Vulnerabilities > Redhat > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-07-25 CVE-2023-3772 NULL Pointer Dereference vulnerability in multiple products
A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem).
local
low complexity
redhat fedoraproject linux debian CWE-476
4.4
2023-07-25 CVE-2023-3773 Out-of-bounds Read vulnerability in multiple products
A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem).
local
low complexity
redhat fedoraproject linux debian CWE-125
4.4
2023-07-25 CVE-2023-3637 Resource Exhaustion vulnerability in Redhat Openstack Platform 13.0/16.2
An uncontrolled resource consumption flaw was found in openstack-neutron.
network
low complexity
redhat CWE-400
6.5
2023-07-24 CVE-2023-33951 Improper Locking vulnerability in multiple products
A race condition vulnerability was found in the vmwgfx driver in the Linux kernel.
local
high complexity
linux redhat CWE-667
5.3
2023-07-24 CVE-2023-33952 Double Free vulnerability in multiple products
A double-free vulnerability was found in handling vmw_buffer_object objects in the vmwgfx driver in the Linux kernel.
local
low complexity
linux redhat CWE-415
6.7
2023-07-24 CVE-2023-3019 Use After Free vulnerability in multiple products
A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU.
local
low complexity
qemu redhat CWE-416
6.5
2023-07-24 CVE-2023-3384 Cross-site Scripting vulnerability in Redhat Quay 3.0.0
A flaw was found in the Quay registry.
network
low complexity
redhat CWE-79
5.4
2023-07-24 CVE-2023-3750 Improper Locking vulnerability in Redhat Enterprise Linux and Libvirt
A flaw was found in libvirt.
network
high complexity
redhat CWE-667
5.3
2023-07-20 CVE-2022-2127 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c.
network
high complexity
samba redhat fedoraproject debian CWE-125
5.9
2023-07-20 CVE-2023-34967 Type Confusion vulnerability in multiple products
A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight.
network
low complexity
samba fedoraproject redhat debian CWE-843
5.3