Known vulnerabilities in nspr (Red Hat package)
Vendor:
Red Hat Inc.
Software:
nspr (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:nspr_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
15
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
4.36.0-8.el9_4
4.10.8-1.el7_1
4.7.4-1.el4_7.1
4.7.4-1.el5_3.1
4.7.4-1.el4_8.1
4.25.0-2.el8_2
4.32.0-1.el8_4
4.25.0-2.el7_9
4.21.0-2.el8_0
4.7.3-1.el4
4.7.3-2.el5
4.7.4-1.el5_2
4.7.5-1.el4_8
4.7.5-1.el5_4
4.7.6-1.el4_8
4.7.6-1.el5_4
4.8.4-1.1.el4_8
4.8.4-1.el5_4
4.8.6-1.el4
4.8.6-1.el5
4.9.1-4.el5_8
4.9.5-1.el5_9
4.10.2-2.el5_10
4.10.6-1.el5_10
4.10.6-1.el7_0
4.10.6-3.el7
4.10.8-1.el5_11
4.10.8-2.el5_11
4.10.8-2.el7_1
4.8.9-6.el6_2
4.9.5-5.el6_4
4.10.6-2.el6_5
4.10.8-2.el6_6
4.11.0-0.1.el6_7
4.11.0-1.el5_11
4.11.0-1.el7_2
4.21.0-1.el6_10
4.19.0-1.el6
4.13.1-1.el6
4.11.0-1.el6
4.10.8-2.el6_7
4.10.8-1.el6_6
4.10.6-1.el6_5
4.10.2-1.el6_5
4.10.0-1.el6
4.9.5-2.el6_4
4.9.2-1.el6
4.9.1-2.el6_3
4.9-1.el6
4.8.9-3.el6_2
4.8.8-3.el6
4.8.8-1.el6_1
4.8.7-1.el6
4.8.6-1.el6
Vulnerabilities (15)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU82285 - Resource exhaustion CVE-2016-1978 |
CWE-400 | Medium | 4.11.0-1.el5_11 | 20.10.2023 |
SB2016050808 SB2016042119 SB2016042506 |
||
| #VU47910 - Allocation of Resources Without Limits or Throttling CVE-2020-25648 |
CWE-770 | Medium | 4.32.0-1.el8_4 | 21.10.2020 |
SB2020102132 SB2020102609 SB2021050605 and 18 more |
||
| #VU47197 - Heap-based Buffer Overflow CVE-2019-17006 |
CWE-122 | High | 4.25.0-2.el7_9, 4.25.0-2.el8_2 | 30.09.2020 |
SB2019090221 SB2020093089 SB2020062437 and 19 more |
||
| #VU46019 - Cryptographic Issues CVE-2020-6829 |
CWE-310 | Low | 4.25.0-2.el7_9 | 25.08.2020 |
SB2020082520 SB2020072974 SB2020072975 and 18 more |
||
| #VU45799 - Out-of-bounds read CVE-2020-12403 |
CWE-125 | Medium | 4.25.0-2.el7_9 | 20.08.2020 |
SB2020082004 SB2020082005 SB2020072966 and 17 more |
||
| #VU45798 - Use of a Broken or Risky Cryptographic Algorithm CVE-2020-12401 |
CWE-327 | Low | 4.25.0-2.el7_9 | 20.08.2020 |
SB2020082004 SB2020082005 SB2020072965 and 19 more |
||
| #VU45797 - Use of a Broken or Risky Cryptographic Algorithm CVE-2020-12400 |
CWE-327 | Low | 4.25.0-2.el7_9 | 20.08.2020 |
SB2020082004 SB2020082005 SB2020072964 and 19 more |
||
| #VU29460 - Cryptographic Issues CVE-2020-12402 |
CWE-310 | Low | 4.25.0-2.el7_9, 4.25.0-2.el8_2 | 02.07.2020 |
SB2020070208 SB2020071322 SB2020071401 and 23 more |
||
| #VU26105 - NULL Pointer Dereference CVE-2018-18508 |
CWE-476 | Low | 4.21.0-2.el8_0 | 17.03.2020 |
SB2020031706 SB2020011201 SB2021022218 and 3 more |
||
| #VU24061 - Selection of Less-Secure Algorithm During Negotiat CVE-2019-17023 |
CWE-757 | Low | 4.25.0-2.el7_9, 4.25.0-2.el8_2 | 07.01.2020 |
SB2020010708 SB2020010807 SB2020010712 and 13 more |
||
| #VU23562 - Improper input validation CVE-2019-11729 |
CWE-20 | Medium | 4.21.0-2.el8_0 | 12.12.2019 |
SB2019062813 SB2019121210 SB2020031903 and 11 more |
||
| #VU23369 - Use After Free CVE-2019-11756 |
CWE-416 | High | 4.25.0-2.el7_9, 4.25.0-2.el8_2 | 03.12.2019 |
SB2019120312 SB2019120314 SB2019121002 and 16 more |
||
| #VU33037 - Out-of-bounds read CVE-2019-11719 |
CWE-125 | Medium | 4.21.0-2.el8_0, 4.25.0-2.el7_9 | 23.07.2019 |
SB2019072322 SB2019082322 SB2019073024 and 17 more |
||
| #VU47195 - Improper Certificate Validation CVE-2019-11727 |
CWE-295 | Medium | 4.21.0-2.el8_0, 4.25.0-2.el7_9 | 23.07.2019 |
SB2020093089 SB2020011201 SB2021043017 and 8 more |
||
| #VU33635 - Improper input validation CVE-2016-1979 |
CWE-20 | High | 4.11.0-1.el5_11 | 13.03.2016 |
SB2016032406 SB2016042506 |