Vulnerabilities > Redhat > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-01-18 CVE-2022-3100 Authentication Bypass by Primary Weakness vulnerability in multiple products
A flaw was found in the openstack-barbican component.
network
high complexity
openstack redhat CWE-305
5.9
2023-01-17 CVE-2023-0296 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Redhat Openshift 4.11
The Birthday attack against 64-bit block ciphers flaw (CVE-2016-2183) was reported for the health checks port (9979) on etcd grpc-proxy component.
network
low complexity
redhat CWE-327
5.3
2023-01-13 CVE-2023-0105 Improper Authentication vulnerability in Redhat Keycloak
A flaw was found in Keycloak.
network
low complexity
redhat CWE-287
6.5
2022-12-28 CVE-2021-4294 Information Exposure Through Discrepancy vulnerability in Redhat Openshift Container Platform and Openshift Osin
A vulnerability was found in OpenShift OSIN.
network
high complexity
redhat CWE-203
5.9
2022-12-16 CVE-2022-4130 Unspecified vulnerability in Redhat Satellite 6.10/6.11/6.9
A blind site-to-site request forgery vulnerability was found in Satellite server.
network
low complexity
redhat
4.5
2022-12-08 CVE-2022-3260 Improper Restriction of Rendered UI Layers or Frames vulnerability in Redhat Openshift 4.9
The response header has not enabled X-FRAME-OPTIONS, Which helps prevents against Clickjacking attack..
network
low complexity
redhat CWE-1021
4.8
2022-11-29 CVE-2022-4144 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read flaw was found in the QXL display device emulation in QEMU.
local
low complexity
qemu fedoraproject redhat CWE-125
6.5
2022-11-22 CVE-2022-3500 Uncaught Exception vulnerability in multiple products
A vulnerability was found in keylime.
local
high complexity
keylime redhat fedoraproject CWE-248
5.1
2022-11-08 CVE-2022-3821 Off-by-one Error vulnerability in multiple products
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c.
5.5
2022-11-03 CVE-2022-3675 Missing Authentication for Critical Function vulnerability in Redhat Fedora Coreos 36.20220820.3.0
Fedora CoreOS supports setting a GRUB bootloader password using a Butane config.
local
low complexity
redhat CWE-306
5.5