Vulnerabilities > Redhat > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-07-24 CVE-2023-3384 Cross-site Scripting vulnerability in Redhat Quay 3.0.0
A flaw was found in the Quay registry.
network
low complexity
redhat CWE-79
5.4
2023-07-24 CVE-2023-3750 Improper Locking vulnerability in Redhat Enterprise Linux and Libvirt
A flaw was found in libvirt.
network
high complexity
redhat CWE-667
5.3
2023-07-20 CVE-2022-2127 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c.
network
high complexity
samba redhat fedoraproject debian CWE-125
5.9
2023-07-20 CVE-2023-34967 Type Confusion vulnerability in multiple products
A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight.
network
low complexity
samba fedoraproject redhat debian CWE-843
5.3
2023-07-20 CVE-2023-34968 Information Exposure Through Sent Data vulnerability in multiple products
A path disclosure vulnerability was found in Samba.
network
low complexity
samba fedoraproject redhat debian CWE-201
5.3
2023-07-20 CVE-2023-3347 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in multiple products
A vulnerability was found in Samba's SMB2 packet signing mechanism.
network
high complexity
samba redhat fedoraproject CWE-924
5.9
2023-07-14 CVE-2023-38252 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c.
local
low complexity
tats redhat fedoraproject CWE-125
5.5
2023-07-14 CVE-2023-38253 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c.
local
low complexity
tats redhat fedoraproject CWE-125
5.5
2023-07-12 CVE-2023-3618 Classic Buffer Overflow vulnerability in multiple products
A flaw was found in libtiff.
network
low complexity
libtiff debian redhat CWE-120
6.5
2023-07-11 CVE-2023-1672 Race Condition vulnerability in multiple products
A race condition exists in the Tang server functionality for key generation and key rotation.
5.3