Vulnerabilities > Redhat > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-06-04 CVE-2021-3565 Use of Hard-coded Credentials vulnerability in multiple products
A flaw was found in tpm2-tools in versions before 5.1.1 and before 4.3.2.
5.9
2021-06-03 CVE-2021-3569 Out-of-bounds Write vulnerability in multiple products
A stack corruption bug was found in libtpms in versions before 0.7.2 and before 0.8.0 while decrypting data using RSA.
local
low complexity
libtpms-project redhat CWE-787
5.5
2021-06-02 CVE-2019-12067 NULL Pointer Dereference vulnerability in multiple products
The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NULL dereference) when the command header 'ad->cur_cmd' is null.
local
low complexity
qemu debian fedoraproject redhat CWE-476
6.5
2021-06-02 CVE-2020-35510 Unspecified vulnerability in Redhat Jboss-Remoting 3.3.10/5.0.14/5.0.20
A flaw was found in jboss-remoting in versions before 5.0.20.SP1-redhat-00001.
network
high complexity
redhat
5.9
2021-06-02 CVE-2020-14340 A vulnerability was discovered in XNIO where file descriptor leak caused by growing amounts of NIO Selector file handles between garbage collection cycles.
network
high complexity
redhat oracle
5.9
2021-06-02 CVE-2020-14371 Unspecified vulnerability in Redhat Satellite 6.0
A credential leak vulnerability was found in Red Hat Satellite.
network
low complexity
redhat
6.5
2021-06-02 CVE-2020-14388 Unspecified vulnerability in Redhat 3Scale API Management 2.0
A flaw was found in the Red Hat 3scale API Management Platform, where member permissions for an API's admin portal were not properly enforced.
network
low complexity
redhat
6.3
2021-06-02 CVE-2020-14317 Unspecified vulnerability in Redhat Jboss Enterprise Application Platform and Wildfly
It was found that the issue for security flaw CVE-2019-3805 appeared again in a further version of JBoss Enterprise Application Platform - Continuous Delivery (EAP-CD) introducing regression.
local
low complexity
redhat
5.5
2021-06-02 CVE-2020-14335 Unspecified vulnerability in Redhat Satellite 6.0
A flaw was found in Red Hat Satellite, which allows a privileged attacker to read OMAPI secrets through the ISC DHCP of Smart-Proxy.
local
low complexity
redhat
5.5
2021-06-02 CVE-2020-14336 Unspecified vulnerability in Redhat Openshift Container Platform 3.11/4.5.16/4.6
A flaw was found in the Restricted Security Context Constraints (SCC), where it allows pods to craft custom network packets.
network
low complexity
redhat
6.5