Redhat
17,638 known vulnerabilities
Top Products
A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in
A NULL pointer dereference flaw was found in ImageMagick in versions prior to 7.0.10-31 in ReadSVGImage() in coders/svg.
A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in pspdf_prepare_page(),in ps-pdf.cxx may lead to execute a
There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor
All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file
The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SM
swtpm is a libtpms-based TPM emulator with socket, character device, and Linux CUSE interface. Versions prior to 0.5.3,
A flaw was found in vscode-xml in versions prior to 0.19.0. Schema download could lead to blind SSRF or DoS via a large
A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KV
A double-free was found in the way 389-ds-base handles virtual attributes context in persistent searches. An attacker co
An incorrect default permissions vulnerability was found in the mig-controller. Due to an incorrect cluster namespaces h
An off-by-one error was found in the SCSI device emulation in QEMU. It could occur while processing MODE SELECT commands
A flaw was found in mbsync versions prior to 1.4.4. Due to inadequate handling of extremely large (>=2GiB) IMAP literals
Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red Hat Enterprise Linux 8.5
A race condition accessing file object in the Linux kernel OverlayFS subsystem was found in the way users do rename in s
A flaw was found in s390 eBPF JIT in bpf_jit_insn in arch/s390/net/bpf_jit_comp.c in the Linux kernel. In this flaw, a l
A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authenticat
A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cau
A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plain
A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for furthe
A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Linux kernel, which may cause an out of bo
A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket an
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privile
A flaw was found in argocd. Any unprivileged user is able to deploy argocd in their namespace and with the created Servi
A flaw was found in the PKI-server, where the spkispawn command, when run in debug mode, stores admin credentials in the
Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff
An incorrect sysctls validation vulnerability was found in CRI-O 1.18 and earlier. The sysctls from the list of "safe" s
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads
A use-after-free vulnerability was found in rtsx_usb_ms_drv_remove in drivers/memstick/host/rtsx_usb_ms.c in memstick in
A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel's cgroup v1 pars
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
A NULL pointer dereference issue was found in the block mirror layer of QEMU in versions prior to 6.2.0. The `self` poin
A flaw was found in Keycloak in versions from 12.0.0 and before 15.1.1 which allows an attacker with any existing user a
AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attribut
Flatpak is a Linux application sandboxing and distribution framework. A path traversal vulnerability affects versions of
Flatpak is a Linux application sandboxing and distribution framework. Prior to versions 1.12.3 and 1.10.6, Flatpak doesn
CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem thro
Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string.
vim is vulnerable to Out-of-bounds Read
A flaw was found in the hivex library. This flaw allows an attacker to input a specially crafted Windows Registry (hive)
A flaw was found in SSSD, where the sssctl command was vulnerable to shell command injection via the logs-fetch and cach
A flaw was found in podman. The `podman machine` function (used to create and manage Podman virtual machine containing a
A server side remote code execution vulnerability was found in Foreman project. A authenticated attacker could use Sendm
The HornetQ component of Artemis in EAP 7 was not updated with the fix for CVE-2016-4978. A remote attacker could use th
load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or
A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs b
IBM Cloud Pak for Security (CP4S) 1.7.2.0, 1.7.1.0, and 1.7.0.0 could allow an authenticated user to obtain sensitive in
In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could
stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial of service (heap-base
Frequently Asked Questions
How many CVEs affect Redhat?
Redhat has 17,638 CVE records in our database, including 1817 critical and 6954 high severity vulnerabilities. 43 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Redhat vulnerabilities?
Redhat has 1817 critical severity (CVSS 9.0+) and 6954 high severity (CVSS 7.0-8.9) vulnerabilities. 43 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Redhat vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Redhat products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Redhat Vulnerabilities
CyberStrike scans your infrastructure for Redhat vulnerabilities and provides real-time remediation guidance.
Get Started