Known vulnerabilities in containernetworking-plugins (Red Hat package)
Vendor:
Red Hat Inc.
Software CPE:
cpe:2.3:o:red_hat:containernetworking-plugins_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
118
Public exploits:
5
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
1.4.0-7.rhaos4.15.el8
1.4.0-10.rhaos4.18.el8
1.4.0-10.rhaos4.16.el8
1.4.0-7.rhaos4.14.el8
1.4.0-6.rhaos4.15.el8
1.4.0-6.rhaos4.14.el8
1.4.0-9.rhaos4.16.el8
1.4.0-7.rhaos4.13.el8
1.2.0-3.el9_2.3
1.6.2-3.el9_6
1.4.0-7.rhaos4.16.el8
1.4.0-7.rhaos4.18.el8
1.4.0-7.rhaos4.17.el8
1.4.0-5.rhaos4.18.el8
1.4.0-5.rhaos4.15.el8
1.4.0-6.rhaos4.16.el8
1.4.0-5.rhaos4.17.el8
1.6.2-2.el9_6
1.4.0-6.el9_4.1
1.5.1-3.el9_5
1.5.1-2.el9
1.4.0-4.rhaos4.14.el8
1.4.0-4.rhaos4.12.el8
1.4.0-5.rhaos4.13.el8
1.4.0-4.rhaos4.15.el8
1.4.0-5.rhaos4.16.el8
1.4.0-4.rhaos4.17.el8
1.4.0-4.rhaos4.13.el8
1.4.0-6.el9_4
1.4.0-3.rhaos4.17.el8
1.2.0-3.el9_2.1
1.0.1-6.el9_0.1
1.4.0-3.rhaos4.13.el8
1.4.0-3.rhaos4.14.el8
1.4.0-3.rhaos4.12.el8
1.0.1-6.el9_0
1.4.0-2.1.rhaos4.16.el8
1.4.0-1.2.rhaos4.13.el8
1.4.0-2.el9_4
1.4.0-1.3.rhaos4.15.el8
1.4.0-1.2.rhaos4.12.el8
1.4.0-1.1.rhaos4.13.el8
1.4.0-1.2.rhaos4.14.el8
1.4.0-1.1.rhaos4.12.el8
1.4.0-1.2.rhaos4.15.el8
1.4.0-1.rhaos4.11.el8
1.4.0-1.rhaos4.12.el8
1.4.0-1.rhaos4.13.el8
1.4.0-1.rhaos4.14.el8
1.0.1-7.1.rhaos4.11.el8
1.3.0-4.el9
1.0.1-11.1.rhaos4.14.el8
1.0.1-8.rhaos4.13.el8
1.0.1-6.rhaos4.11.el8
1.0.1-7.rhaos4.12.el8
1.0.1-7.rhaos4.13.el8
1.0.1-6.rhaos4.13.el8
1.2.0-1.el9
1.0.1-6.rhaos4.12.el8
0.8.6-1.rhaos4.5.el7
0.8.6-1.rhaos4.5.el8
0.8.6-1.rhaos4.2.el7
0.8.6-1.rhaos4.2.el8
0.8.3-3.el7_8
0.8.6-1.rhaos4.4.el7
0.8.6-1.rhaos4.4.el8
0.8.6-1.rhaos4.3.el8
1.0.1-5.rhaos4.11.el8
0.9.1-2.rhaos4.10.el8
0.9.1-1.rhaos4.10.el8
0.8.6-3.rhaos4.6.el7
0.8.6-2.rhaos4.5.el7
0.8.6-2.rhaos4.5.el8
0.8.3-1.el8
0.8.1-4.el7_7
0.7.5-2.el7
0.8.3-1.el7
0.8.1-4.el7
0.7.4-1.el7
0.5.2-6.el7
0.5.2-5.el7
0.5.2-4.el7
Vulnerabilities (118)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU140620 - Resource exhaustion CVE-2026-27145 |
CWE-400 | Medium | 1.4.0-10.rhaos4.18.el8 | 31.07.2026 |
SB2026073127 SB2026073129 SB2026073130 and 39 more |
||
| #VU140619 - Resource exhaustion CVE-2026-42504 |
CWE-400 | Medium | 1.4.0-10.rhaos4.18.el8 | 31.07.2026 |
SB2026073127 SB20260731138 SB20260731143 and 7 more |
||
| #VU140615 - Resource exhaustion CVE-2026-42499 |
CWE-400 | Medium | 1.4.0-7.rhaos4.14.el8, 1.4.0-7.rhaos4.15.el8, 1.4.0-10.rhaos4.16.el8, 1.4.0-10.rhaos4.18.el8 | 31.07.2026 |
SB2026073126 SB2026082630 SB2026082635 and 3 more |
||
| #VU140611 - Double Free CVE-2026-33811 |
CWE-415 | Medium | 1.4.0-7.rhaos4.14.el8, 1.4.0-7.rhaos4.15.el8, 1.4.0-10.rhaos4.16.el8, 1.4.0-10.rhaos4.18.el8 | 31.07.2026 |
SB2026073126 SB20260731121 SB20260731123 and 13 more |
||
| #VU140608 - Resource exhaustion CVE-2026-39820 |
CWE-400 | Medium | 1.4.0-10.rhaos4.16.el8, 1.4.0-10.rhaos4.18.el8 | 31.07.2026 |
SB2026073126 SB2026081985 SB2026082635 and 3 more |
||
| #VU140599 - Resource exhaustion CVE-2026-32280 |
CWE-400 | Medium | 1.4.0-6.rhaos4.14.el8, 1.4.0-6.rhaos4.15.el8, 1.4.0-7.rhaos4.14.el8, 1.4.0-7.rhaos4.15.el8, 1.4.0-10.rhaos4.16.el8, 1.4.0-10.rhaos4.18.el8 | 31.07.2026 |
SB2026073125 SB2026073160 SB2026073161 and 70 more |
||
| #VU136680 - Dependency on Vulnerable Third-Party Component CVE-2026-32283 |
CWE-1395 | Medium | 1.4.0-7.rhaos4.15.el8 | 02.07.2026 |
SB2026070218 SB2026070239 SB2026070240 and 61 more |
||
| #VU128730 - Improper Authorization CVE-2026-33186 |
CWE-285 | High | 1.4.0-9.rhaos4.16.el8 | 01.05.2026 |
SB2026050106 SB2026050107 SB2026050108 and 69 more |
||
| #VU124118 - Improper input validation CVE-2026-25679 |
CWE-20 | Medium | 1.2.0-3.el9_2.3, 1.4.0-6.rhaos4.14.el8, 1.4.0-6.rhaos4.15.el8, 1.4.0-7.rhaos4.13.el8, 1.4.0-7.rhaos4.14.el8, 1.4.0-7.rhaos4.15.el8, 1.4.0-10.rhaos4.16.el8, 1.4.0-10.rhaos4.18.el8, 1.6.2-3.el9_6 | 19.03.2026 |
SB2026031903 SB2026031904 SB2026031905 and 134 more |
||
| #VU124034 - Resource exhaustion CVE-2025-61726 |
CWE-400 | Medium | 1.2.0-3.el9_2.3, 1.4.0-6.rhaos4.14.el8, 1.4.0-6.rhaos4.15.el8, 1.4.0-7.rhaos4.13.el8, 1.4.0-7.rhaos4.17.el8, 1.4.0-7.rhaos4.18.el8, 1.6.2-3.el9_6 | 16.03.2026 |
SB2026031636 SB2026031637 SB2026031638 and 143 more |
||
| #VU124033 - Improper input validation CVE-2025-61728 |
CWE-20 | Medium | 1.4.0-6.rhaos4.14.el8, 1.4.0-7.rhaos4.13.el8 | 16.03.2026 |
SB2026031636 SB2026031637 SB2026031638 and 46 more |
||
| #VU123129 - Improper Certificate Validation CVE-2025-68121 |
CWE-295 | High | 1.2.0-3.el9_2.3, 1.4.0-6.rhaos4.14.el8, 1.4.0-6.rhaos4.15.el8, 1.4.0-7.rhaos4.13.el8, 1.4.0-7.rhaos4.14.el8, 1.4.0-7.rhaos4.15.el8, 1.4.0-10.rhaos4.16.el8, 1.6.2-3.el9_6 | 23.02.2026 |
SB2026022333 SB2026030334 SB2026030343 and 116 more |
||
| #VU119235 - Resource exhaustion CVE-2025-61729 |
CWE-400 | Medium | 1.2.0-3.el9_2.3, 1.4.0-6.rhaos4.14.el8, 1.4.0-6.rhaos4.15.el8, 1.4.0-7.rhaos4.13.el8, 1.4.0-7.rhaos4.16.el8, 1.6.2-3.el9_6 | 06.12.2025 |
SB2025120604 SB20251210172 SB20251210173 and 146 more |
||
| #VU118190 - Resource exhaustion CVE-2025-58183 |
CWE-400 | Medium | 1.4.0-7.rhaos4.13.el8, 1.4.0-7.rhaos4.16.el8, 1.4.0-7.rhaos4.18.el8 | 07.11.2025 |
SB2025110705 SB2025110725 SB2025110726 and 177 more |
||
| #VU118105 - UNIX Symbolic Link (Symlink) Following CVE-2025-52881 |
CWE-61 | Low | 1.4.0-7.rhaos4.17.el8 | 05.11.2025 |
SB2025110519 SB2025110530 SB2025110545 and 62 more |
||
| #VU111945 - Improper Certificate Validation CVE-2025-6032 |
CWE-295 | Medium | 1.4.0-5.rhaos4.17.el8 | 25.06.2025 |
SB2025062534 SB2025062541 SB2025062542 and 26 more |
||
| #VU107019 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2025-22871 |
CWE-444 | Medium | 1.4.0-5.rhaos4.15.el8, 1.4.0-5.rhaos4.17.el8, 1.4.0-5.rhaos4.18.el8, 1.4.0-6.el9_4.1, 1.4.0-6.rhaos4.16.el8, 1.6.2-2.el9_6 | 05.04.2025 |
SB2025040507 SB2025040508 SB2025040739 and 109 more |
||
| #VU97965 - Improper Access Control CVE-2024-44082 |
CWE-284 | Low | 1.4.0-4.rhaos4.12.el8, 1.4.0-4.rhaos4.13.el8 | 02.10.2024 |
SB2024100260 SB2024100261 SB2024100262 and 10 more |
||
| #VU93850 - Resource exhaustion CVE-2024-24791 |
CWE-400 | Medium | 1.5.1-2.el9 | 07.07.2024 |
SB2024070727 SB2024070728 SB2024070729 and 86 more |
||
| #VU89296 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2024-24788 |
CWE-835 | Medium | 1.5.1-2.el9 | 09.05.2024 |
SB2024050936 SB2024050937 SB2024051029 and 43 more |
Showing elements 1 - 20 out of 118