Known vulnerabilities in nautilus (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:nautilus_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 68
Public exploits: 3
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting nautilus (Red Hat package) nautilus (Red Hat package) is affected by 68 known vulnerabilities: 2 critical, 39 high, 13 medium, 14 low Critical High Medium Low

Vulnerabilities (68)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48720 - Use After Free
CVE-2020-13543
CWE-416 High
No
No
3.28.1-15.el8 01.12.2020 SB2020112408
SB2020122344
SB2021040169
and 7 more
#VU48617 - Use After Free
CVE-2020-13584
CWE-416 High
No
No
3.28.1-15.el8 24.11.2020 SB2020112408
SB2020112602
SB2020112618
and 11 more
#VU46804 - Out-of-bounds write
CVE-2020-9983
CWE-787 High
No
No
3.28.1-15.el8 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 13 more
#VU46802 - Use After Free
CVE-2020-9951
CWE-416 High
No
No
3.28.1-15.el8 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 14 more
#VU46801 - Type confusion
CVE-2020-9948
CWE-843 High
No
No
3.28.1-15.el8 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 14 more
#VU49120 - Cleartext Storage of Sensitive Information
CVE-2020-14391
CWE-312 Low
No
No
3.28.1-14.el8 01.09.2020 SB2020122208
SB2021011210
SB2021012638
and 2 more
#VU31920 - Memory corruption
CVE-2020-15503
CWE-119 Medium
No
No
3.28.1-14.el8 27.07.2020 SB2020070228
SB2020072741
SB2020080204
and 12 more
#VU30304 - Use After Free
CVE-2020-11793
CWE-416 High
No
No
3.28.1-14.el8 17.04.2020 SB2020041720
SB2020050206
SB2020042012
and 13 more
#VU26432 - Business Logic Errors (3.0)
CVE-2020-3885
CWE-840 Low
No
No
3.28.1-14.el8 27.03.2020 SB2020032715
SB2020032719
SB2020051104
and 8 more
#VU26430 - Memory corruption
CVE-2020-3899
CWE-119 High
No
No
3.28.1-14.el8 27.03.2020 SB2020032715
SB2020032719
SB2020042823
and 12 more
#VU26428 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-3894
CWE-362 Medium
Available
No
3.28.1-14.el8 27.03.2020 SB2020032715
SB2020032719
SB2020051104
and 8 more
#VU26426 - Memory corruption
CVE-2020-3895
CWE-119 High
No
No
3.28.1-14.el8 27.03.2020 SB2020032715
SB2020032718
SB2020032719
and 9 more
#VU26422 - Type confusion
CVE-2020-3897
CWE-843 High
No
No
3.28.1-14.el8 27.03.2020 SB2020032715
SB2020032718
SB2020032719
and 9 more
#VU25382 - Memory corruption
CVE-2020-3868
CWE-119 High
No
No
3.28.1-14.el8 15.02.2020 SB2020021501
SB2020021717
SB2020021808
and 8 more
#VU25381 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-3867
CWE-79 Medium
No
No
3.28.1-14.el8 15.02.2020 SB2020021501
SB2020021717
SB2020021808
and 8 more
#VU25380 - Origin Validation Error
CVE-2020-3865
CWE-346 Medium
No
No
3.28.1-14.el8 15.02.2020 SB2020021501
SB2020021717
SB2020021808
and 8 more
#VU25379 - Origin Validation Error
CVE-2020-3864
CWE-346 Medium
No
No
3.28.1-14.el8 15.02.2020 SB2020021501
SB2020021717
SB2020021808
and 8 more
#VU25375 - Memory corruption
CVE-2020-3862
CWE-119 Low
No
No
3.28.1-14.el8 14.02.2020 SB2020021501
SB2020021717
SB2020021808
and 8 more
#VU23613 - Use After Free
CVE-2019-8846
CWE-416 High
No
No
3.28.1-14.el8 16.12.2019 SB2019121607
SB2020020534
SB2020122208
and 8 more
#VU18944 - Incorrect Default Permissions
CVE-2019-13012
CWE-276 Low
No
No
3.28.1-15.el8 29.06.2019 SB2019062905
SB2019072003
SB2019091144
and 9 more


Showing elements 1 - 20 out of 68