Known vulnerabilities in cri-o (Red Hat package) - page 15

Software CPE: cpe:2.3:o:red_hat:cri-o_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 289
Public exploits: 18
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting cri-o (Red Hat package) cri-o (Red Hat package) is affected by 289 known vulnerabilities: 25 high, 168 medium, 96 low Critical High Medium Low

Vulnerabilities (289)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU25458 - Heap-based Buffer Overflow
CVE-2020-7039
CWE-122 Low
No
No
1.16.2-13.dev.rhaos4.3.gita83f883.el7, 1.16.2-15.dev.rhaos4.3.gita83f883.el8 19.02.2020 SB2020021912
SB2020031117
SB2020031053
and 25 more
#VU25457 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-7211
CWE-22 Low
No
No
1.16.2-13.dev.rhaos4.3.gita83f883.el7, 1.16.2-15.dev.rhaos4.3.gita83f883.el8 19.02.2020 SB2020021912
SB2020021193
#VU24764 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-2105
CWE-451 Low
No
No
1.16.3-22.dev.rhaos4.3.git11c04e3.el8 30.01.2020 SB2020013005
SB20200310153
#VU24763 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2104
CWE-200 Low
No
No
1.16.3-22.dev.rhaos4.3.git11c04e3.el8 30.01.2020 SB2020013005
SB20200310153
#VU24762 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2103
CWE-200 Low
No
No
1.16.3-22.dev.rhaos4.3.git11c04e3.el8 30.01.2020 SB2020013005
SB20200310153
#VU21118 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-10392
CWE-78 Medium
No
No
1.13.12-6.dev.rhaos4.1.git8abaaeb.el7, 1.13.12-6.dev.rhaos4.1.git8abaaeb.el8_0, 1.14.12-10.dev.rhaos4.2.git313d784.el8, 1.14.12-19.dev.rhaos4.2.git313d784.el7, 1.16.3-20.dev.rhaos4.3.git11c04e3.el7, 1.16.3-22.dev.rhaos4.3.git11c04e3.el8 16.09.2019 SB2019091607
SB2020061842
SB2020022451
and 2 more
#VU30804 - Permissions, Privileges, and Access Controls
CVE-2019-11247
CWE-264 High
No
No
1.9.16-3.git858756d.el7 29.08.2019 SB2019082915
SB2019080655
SB2019081556
and 3 more
#VU20201 - Resource exhaustion
CVE-2019-9514
CWE-400 Medium
No
No
1.9.16-3.git858756d.el7 13.08.2019 SB2019081326
SB2019082004
SB2019082502
and 79 more
#VU20200 - Resource exhaustion
CVE-2019-9512
CWE-400 Medium
No
No
1.9.16-3.git858756d.el7 13.08.2019 SB2019081326
SB2019082006
SB2019082502
and 72 more


Showing elements 281 - 300 out of 289