Known vulnerabilities in cri-tools (Red Hat package) - page 7

Software CPE: cpe:2.3:o:red_hat:cri-tools_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 138
Public exploits: 7
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting cri-tools (Red Hat package) cri-tools (Red Hat package) is affected by 138 known vulnerabilities: 8 high, 94 medium, 36 low Critical High Medium Low

Vulnerabilities (138)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU52495 - Permissions, Privileges, and Access Controls
CVE-2021-21645
CWE-264 Low
No
No
1.20.0-3.el7 22.04.2021 SB2021042205
SB2021060101
SB2021063033
and 3 more
#VU51878 - Exposure of sensitive information to an unauthorized actor
CVE-2021-28163
CWE-200 Medium
No
No
1.20.0-2.el7, 1.20.0-2.el8 01.04.2021 SB2021040179
SB2021050704
SB2021051321
and 27 more
#VU51876 - Resource exhaustion
CVE-2021-28165
CWE-400 Medium
No
No
1.20.0-2.el7, 1.20.0-2.el8 01.04.2021 SB2021040179
SB2021042208
SB2021050704
and 56 more
#VU50047 - Incorrect Calculation
CVE-2021-3114
CWE-682 Medium
No
No
1.20.0-2.el7, 1.20.0-2.el8, 1.21.0-2.el7, 1.21.0-2.el8 26.01.2021 SB2021012714
SB2021012715
SB20210120130
and 40 more
#VU48480 - Improper input validation
CVE-2020-28362
CWE-20 Medium
No
No
1.20.0-2.el7, 1.20.0-2.el8 17.11.2020 SB2020111715
SB2020111716
SB2020111225
and 30 more
#VU45699 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-16845
CWE-835 Medium
No
No
1.18.0-4.el7, 1.18.0-4.el8, 1.20.0-3.el7 14.08.2020 SB2020081403
SB2020081404
SB2020081405
and 44 more
#VU31891 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-15586
CWE-362 Medium
No
No
1.18.0-4.el7, 1.18.0-4.el8, 1.20.0-3.el7 27.07.2020 SB2020072734
SB2020072735
SB2020072749
and 37 more
#VU24764 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-2105
CWE-451 Low
No
No
1.17.0-1.el7, 1.17.0-2.el8 30.01.2020 SB2020013005
SB20200310153
#VU24763 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2104
CWE-200 Low
No
No
1.17.0-1.el7, 1.17.0-2.el8 30.01.2020 SB2020013005
SB20200310153
#VU24762 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2103
CWE-200 Low
No
No
1.17.0-1.el7, 1.17.0-2.el8 30.01.2020 SB2020013005
SB20200310153
#VU24761 - Cryptographic Issues
CVE-2020-2102
CWE-310 Medium
No
No
1.17.0-1.el7, 1.17.0-2.el8 30.01.2020 SB2020013005
SB20200310153
#VU24760 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2101
CWE-200 Medium
No
No
1.17.0-1.el7, 1.17.0-2.el8 30.01.2020 SB2020013005
SB20200310153
#VU24759 - Resource Management Errors
CVE-2020-2100
CWE-399 Medium
No
No
1.17.0-1.el7, 1.17.0-2.el8 30.01.2020 SB2020013005
SB20200310153
#VU24758 - Improper Authentication
CVE-2020-2099
CWE-287 High
No
No
1.17.0-1.el7, 1.17.0-2.el8 30.01.2020 SB2020013004
SB20200310153
#VU21118 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-10392
CWE-78 Medium
No
No
1.17.0-1.el8 16.09.2019 SB2019091607
SB2020061842
SB2020022451
and 2 more
#VU30804 - Permissions, Privileges, and Access Controls
CVE-2019-11247
CWE-264 High
No
No
1.0.0-6.rhaos3.9.git8e6013a.el7 29.08.2019 SB2019082915
SB2019080655
SB2019081556
and 3 more
#VU20201 - Resource exhaustion
CVE-2019-9514
CWE-400 Medium
No
No
1.0.0-6.rhaos3.9.git8e6013a.el7 13.08.2019 SB2019081326
SB2019082004
SB2019082502
and 79 more
#VU20200 - Resource exhaustion
CVE-2019-9512
CWE-400 Medium
No
No
1.0.0-6.rhaos3.9.git8e6013a.el7 13.08.2019 SB2019081326
SB2019082006
SB2019082502
and 72 more


Showing elements 121 - 140 out of 138