VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Redhat
>
Enterprise Linux Server EUS
> 7.5
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2018-07-10
CVE-2018-3693
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis.
local
high complexity
intel
arm
oracle
schneider-electric
netapp
redhat
fujitsu
5.6
5.6
2018-07-03
CVE-2017-2615
Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue.
network
low complexity
qemu
redhat
citrix
debian
xen
critical
9.1
9.1
2018-06-13
CVE-2018-10850
Race Condition vulnerability in multiple products
389-ds-base before versions 1.4.0.10, 1.3.8.3 is vulnerable to a race condition in the way 389-ds-base handles persistent search, resulting in a crash if the server is under load.
network
high complexity
fedoraproject
redhat
debian
CWE-362
5.9
5.9
2018-06-11
CVE-2018-5185
Missing Encryption of Sensitive Data vulnerability in multiple products
Plaintext of decrypted emails can leak through by user submitting an embedded form.
network
low complexity
redhat
debian
canonical
mozilla
CWE-311
6.5
6.5
2018-06-11
CVE-2018-5184
Inadequate Encryption Strength vulnerability in multiple products
Using remote content in encrypted messages can lead to the disclosure of plaintext.
network
low complexity
debian
mozilla
canonical
redhat
CWE-326
7.5
7.5
2018-06-11
CVE-2018-5183
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Mozilla developers backported selected changes in the Skia library.
network
low complexity
redhat
debian
canonical
mozilla
CWE-119
critical
9.8
9.8
2018-06-11
CVE-2018-5178
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A buffer overflow was found during UTF8 to Unicode string conversion within JavaScript with extremely large amounts of data.
network
high complexity
debian
mozilla
canonical
redhat
CWE-119
8.1
8.1
2018-06-11
CVE-2018-5170
Improper Input Validation vulnerability in multiple products
It is possible to spoof the filename of an attachment and display an arbitrary attachment name.
network
low complexity
redhat
mozilla
debian
canonical
CWE-20
4.3
4.3
2018-06-11
CVE-2018-5168
Sites can bypass security checks on permissions to install lightweight themes by manipulating the "baseURI" property of the theme element.
network
low complexity
debian
mozilla
canonical
redhat
5.3
5.3
2018-06-11
CVE-2018-5162
Missing Encryption of Sensitive Data vulnerability in multiple products
Plaintext of decrypted emails can leak through the src attribute of remote images, or links.
network
low complexity
redhat
debian
canonical
mozilla
CWE-311
7.5
7.5
«
Previous
1
2
...
8
9
10
(current)
11
12
...
33
34
»
Next