Known vulnerabilities in foreman_ygg_worker (Red Hat package)
Vendor:
Red Hat Inc.
Software:
foreman_ygg_worker (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:foreman_ygg_worker_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
5
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU82064 - Resource exhaustion CVE-2023-39325 |
CWE-400 | Medium | 0.2.2-1.el7sat, 0.2.2-1.el8sat, 0.2.2-1.el9sat | 16.10.2023 |
SB2023101651 SB2023101652 SB2023101653 and 341 more |
||
| #VU81728 - Resource exhaustion CVE-2023-44487 |
CWE-400 | High | 0.2.2-1.el7sat, 0.2.2-1.el8sat, 0.2.2-1.el9sat | 10.10.2023 |
SB2023101023 SB2023101024 SB2023101037 and 652 more |
||
| #VU70334 - Allocation of Resources Without Limits or Throttling CVE-2022-41717 |
CWE-770 | Medium | 0.2.2-1.el7sat, 0.2.2-1.el8sat, 0.2.2-1.el9sat | 14.12.2022 |
SB2022121432 SB2022121433 SB2022121435 and 185 more |
||
| #VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-2068 |
CWE-78 | Medium | 0.2.2-1.el7sat, 0.2.2-1.el8sat, 0.2.2-1.el9sat | 21.06.2022 |
SB2022062120 SB2022062125 SB2022062236 and 135 more |
||
| #VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-1292 |
CWE-78 | Medium | 0.2.2-1.el7sat, 0.2.2-1.el8sat, 0.2.2-1.el9sat | 03.05.2022 |
SB2022050315 SB2022050436 SB2022050503 and 141 more |