Skip to main content

Vendor/product archive

redhat / enterprise_linux_server CVEs

Beta · best-effort

1,904 CVEs tagged to redhat / enterprise_linux_server345 Critical, 710 High, 746 Medium, 103 Low, 0 Unrated.

CVE-2019-7837

Published May 22, 2019

Adobe Flash Player versions 32.0.0.171 and earlier, 32.0.0.171 and earlier, and 32.0.0.171 and earlier have a use after free vulnerability. Successful exploitation could lead to a…

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5

CVE-2019-11811

Published May 7, 2019

An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read access to /proc/ioports after the ipmi_si module is removed, related to dri…

CVSS 7.0 · High

CVE-2019-2697

Published Apr 23, 2019

Vulnerability in the Java SE component of Oracle Java SE (subcomponent: 2D). Supported versions that are affected are Java SE: 7u211 and 8u202. Difficult to exploit vulnerability…

CVSS 8.1 · High

CVE-2019-2627

Published Apr 23, 2019

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.6.43 and prior, 5.7.25 and pri…

CVSS 4.9 · Medium

CVE-2019-2614

Published Apr 23, 2019

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.43 and prior, 5.7.25 and prior and 8.…

CVSS 4.4 · Medium

CVE-2019-0223

Published Apr 23, 2019

While investigating bug PROTON-2014, we discovered that under some circumstances Apache Qpid Proton versions 0.9 to 0.27.0 (C library and its language bindings) can connect to a p…

CVSS 7.4 · High

CVE-2019-11235

Published Apr 22, 2019

FreeRADIUS before 3.0.19 mishandles the "each participant verifies that the received scalar is within a range, and that the received group element is a valid point on the curve be…

CVSS 9.8 · Critical

CVE-2019-0217

Published Apr 8, 2019

In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2019-3878

Published Mar 26, 2019

A vulnerability was found in mod_auth_mellon before v0.14.2. If Apache is configured as a reverse proxy and mod_auth_mellon is configured to only let through authenticated users (…

CVSS 8.1 · High

CVE-2019-3857

Published Mar 25, 2019

An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way SSH_MSG_CHANNEL_REQUEST packets with an exit signal are parse…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2019-3856

Published Mar 25, 2019

An integer overflow flaw, which could lead to an out of bounds write, was discovered in libssh2 before 1.8.1 in the way keyboard prompt requests are parsed. A remote attacker who…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2019-3838

Published Mar 25, 2019

It was found that the forceput operator could be extracted from the DefineResource method in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in or…

CVSS 5.5 · Medium

CVE-2019-3835

Published Mar 25, 2019

It was found that the superexec operator was available in the internal dictionary in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to,…

CVSS 5.5 · Medium

CVE-2019-3863

Published Mar 25, 2019

A flaw was found in libssh2 before 1.8.1 creating a vulnerability on the SSH client side. A server could send a multiple keyboard interactive response messages whose total length…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Showing 201-225 of 1,904 CVEsPage 9 of 77