Vulnerabilities > Redhat

DATE CVE VULNERABILITY TITLE RISK
2023-07-20 CVE-2023-34967 Type Confusion vulnerability in multiple products
A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight.
network
low complexity
samba fedoraproject redhat debian CWE-843
5.3
2023-07-20 CVE-2023-34968 Information Exposure Through Sent Data vulnerability in multiple products
A path disclosure vulnerability was found in Samba.
network
low complexity
samba fedoraproject redhat debian CWE-201
5.3
2023-07-20 CVE-2023-3347 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in multiple products
A vulnerability was found in Samba's SMB2 packet signing mechanism.
network
high complexity
samba redhat fedoraproject CWE-924
5.9
2023-07-20 CVE-2022-28737 Out-of-bounds Write vulnerability in Redhat Shim
There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables; The handle_image() function takes into account the SizeOfRawData field from each section to be loaded.
local
low complexity
redhat CWE-787
7.8
2023-07-14 CVE-2023-38252 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c.
local
low complexity
tats redhat fedoraproject CWE-125
5.5
2023-07-14 CVE-2023-38253 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c.
local
low complexity
tats redhat fedoraproject CWE-125
5.5
2023-07-12 CVE-2023-3618 Classic Buffer Overflow vulnerability in multiple products
A flaw was found in libtiff.
network
low complexity
libtiff debian redhat CWE-120
6.5
2023-07-11 CVE-2023-3354 NULL Pointer Dereference vulnerability in multiple products
A flaw was found in the QEMU built-in VNC server.
network
low complexity
qemu redhat fedoraproject CWE-476
7.5
2023-07-11 CVE-2023-1672 Race Condition vulnerability in multiple products
A race condition exists in the Tang server functionality for key generation and key rotation.
5.3
2023-07-11 CVE-2023-3269 Use After Free vulnerability in multiple products
A vulnerability exists in the memory management subsystem of the Linux kernel.
local
low complexity
linux redhat fedoraproject CWE-416
7.8