Vulnerabilities > Redhat > Enterprise Linux Server Update Services FOR SAP Solutions > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-06 CVE-2024-3049 A flaw was found in Booth, a cluster ticket manager.
network
high complexity
clusterlabs redhat
5.9
2024-04-16 CVE-2022-24806 net-snmp provides various tools relating to the Simple Network Management Protocol.
network
high complexity
net-snmp fedoraproject debian redhat
5.3
2024-04-16 CVE-2022-24807 Classic Buffer Overflow vulnerability in multiple products
net-snmp provides various tools relating to the Simple Network Management Protocol.
network
low complexity
net-snmp fedoraproject debian redhat CWE-120
6.5
2024-04-16 CVE-2022-24808 NULL Pointer Dereference vulnerability in multiple products
net-snmp provides various tools relating to the Simple Network Management Protocol.
network
low complexity
net-snmp fedoraproject debian redhat CWE-476
6.5
2024-04-16 CVE-2022-24809 NULL Pointer Dereference vulnerability in multiple products
net-snmp provides various tools relating to the Simple Network Management Protocol.
network
low complexity
net-snmp fedoraproject debian redhat CWE-476
6.5
2024-01-10 CVE-2023-5455 Cross-Site Request Forgery (CSRF) vulnerability in multiple products
A Cross-site request forgery vulnerability exists in ipa/session/login_password in all supported versions of IPA.
network
low complexity
freeipa fedoraproject redhat CWE-352
6.5
2022-03-10 CVE-2021-3733 Resource Exhaustion vulnerability in multiple products
There's a flaw in urllib's AbstractBasicAuthHandler class.
network
low complexity
python redhat fedoraproject netapp CWE-400
6.5
2022-03-04 CVE-2021-3744 A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c, which allows attackers to cause a denial of service (memory consumption).
local
low complexity
linux fedoraproject debian redhat oracle
5.5
2022-02-18 CVE-2016-2124 Improper Authentication vulnerability in multiple products
A flaw was found in the way samba implemented SMB1 authentication.
network
high complexity
samba debian fedoraproject redhat canonical CWE-287
5.9
2021-11-23 CVE-2021-3672 Cross-site Scripting vulnerability in multiple products
A flaw was found in c-ares library, where a missing input validation check of host names returned by DNS (Domain Name Servers) can lead to output of wrong hostnames which might potentially lead to Domain Hijacking.
5.6