Known vulnerabilities in Oracle Linux - page 84

Vendor: Oracle
Software: Oracle Linux
Software CPE: cpe:2.3:o:oracle:oracle_linux:*:*:*:*:*:*:*:*
Total vulnerabilities: 1684
Public exploits: 85
Known exploited (KEV): 23
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Oracle Linux Oracle Linux is affected by 1684 known vulnerabilities: 13 critical, 266 high, 605 medium, 800 low Critical High Medium Low

Vulnerabilities (1684)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU1018 - Improper input validation
CVE-2016-1954
CWE-20 Medium
No
No
- 17.10.2016 SB2016031301
#VU641 - Improper input validation
CVE-2016-2109
CWE-119 Low
No
No
- 23.09.2016 SB2016050506
SB2016051903
SB2016051204
and 17 more
#VU640 - Improper input validation
CVE-2016-2105
CWE-20 Low
No
No
- 23.09.2016 SB2016050505
SB2016061413
SB2016051903
and 22 more
#VU639 - Improper Access Control
CVE-2016-2107
CWE-284 High
Available
No
- 23.09.2016 SB2016050504
SB2016061413
SB2016050514
and 19 more
#VU607 - Improper Access Control
CVE-2016-5281
CWE-284 High
No
No
- 22.09.2016 SB2016092208
#VU359 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2016-6480
CWE-362 Medium
No
No
- 07.09.2016 SB2016101301
SB2016101126
SB2016101127
and 14 more
#VU327 - Use of Insufficiently Random Values
CVE-2016-6313
CWE-330 Low
No
No
- 18.08.2016 SB2016081701
SB2016081702
SB2016081807
and 17 more
#VU264 - Improper Control of Generation of Code ('Code Injection')
CVE-2016-0714
CWE-94 Low
No
No
- 05.08.2016 SB2016021201
SB2016032101
SB2016032903
and 8 more
#VU263 - Exposure of sensitive information to an unauthorized actor
CVE-2016-0706
CWE-200 Low
No
No
- 05.08.2016 SB2016021201
SB2016032101
SB2016032903
and 8 more
#VU242 - UNIX Symbolic Link (Symlink) Following
CVE-2015-7560
CWE-61 Medium
No
No
- 29.07.2016 SB2016032901
SB2016032401
SB2016032102
and 12 more
#VU238 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2016-2113
CWE-300 Medium
No
No
- 29.07.2016 SB2016052501
SB2016051803
SB2016050401
and 16 more
#VU236 - Authentication Bypass by Spoofing
CVE-2016-2111
CWE-290 Medium
No
No
- 29.07.2016 SB2016052501
SB2016051803
SB2016050401
and 25 more
#VU235 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2016-2110
CWE-300 Medium
No
No
- 29.07.2016 SB2016052501
SB2016051803
SB2016050401
and 25 more
#VU215 - Memory corruption
CVE-2016-6250
CWE-119 High
No
No
- 26.07.2016 SB2016072608
SB2016080530
SB2016072027
and 3 more
#VU207 - Memory corruption
CVE-2016-5399
CWE-119 High
Available
No
- 25.07.2016 SB2016072202
#VU194 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2016-5385
CWE-79 High
No
No
- 22.07.2016 SB2016072001
SB2016072206
SB2016081103
and 14 more
#VU46 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2016-2047
CWE-300 Low
No
No
- 28.06.2016 SB2016042701
#VU27 - Memory corruption
CVE-2016-4997
CWE-119 High
Available
No
- 27.06.2016 SB2017062912
SB2017062113
SB2016063005
and 16 more
#VU26 - Incorrect Permission Assignment for Critical Resource
CVE-2016-5844
CWE-732 High
No
No
- 27.06.2016 SB2016062701
SB2016080529
#VU24 - Download of Code Without Integrity Check
CVE-2016-2177
CWE-119 Medium
No
No
- 24.06.2016 SB2016081301
SB2017013102
SB2018021614
and 19 more


Showing elements 1661 - 1680 out of 1684