Known vulnerabilities in jbcs-httpd24-nghttp2 (Red Hat package) - page 3
Vendor:
Red Hat Inc.
Software:
jbcs-httpd24-nghttp2 (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:jbcs-httpd24-nghttp2_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
83
Public exploits:
8
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
1.64.0-3.el7jbcs
1.64.0-3.el8jbcs
1.43.0-13.el7jbcs
1.43.0-13.el8jbcs
1.43.0-12.el7jbcs
1.43.0-12.el8jbcs
1.39.2-34.jbcs.el6
1.39.2-34.jbcs.el7
1.43.0-11.el7jbcs
1.43.0-11.el8jbcs
1.43.0-10.el7jbcs
1.43.0-10.el8jbcs
1.39.2-41.jbcs.el7
1.39.2-41.el8jbcs
1.39.2-39.jbcs.el7
1.39.2-39.el8jbcs
1.39.2-37.el8jbcs
1.39.2-37.jbcs.el7
1.39.2-35.jbcs.el7
1.39.2-25.jbcs.el6
1.39.2-25.jbcs.el7
1.39.2-10.jbcs.el6
1.39.2-10.jbcs.el7
1.39.2-4.jbcs.el6
1.39.2-4.jbcs.el7
1.39.2-1.jbcs.el6
1.39.2-1.jbcs.el7
1.29.0-9.jbcs.el6
1.29.0-9.jbcs.el7
1.29.0-8.jbcs.el7
1.29.0-8.jbcs.el6
1.12.0-9.jbcs.el6
1.12.0-9.jbcs.el7
Vulnerabilities (83)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2022-0778 |
CWE-835 | Medium | 1.39.2-41.el8jbcs, 1.39.2-41.jbcs.el7 | 15.03.2022 |
SB2022031520 SB2022031522 SB2022031611 and 238 more |
||
| #VU61286 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2022-22720 |
CWE-444 | Medium | 1.39.2-41.el8jbcs, 1.39.2-41.jbcs.el7 | 14.03.2022 |
SB2022031416 SB2022031504 SB2022031724 and 56 more |
||
| #VU60922 - Use After Free CVE-2022-23308 |
CWE-416 | High | 1.39.2-41.el8jbcs, 1.39.2-41.jbcs.el7 | 01.03.2022 |
SB2022030109 SB2022030110 SB2022031503 and 59 more |
||
| #VU60739 - Integer overflow CVE-2022-25315 |
CWE-190 | High | 1.43.0-10.el7jbcs, 1.43.0-10.el8jbcs | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 99 more |
||
| #VU60738 - Integer overflow CVE-2022-25314 |
CWE-190 | Medium | 1.43.0-10.el7jbcs, 1.43.0-10.el8jbcs | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 68 more |
||
| #VU56680 - Out-of-bounds read CVE-2021-36160 |
CWE-125 | Medium | 1.43.0-10.el7jbcs, 1.43.0-10.el8jbcs | 17.09.2021 |
SB2021091706 SB2021091707 SB2021092301 and 22 more |
||
| #VU56679 - Memory corruption CVE-2021-39275 |
CWE-119 | Medium | 1.43.0-10.el7jbcs, 1.43.0-10.el8jbcs | 17.09.2021 |
SB2021091706 SB2021091707 SB2021092301 and 44 more |
||
| #VU54225 - Use After Free CVE-2021-3518 |
CWE-416 | High | 1.39.2-41.el8jbcs, 1.39.2-41.jbcs.el7 | 18.06.2021 |
SB2020110609 SB2021061811 SB2021063005 and 40 more |
||
| #VU54224 - Out-of-bounds write CVE-2021-3517 |
CWE-787 | High | 1.39.2-41.el8jbcs, 1.39.2-41.jbcs.el7 | 18.06.2021 |
SB2020110609 SB2021061811 SB2021063005 and 42 more |
||
| #VU54223 - NULL Pointer Dereference CVE-2021-3537 |
CWE-476 | Medium | 1.39.2-41.el8jbcs, 1.39.2-41.jbcs.el7 | 18.06.2021 |
SB2020110609 SB2021061811 SB2021063005 and 27 more |
||
| #VU54222 - Use After Free CVE-2021-3516 |
CWE-416 | High | 1.39.2-41.el8jbcs, 1.39.2-41.jbcs.el7 | 18.06.2021 |
SB2020110609 SB2021061811 SB2021063005 and 28 more |
||
| #VU53778 - NULL Pointer Dereference CVE-2020-13950 |
CWE-476 | Medium | 1.39.2-39.el8jbcs, 1.39.2-39.jbcs.el7 | 03.06.2021 |
SB2021060320 SB2021060321 SB2021060713 and 15 more |
||
| #VU53776 - NULL Pointer Dereference CVE-2021-26691 |
CWE-476 | Low | 1.39.2-39.el8jbcs, 1.39.2-39.jbcs.el7 | 03.06.2021 |
SB2021060320 SB2021060321 SB2021060713 and 26 more |
||
| #VU53775 - Stack-based buffer overflow CVE-2020-35452 |
CWE-121 | Medium | 1.39.2-39.el8jbcs, 1.39.2-39.jbcs.el7 | 03.06.2021 |
SB2021060320 SB2021060321 SB2021060713 and 19 more |
||
| #VU53774 - Improper input validation CVE-2021-30641 |
CWE-20 | Medium | 1.39.2-39.el8jbcs, 1.39.2-39.jbcs.el7 | 03.06.2021 |
SB2021060320 SB2021060321 SB2021060713 and 20 more |
||
| #VU53289 - Improper input validation CVE-2021-3541 |
CWE-20 | Medium | 1.39.2-41.el8jbcs, 1.39.2-41.jbcs.el7 | 16.05.2021 |
SB2021051601 SB2021051602 SB2021061811 and 32 more |
||
| #VU50745 - Improper input validation CVE-2021-23840 |
CWE-20 | Medium | 1.39.2-39.el8jbcs, 1.39.2-39.jbcs.el7 | 17.02.2021 |
SB2021021702 SB2021021817 SB2021022420 and 83 more |
||
| #VU50740 - NULL Pointer Dereference CVE-2021-23841 |
CWE-476 | Medium | 1.39.2-39.el8jbcs, 1.39.2-39.jbcs.el7 | 17.02.2021 |
SB2021021702 SB2021021817 SB2021022420 and 66 more |
||
| #VU29488 - Integer overflow CVE-2020-14155 |
CWE-190 | High | 1.39.2-39.el8jbcs, 1.39.2-39.jbcs.el7 | 02.07.2020 |
SB2020070226 SB2020081713 SB2021010712 and 37 more |
||
| #VU30256 - Out-of-bounds read CVE-2019-20838 |
CWE-125 | Medium | 1.39.2-39.el8jbcs, 1.39.2-39.jbcs.el7 | 15.06.2020 |
SB2020061529 SB2021010712 SB2021020201 and 24 more |
Showing elements 41 - 60 out of 83