Known vulnerabilities in imgbased (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:imgbased_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 29
Public exploits: 14
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting imgbased (Red Hat package) imgbased (Red Hat package) is affected by 29 known vulnerabilities: 3 high, 10 medium, 16 low Critical High Medium Low

Vulnerabilities (29)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU62830 - Heap-based Buffer Overflow
CVE-2022-24903
CWE-122 High
No
No
1.2.24-1.el8ev 05.05.2022 SB2022050524
SB2022050920
SB2022052425
and 45 more
#VU62002 - Improper input validation
CVE-2022-1271
CWE-20 High
No
No
1.2.24-1.el8ev 08.04.2022 SB2022040803
SB2022040804
SB2022040822
and 134 more
#VU61671 - Memory corruption
CVE-2018-25032
CWE-119 Medium
No
No
1.2.24-1.el8ev 28.03.2022 SB2022032844
SB2022032845
SB2022033018
and 192 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Available
No
1.2.24-1.el8ev 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU61271 - Heap-based Buffer Overflow
CVE-2022-25636
CWE-122 Low
Available
No
1.2.24-1.el8ev 13.03.2022 SB2022031307
SB2022031308
SB2022031401
and 26 more
#VU61246 - Use After Free
CVE-2021-4083
CWE-416 Low
No
No
1.2.24-1.el8ev 10.03.2022 SB2022031029
SB2022031033
SB2022031034
and 55 more
#VU60797 - Use After Free
CVE-2021-4028
CWE-416 Low
No
No
1.2.24-1.el8ev 22.02.2022 SB2022022230
SB2022022231
SB2022022232
and 32 more
#VU56018 - Memory corruption
CVE-2021-22543
CWE-119 Low
Available
No
1.2.23-1.el8ev 20.08.2021 SB2021052641
SB2021082206
SB2021083123
and 56 more
#VU56017 - Out-of-bounds write
CVE-2021-22555
CWE-787 Low
Available
Exploited
1.2.23-1.el8ev 20.08.2021 SB2021070718
SB2021082206
SB2021083120
and 53 more
#VU56000 - Command injection
CVE-2021-3621
CWE-77 Medium
No
No
1.2.23-1.el8ev 20.08.2021 SB2021082002
SB2021082206
SB2021083125
and 19 more
#VU55257 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-32399
CWE-362 Low
No
No
1.2.21-1.el8ev 22.07.2021 SB2021051144
SB2021072247
SB2021072248
and 58 more
#VU55143 - Integer overflow
CVE-2021-33909
CWE-190 Low
Available
No
1.2.21-1.el8ev 21.07.2021 SB2021072106
SB2021072222
SB2021072223
and 63 more
#VU55034 - Uncontrolled Memory Allocation
CVE-2021-33910
CWE-789 Low
Available
No
1.2.21-1.el8ev 20.07.2021 SB2021072031
SB2021072032
SB2021072206
and 31 more
#VU54454 - Use After Free
CVE-2021-33034
CWE-416 Low
No
No
1.2.21-1.el8ev 30.06.2021 SB2021063013
SB2021063014
SB2021063015
and 55 more
#VU54292 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-3609
CWE-362 Medium
No
No
1.2.23-1.el8ev 21.06.2021 SB2021062146
SB2021072222
SB2021072223
and 43 more
#VU52984 - Information Exposure Through Log Files
CVE-2021-3447
CWE-532 Low
No
No
1.2.21-1.el8ev 10.05.2021 SB2021040180
SB2021051001
SB2021072616
and 13 more
#VU51733 - NULL Pointer Dereference
CVE-2021-3449
CWE-476 Medium
Available
No
1.2.18-0.1.el8ev 25.03.2021 SB2021032518
SB2021032602
SB2021032617
and 56 more
#VU50990 - Integer overflow
CVE-2020-36242
CWE-190 High
No
No
1.2.19-1.el8ev 28.02.2021 SB2021022812
SB2021022813
SB2021052024
and 27 more
#VU50367 - Covert Timing Channel
CVE-2020-25659
CWE-385 Medium
No
No
1.2.19-1.el8ev 11.01.2021 SB2020111230
SB2021052024
SB2021060319
and 18 more
#VU48444 - Uncontrolled Recursion
CVE-2020-28196
CWE-674 Medium
No
No
1.2.19-1.el8ev 06.11.2020 SB2020111617
SB2020111618
SB2020112306
and 23 more


Showing elements 1 - 20 out of 29