Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 6.5
CVE-2026-59843
A flaw was found in libssh. A remote authenticated peer can advertise a zero maximum packet size in SSH_MSG_CHANNEL_OPEN, causing later channel write…
Hardened Images
No fix yet
MEDIUM 6.5
CVE-2026-11611
A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory growth when an authenticated c…
Directory Server
Mitigation only
MEDIUM 5.5
CVE-2026-6844
A flaw was found in the `readelf` utility of the binutils package. A local attacker could exploit two Denial of Service (DoS) vulnerabilities by prov…
Hardened Images
Mitigation only
HIGH 7.7
CVE-2024-3056
A flaw was found in Podman. This issue may allow an attacker to create a specially crafted container that, when configured to share the same IPC with…
Openshift Container Platform
after 5.2.0
HIGH 7.5
CVE-2023-50868EPSS 82%
The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of se…
Enterprise Linux
4.8.5 / 4.9.3+
MEDIUM 6.5
CVE-2023-42669
A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC stack elements. This vulnera…
Storage
4.17.12 / 4.18.8+
HIGH 7.5
CVE-2023-5625
A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2…
Openshift Container Platform For Arm64
Patch available
MEDIUM 5.5
CVE-2023-43786
A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function. This flaw allows a local user to consume all available…
Enterprise Linux
1.8.7+
MEDIUM 5.3
CVE-2023-3153
A flaw was found in Open Virtual Network where the service monitor MAC does not properly rate limit. This issue could allow an attacker to cause a de…
Openshift Container Platform
22.03.3 / 22.09.2+
MEDIUM 6.5
CVE-2023-3637
An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security gr…
Openstack Platform
Mitigation only
HIGH 7.5
CVE-2023-38200
A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections…
Enterprise Linux
Patch available
HIGH 7.5
CVE-2023-2295
A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptabl…
Enterprise Linux
Mitigation only
MEDIUM 6.5
CVE-2023-0056
An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated r…
Ceph Storage
Mitigation only
MEDIUM 6.5
CVE-2022-3277
An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security gr…
Openstack Platform
18.6.0 / 19.5.0+
MEDIUM 6.3
CVE-2022-1677
In OpenShift Container Platform, a user with permissions to create or modify Routes can craft a payload that inserts a malformed entry into one of th…
Openshift Container Platform
Patch available
HIGH 7.5
CVE-2022-1259
A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of servic…
Build Of Quarkus
after 2.2.17
MEDIUM 6.5
CVE-2022-0669
A flaw was found in dpdk. This flaw allows a malicious vhost-user master to attach an unexpected number of fds as ancillary data to VHOST_USER_GET_IN…
Openshift Container Platform
22.03+
MEDIUM 5.3
CVE-2021-4040
A flaw was found in AMQ Broker. This issue can cause a partial interruption to the availability of AMQ Broker via an Out of memory (OOM) condition. T…
Amq Broker
2.19.1 / 7.10.0+
HIGH 7.5
CVE-2021-3690
A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw allows an attacker to cau…
Fuse
2.0.40 / 2.2.10+
MEDIUM 6.5
CVE-2021-3670
MaxQueryDuration not honoured in Samba AD DC LDAP
Storage
4.16.0+
HIGH 7.5
CVE-2022-2053
When a POST request comes through AJP and the request exceeds the max-post-size limit (maxEntitySize), Undertow's AjpServerRequestConduit implementat…
Integration Camel K
2.2.19+
HIGH 7.5
CVE-2014-3648
The simplepush server iterates through the application installations and pushes a notification to the server provided by deviceToken. But this is use…
Jboss Aerogear
Mitigation only
MEDIUM 5.9
CVE-2021-3629
A flaw was found in Undertow. A potential security issue in flow control handling by the browser over http/2 may potentially cause overhead or a deni…
Integration
2.0.40 / 2.2.11+
MEDIUM 5.5
CVE-2021-4115
There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor exhaustion. The highest threa…
Enterprise Linux
Patch available
CRITICAL 9.1
CVE-2022-0671
A flaw was found in vscode-xml in versions prior to 0.19.0. Schema download could lead to blind SSRF or DoS via a large file.
Vscode Xml
0.19.0+
MEDIUM 6.5
CVE-2020-1750
A flaw was found in the machine-config-operator that causes an OpenShift node to become unresponsive when a container consumes a large amount of memo…
Machine Config Operator
4.2.36 / 4.3.25+
MEDIUM 5.9
CVE-2020-35510
A flaw was found in jboss-remoting in versions before 5.0.20.SP1-redhat-00001. A malicious attacker could cause threads to hold up forever in the EJB…
Jboss Remoting
5.0.20+
MEDIUM 5.9
CVE-2020-14340
A vulnerability was discovered in XNIO where file descriptor leak caused by growing amounts of NIO Selector file handles between garbage collection c…
Xnio
3.7.9 / 3.8.2+
HIGH 7.5
CVE-2020-14326
A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with…
Integration Camel K
4.5.6+
MEDIUM 5.3
CVE-2021-20201
A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumpt…
Enterprise Linux
0.14.92+