Known vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes - page 6
Vendor:
Red Hat Inc.
Software CPE:
cpe:2.3:a:red_hat:advanced_cluster_management_for_kubernets:*:*:*:*:*:*:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
718
Public exploits:
70
Known exploited (KEV):
18
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
2.17
2.16
2.15.1
2.15
2.13.5
2.13.1
2.13
2.11.9
2.11.8
2.11.6
2.11.2
2.11.1
2.11.0
2.14
2.12.5
2.13.4
2.13.3
2.9.9
2.11.7
2.10.8
2.12.3
2.13.2
2.12.2
2.11.5
2.10.7
2.9.6
2.11.4
2.12.1
2.8.8
2.12.0
2.9.5
2.11.3
2.10.6
2.10.5
2.8.7
2.10.4
2.9.3
2.8.6
2.8.5
2.8.4
2.7.11
2.7.10
2.9.2
2.9.1
2.9.0
2.8.3
2.7.9
2.7.8
2.6.8
2.8.2
2.6.7
2.8.1
2.8.0
2.7.7
2.7.6
2.7.5
2.5.9
2.6.6
2.7.4
2.5.8
2.6.5
2.5.7
2.7.3
2.7.2
2.7.1
2.6.4
2.6.3
2.7.0
2.5.6
2.5.5
2.5.4
2.6.2
2.4.8
2.4.7
2.5.3
2.4.6
2.5.2
2.6.1
2.6.0
2.3.12
2.5.1
2.5.0
2.3.11
2.4.5
2.4.4
2.4.3
2.4.2
2.4.1
2.4.0
2.2.13
2.3.10
2.2.12
2.3.9
2.3.8
2.3.7
2.3.6
2.3.5
2.3.4
2.2.11
2.2.10
2.2.9
2.2.8
2.2.7
2.2.6
2.1.13
2.1.12
2.3.3
2.3.2
2.3.1
2.3.0
2.1.11
2.1.10
2.1.9
2.2.5
2.1.8
2.2.4
2.0.11
2.1.7
2.2.3
2.2.2
2.2.1
2.2.0
2.0.10
2.0.9
2.0.8
2.0.7
2.0.6
2.0.5
2.0.4
2.0.3
2.0.2
2.0.1
2.0.0
2.1.5
2.1.4
2.1.3
2.1.2
2.1.1
2.1.0
2.1.6
Vulnerabilities (718)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU95339 - Improper Control of Generation of Code ('Code Injection') CVE-2024-6345 |
CWE-94 | High | 2.8.8, 2.9.5, 2.10.5, 2.12.0 | 05.08.2024 |
SB2024080590 SB2024080593 SB2024080594 and 160 more |
||
| #VU95157 - Incorrect Provision of Specified Functionality CVE-2024-4032 |
CWE-684 | Medium | 2.8.8, 2.9.5, 2.10.5 | 02.08.2024 |
SB2024080203 SB2024080207 SB2024080209 and 101 more |
||
| #VU93519 - Out-of-bounds read CVE-2024-37371 |
CWE-125 | Medium | 2.9.5, 2.10.5, 2.10.6, 2.11.3, 2.12.0 | 01.07.2024 |
SB2024070148 SB2024070491 SB2024070496 and 114 more |
||
| #VU93518 - Improper input validation CVE-2024-37370 |
CWE-20 | Medium | 2.9.5, 2.10.5, 2.10.6, 2.11.3, 2.12.0 | 01.07.2024 |
SB2024070148 SB2024070491 SB2024070496 and 96 more |
||
| #VU88828 - Resource exhaustion CVE-2024-3651 |
CWE-400 | Medium | 2.8.7, 2.9.5, 2.10.4, 2.10.5, 2.10.8, 2.11.4, 2.12.0, 2.12.3 | 19.04.2024 |
SB2024041905 SB2024041906 SB2024041907 and 112 more |
||
| #VU88144 - Improper input validation CVE-2024-28182 |
CWE-20 | Medium | 2.8.7, 2.9.5, 2.10.4, 2.10.5, 2.11.4, 2.12.0, 2.12.1 | 04.04.2024 |
SB2024040442 SB2024040443 SB2024040444 and 124 more |
||
| #VU87850 - Missing Release of Resource after Effective Lifetime CVE-2024-2398 |
CWE-772 | Medium | 2.8.8, 2.9.5, 2.10.4, 2.10.5, 2.11.4, 2.12.0, 2.12.1 | 27.03.2024 |
SB2024032713 SB2024032740 SB2024032744 and 106 more |
||
| #VU87672 - Improper input validation CVE-2024-28835 |
CWE-20 | Medium | 2.10.4, 2.10.5, 2.10.8, 2.11.4, 2.11.7, 2.12.0, 2.12.1, 2.12.3 | 20.03.2024 |
SB2024032057 SB2024032058 SB2024032059 and 71 more |
||
| #VU87671 - Cryptographic Issues CVE-2024-28834 |
CWE-310 | Medium | 2.8.7, 2.10.4, 2.10.5, 2.10.8, 2.11.4, 2.11.7, 2.12.0, 2.12.1, 2.12.3 | 20.03.2024 |
SB2024032057 SB2024032058 SB2024032059 and 111 more |
||
| #VU87185 - UNIX Symbolic Link (Symlink) Following CVE-2023-6597 |
CWE-61 | Low | 2.8.7, 2.10.4, 2.10.5 | 07.03.2024 |
SB2024030718 SB2024030726 SB2024030727 and 88 more |
||
| #VU86885 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-48624 |
CWE-78 | Medium | 2.8.7, 2.9.5 | 28.02.2024 |
SB2024022820 SB2024022839 SB2024030503 and 60 more |
||
| #VU86052 - Use After Free CVE-2024-25062 |
CWE-416 | High | 2.8.7, 2.9.5, 2.10.4, 2.10.5, 2.11.4, 2.12.0, 2.12.1 | 05.02.2024 |
SB2024020507 SB2024020508 SB2024020742 and 115 more |
||
| #VU85808 - NULL Pointer Dereference CVE-2024-0727 |
CWE-476 | Medium | 2.10.5 | 25.01.2024 |
SB2024012552 SB2024020525 SB2024021323 and 100 more |
||
| #VU85552 - Resource exhaustion CVE-2024-22365 |
CWE-400 | Low | 2.10.5, 2.12.0 | 17.01.2024 |
SB2024011799 SB20240117126 SB2024011839 and 44 more |
||
| #VU85399 - Resource Management Errors CVE-2023-6237 |
CWE-399 | Low | 2.10.5 | 15.01.2024 |
SB2024011522 SB2024012250 SB2024012612 and 53 more |
||
| #VU85170 - State Issues CVE-2023-6129 |
CWE-371 | Medium | 2.10.5 | 09.01.2024 |
SB2024010929 SB2024012250 SB2024012612 and 69 more |
||
| #VU79586 - Access of Uninitialized Pointer CVE-2023-36054 |
CWE-824 | Medium | 2.10.5 | 16.08.2023 |
SB2023081621 SB2023081623 SB2023081624 and 51 more |
||
| #VU79344 - Double Free CVE-2023-39975 |
CWE-415 | Medium | 2.10.5 | 10.08.2023 |
SB2023081014 SB20230821173 SB2023110766 and 26 more |
||
| #VU77252 - NULL Pointer Dereference CVE-2023-2953 |
CWE-476 | Medium | 2.8.7, 2.9.5 | 13.06.2023 |
SB2023061366 SB2023061417 SB2023061418 and 59 more |
||
| #VU71458 - Memory corruption CVE-2023-22745 |
CWE-119 | High | 2.10.5, 2.12.0 | 24.01.2023 |
SB2023012404 SB2023022749 SB2023030333 and 42 more |
Showing elements 101 - 120 out of 718