Known vulnerabilities in libXpm (Red Hat package)
Vendor:
Red Hat Inc.
Software:
libXpm (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:libxpm_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
5
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU81436 - Out-of-bounds read CVE-2023-43789 |
CWE-125 | Low | 3.5.12-11.el8, 3.5.13-10.el9 | 03.10.2023 |
SB2023100342 SB2023100346 SB2023100424 and 36 more |
||
| #VU81435 - Out-of-bounds read CVE-2023-43788 |
CWE-125 | Low | 3.5.12-11.el8, 3.5.13-10.el9 | 03.10.2023 |
SB2023100342 SB2023100346 SB2023100424 and 37 more |
||
| #VU71236 - Untrusted Search Path CVE-2022-4883 |
CWE-426 | Low | 3.5.12-2.el7_9, 3.5.12-9.el8_1, 3.5.12-9.el8_2, 3.5.12-9.el8_4, 3.5.12-9.el8_6, 3.5.12-9.el8_7, 3.5.13-8.el9_0, 3.5.13-8.el9_1 | 17.01.2023 |
SB2023011734 SB2023011737 SB2023011806 and 38 more |
||
| #VU71235 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2022-44617 |
CWE-835 | Low | 3.5.12-9.el8_1, 3.5.12-9.el8_2, 3.5.12-9.el8_4, 3.5.12-9.el8_6, 3.5.12-9.el8_7, 3.5.13-8.el9_0, 3.5.13-8.el9_1 | 17.01.2023 |
SB2023011734 SB2023011737 SB2023011806 and 34 more |
||
| #VU71234 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2022-46285 |
CWE-835 | Low | 3.5.12-9.el8_1, 3.5.12-9.el8_2, 3.5.12-9.el8_4, 3.5.12-9.el8_6, 3.5.12-9.el8_7, 3.5.13-8.el9_0, 3.5.13-8.el9_1 | 17.01.2023 |
SB2023011734 SB2023011737 SB2023011806 and 35 more |