Known vulnerabilities in libsass (Red Hat package)
Vendor:
Red Hat Inc.
Software:
libsass (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:libsass_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU48720 - Use After Free CVE-2020-13543 |
CWE-416 | High | 3.4.5-6.el8 | 01.12.2020 |
SB2020112408 SB2020122344 SB2021040169 and 7 more |
||
| #VU48617 - Use After Free CVE-2020-13584 |
CWE-416 | High | 3.4.5-6.el8 | 24.11.2020 |
SB2020112408 SB2020112602 SB2020112618 and 11 more |
||
| #VU46804 - Out-of-bounds write CVE-2020-9983 |
CWE-787 | High | 3.4.5-6.el8 | 18.09.2020 |
SB2020091802 SB2020112408 SB2020112602 and 13 more |
||
| #VU46802 - Use After Free CVE-2020-9951 |
CWE-416 | High | 3.4.5-6.el8 | 18.09.2020 |
SB2020091802 SB2020112408 SB2020112602 and 14 more |
||
| #VU46801 - Type confusion CVE-2020-9948 |
CWE-843 | High | 3.4.5-6.el8 | 18.09.2020 |
SB2020091802 SB2020112408 SB2020112602 and 14 more |
||
| #VU18944 - Incorrect Default Permissions CVE-2019-13012 |
CWE-276 | Low | 3.4.5-6.el8 | 29.06.2019 |
SB2019062905 SB2019072003 SB2019091144 and 9 more |