Vulnerabilities > Redhat

DATE CVE VULNERABILITY TITLE RISK
2024-10-01 CVE-2024-9341 A flaw was found in Go.
network
low complexity
containers redhat
8.2
2024-09-10 CVE-2023-6841 Unspecified vulnerability in Redhat Keycloak and Single Sign-On
A denial of service vulnerability was found in keycloak where the amount of attributes per object is not limited,an attacker by sending repeated HTTP requests could cause a resource exhaustion when the application send back rows with long attribute values.
network
low complexity
redhat
7.5
2024-09-10 CVE-2024-8443 Out-of-bounds Write vulnerability in multiple products
A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver.
high complexity
opensc-project redhat CWE-787
2.9
2024-09-09 CVE-2024-7260 Open Redirect vulnerability in Redhat Build of Keycloak and Keycloak
An open redirect vulnerability was found in Keycloak.
network
low complexity
redhat CWE-601
6.1
2024-09-09 CVE-2024-7318 Use of a Key Past its Expiration Date vulnerability in Redhat Build of Keycloak
A vulnerability was found in Keycloak.
network
high complexity
redhat CWE-324
4.8
2024-09-09 CVE-2024-7341 Session Fixation vulnerability in Redhat Keycloak
A session fixation issue was discovered in the SAML adapters provided by Keycloak.
network
high complexity
redhat CWE-384
7.1
2024-09-04 CVE-2024-7012 Improper Authentication vulnerability in Redhat Satellite 6.13/6.14/6.15
An authentication bypass vulnerability has been identified in Foreman when deployed with External Authentication, due to the puppet-foreman configuration.
network
low complexity
redhat CWE-287
critical
9.8
2024-09-04 CVE-2024-7923 Unspecified vulnerability in Redhat Satellite 6.13/6.14/6.15
An authentication bypass vulnerability has been identified in Pulpcore when deployed with Gunicorn versions prior to 22.0, due to the puppet-pulpcore configuration.
network
low complexity
redhat
critical
9.8
2024-09-03 CVE-2024-45615 Use of Uninitialized Resource vulnerability in multiple products
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK.
high complexity
redhat opensc-project CWE-908
3.9
2024-09-03 CVE-2024-45616 Use of Uninitialized Resource vulnerability in multiple products
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK.
high complexity
redhat opensc-project CWE-908
3.9