.7 CVE-2024-3056 A flaw was found in Podman. This issue may allow an attacker to create a specially crafted container that, when configured to share the same IPC with… Openshift Container Platform after 5.2.0 Fix from $1,9502024-08-02 HIGH 7.5 CVE-2023-50868EPSS 82% The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of se… Enterprise Linux 4.8.5 / 4.9.3+ Fix from $1,9502024-02-14 MEDIUM 6.5 CVE-2023-42669 A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC stack elements. This vulnera… Storage 4.17.12 / 4.18.8+ Fix from $1,6002023-11-06 HIGH 7.5 CVE-2023-5625 A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2… Openshift Container Platform For Arm64 Patch available Fix from $1,9502023-11-01 MEDIUM 5.5 CVE-2023-43786 A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function. This flaw allows a local user to consume all available… Enterprise Linux 1.8.7+ Fix from $1,6002023-10-10 MEDIUM 5.3 CVE-2023-3153 A flaw was found in Open Virtual Network where the service monitor MAC does not properly rate limit. This issue could allow an attacker to cause a de… Openshift Container Platform 22.03.3 / 22.09.2+ Fix from $1,6002023-10-04 MEDIUM 6.5 CVE-2023-3637 An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security gr… Openstack Platform Mitigation only Fix from $1,6002023-07-25 HIGH 7.5 CVE-2023-38200 A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections… Enterprise Linux Patch available Fix from $1,9502023-07-24 HIGH 7.5 CVE-2023-2295 A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptabl… Enterprise Linux Mitigation only Fix from $1,9502023-05-17 MEDIUM 6.5 CVE-2023-0056 An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated r… Ceph Storage Mitigation only Fix from $1,6002023-03-23 MEDIUM 6.5 CVE-2022-3277 An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security gr… Openstack Platform 18.6.0 / 19.5.0+ Fix from $1,6002023-03-06 MEDIUM 6.3 CVE-2022-1677 In OpenShift Container Platform, a user with permissions to create or modify Routes can craft a payload that inserts a malformed entry into one of th… Openshift Container Platform Patch available Fix from $1,6002022-09-01 HIGH 7.5 CVE-2022-1259 A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of servic… Build Of Quarkus after 2.2.17 Fix from $1,9502022-08-31 MEDIUM 6.5 CVE-2022-0669 A flaw was found in dpdk. This flaw allows a malicious vhost-user master to attach an unexpected number of fds as ancillary data to VHOST_USER_GET_IN… Openshift Container Platform 22.03+ Fix from $1,6002022-08-29 MEDIUM 5.3 CVE-2021-4040 A flaw was found in AMQ Broker. This issue can cause a partial interruption to the availability of AMQ Broker via an Out of memory (OOM) condition. T… Amq Broker 2.19.1 / 7.10.0+ Fix from $1,6002022-08-24 HIGH 7.5 CVE-2021-3690 A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw allows an attacker to cau… Fuse 2.0.40 / 2.2.10+ Fix from $1,9502022-08-23 MEDIUM 6.5 CVE-2021-3670 MaxQueryDuration not honoured in Samba AD DC LDAP Storage 4.16.0+ Fix from $1,6002022-08-23 HIGH 7.5 CVE-2022-2053 When a POST request comes through AJP and the request exceeds the max-post-size limit (maxEntitySize), Undertow's AjpServerRequestConduit implementat… Integration Camel K 2.2.19+ Fix from $1,9502022-08-05 HIGH 7.5 CVE-2014-3648 The simplepush server iterates through the application installations and pushes a notification to the server provided by deviceToken. But this is use… Jboss Aerogear Mitigation only Fix from $1,9502022-07-01 MEDIUM 5.9 CVE-2021-3629 A flaw was found in Undertow. A potential security issue in flow control handling by the browser over http/2 may potentially cause overhead or a deni… Integration 2.0.40 / 2.2.11+ Fix from $1,6002022-05-24 MEDIUM 5.5 CVE-2021-4115 There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor exhaustion. The highest threa… Enterprise Linux Patch available Fix from $1,6002022-02-21 CRITICAL 9.1 CVE-2022-0671 A flaw was found in vscode-xml in versions prior to 0.19.0. Schema download could lead to blind SSRF or DoS via a large file. Vscode Xml 0.19.0+ Fix from $2,3002022-02-18 MEDIUM 6.5 CVE-2020-1750 A flaw was found in the machine-config-operator that causes an OpenShift node to become unresponsive when a container consumes a large amount of memo… Machine Config Operator 4.2.36 / 4.3.25+ Fix from $1,6002021-06-07 MEDIUM 5.9 CVE-2020-35510 A flaw was found in jboss-remoting in versions before 5.0.20.SP1-redhat-00001. A malicious attacker could cause threads to hold up forever in the EJB… Jboss Remoting 5.0.20+ Fix from $1,6002021-06-02 MEDIUM 5.9 CVE-2020-14340 A vulnerability was discovered in XNIO where file descriptor leak caused by growing amounts of NIO Selector file handles between garbage collection c… Xnio 3.7.9 / 3.8.2+ Fix from $1,6002021-06-02 HIGH 7.5 CVE-2020-14326 A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with… Integration Camel K 4.5.6+ Fix from $1,9502021-06-02 MEDIUM 5.3 CVE-2021-20201 A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumpt… Enterprise Linux 0.14.92+ Fix from $1,6002021-05-28