Skip to main content

Vendor/product archive

redhat / enterprise_linux CVEs

Beta · best-effort

2,203 CVEs tagged to redhat / enterprise_linux201 Critical, 711 High, 1,095 Medium, 196 Low, 0 Unrated.

CVE-2010-2598

Published Jul 2, 2010

LibTIFF in Red Hat Enterprise Linux (RHEL) 3 on x86_64 platforms, as used in tiff2rgba, attempts to process image data even when the required compression functionality is not conf…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0729

Published Mar 16, 2010

A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local users to use ptrace on an arbitrary process, and consequently g…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0302

Published Mar 5, 2010

Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4,…

CVSS 7.5 · High

CVE-2009-2697

Published Sep 4, 2009

The Red Hat build script for the GNOME Display Manager (GDM) before 2.16.0-56 on Red Hat Enterprise Linux (RHEL) 5 omits TCP Wrapper support, which might allow remote attackers to…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2848

Published Aug 18, 2009

The execve function in the Linux kernel, possibly 2.6.30-rc6 and earlier, does not properly clear the current->clear_child_tid pointer, which allows local users to cause a denial…

CVSS 5.9 · Medium

CVE-2009-2416

Published Aug 11, 2009

Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (a…

CVSS 6.5 · Medium

CVE-2009-1893

Published Jul 17, 2009

The configtest function in the Red Hat dhcpd init script for DHCP 3.0.1 in Red Hat Enterprise Linux (RHEL) 3 allows local users to overwrite arbitrary files via a symlink attack o…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-1887

Published Jun 26, 2009

agent/snmp_agent.c in snmpd in net-snmp 5.0.9 in Red Hat Enterprise Linux (RHEL) 3 allows remote attackers to cause a denial of service (daemon crash) via a crafted SNMP GETBULK r…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-1837

Published Jun 12, 2009

Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp in xul.dll in Mozilla Firefox 3 before 3.0.11 might allow remote attackers to e…

CVSS 7.5 · High

CVE-2009-1384

Published May 28, 2009

pam_krb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RHEL) 5, generates different password prompts depending on whether the user account exists, which allows remote…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-0846

Published Apr 9, 2009

The asn1_decode_generaltime function in lib/krb5/asn.1/asn1_decode.c in the ASN.1 GeneralizedTime decoder in MIT Kerberos 5 (aka krb5) before 1.6.4 allows remote attackers to caus…

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2009-1072

Published Mar 25, 2009

nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as dem…

CVSS 4.9 · Medium
Showing 1,976-2,000 of 2,203 CVEsPage 80 of 89