VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Redhat
>
Enterprise Linux
> High
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2019-04-30
CVE-2019-10131
Off-by-one Error vulnerability in multiple products
An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c.
local
low complexity
imagemagick
redhat
debian
canonical
opensuse
CWE-193
7.1
7.1
2019-04-26
CVE-2019-9810
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow.
network
low complexity
mozilla
redhat
CWE-119
8.8
8.8
2019-04-25
CVE-2019-3900
An infinite loop issue was found in the vhost_net kernel module in Linux Kernel up to and including v5.1-rc6, while handling incoming packets in handle_rx().
network
low complexity
linux
fedoraproject
redhat
debian
canonical
netapp
oracle
7.7
7.7
2019-04-23
CVE-2019-2698
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: 2D).
network
high complexity
oracle
redhat
debian
opensuse
canonical
hp
8.1
8.1
2019-04-23
CVE-2019-2697
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: 2D).
network
high complexity
oracle
canonical
redhat
hp
8.1
8.1
2019-04-23
CVE-2019-2602
Resource Exhaustion vulnerability in multiple products
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries).
network
low complexity
oracle
redhat
opensuse
canonical
debian
mcafee
hp
CWE-400
7.5
7.5
2019-04-19
CVE-2019-10245
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In Eclipse OpenJ9 prior to the 0.14.0 release, the Java bytecode verifier incorrectly allows a method to execute past the end of bytecode array causing crashes.
network
low complexity
eclipse
redhat
CWE-119
7.5
7.5
2019-04-18
CVE-2018-16877
A flaw was found in the way pacemaker's client-server authentication was implemented in versions up to and including 2.0.0.
local
low complexity
clusterlabs
canonical
fedoraproject
debian
opensuse
redhat
7.8
7.8
2019-04-17
CVE-2019-3883
Missing Release of Resource after Effective Lifetime vulnerability in multiple products
In 389-ds-base up to version 1.4.1.2, requests are handled by workers threads.
network
low complexity
fedoraproject
debian
redhat
CWE-772
7.5
7.5
2019-04-09
CVE-2019-3842
Incorrect Authorization vulnerability in multiple products
In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable.
local
high complexity
systemd-project
redhat
fedoraproject
debian
CWE-863
7.0
7.0
«
Previous
1
2
...
34
35
36
(current)
37
38
...
49
50
»
Next