Known vulnerabilities in OpenShift Data Foundation (formerly OpenShift Container Storage) - page 16

Software CPE: cpe:2.3:a:red_hat:openshift_container_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 476
Public exploits: 35
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting OpenShift Data Foundation (formerly OpenShift Container Storage) OpenShift Data Foundation (formerly OpenShift Container Storage) is affected by 476 known vulnerabilities: 1 critical, 90 high, 246 medium, 139 low Critical High Medium Low

Vulnerabilities (476)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72630 - Incorrect Default Permissions
CVE-2022-3650
CWE-276 Low
No
No
4.12.1 28.02.2023 SB2023022857
SB2023022873
SB2023030907
and 10 more
#VU71686 - Insufficient Entropy
CVE-2021-4238
CWE-331 Low
No
No
4.12.1, 4.13.0 31.01.2023 SB2023013107
SB2023013111
SB2023013113
and 22 more
#VU70474 - Integer overflow
CVE-2022-47629
CWE-190 High
No
No
4.12.1, 4.13.0 22.12.2022 SB2022122202
SB2022122204
SB2022122205
and 98 more
#VU70334 - Allocation of Resources Without Limits or Throttling
CVE-2022-41717
CWE-770 Medium
Available
No
4.12.2, 4.13.0 14.12.2022 SB2022121432
SB2022121433
SB2022121435
and 185 more
#VU66440 - Permissions, Privileges, and Access Controls
CVE-2022-0670
CWE-264 Medium
No
No
4.11.0, 4.13.0 12.08.2022 SB2022081213
SB2022081215
SB2022081223
and 10 more
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
4.11.0 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
4.11.0 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU64508 - Out-of-bounds read
CVE-2022-1927
CWE-125 Low
No
No
4.11.0 20.06.2022 SB2022062022
SB2022080332
SB2022080610
and 49 more
#VU64506 - Out-of-bounds write
CVE-2022-1897
CWE-787 Low
No
No
4.11.0 20.06.2022 SB2022062022
SB2022070807
SB2022080332
and 48 more
#VU63945 - Out-of-bounds read
CVE-2022-1586
CWE-125 Medium
No
No
4.11.0, 4.13.0 02.06.2022 SB2022060210
SB2022071156
SB2022071217
and 71 more
#VU63487 - Out-of-bounds write
CVE-2022-1785
CWE-787 High
No
No
4.11.0 20.05.2022 SB2022052017
SB2022062022
SB2022063027
and 47 more
#VU63009 - Incorrect Implementation of Authentication Algorithm
CVE-2022-27782
CWE-303 Medium
No
No
4.11.0 11.05.2022 SB2022051112
SB2022051136
SB2022051170
and 68 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Available
No
4.11.0 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU62741 - Integer overflow
CVE-2022-29824
CWE-190 High
No
No
4.11.0 03.05.2022 SB2022050305
SB2022050306
SB2022050307
and 73 more
#VU62644 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27776
CWE-200 Low
No
No
4.11.0 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 62 more
#VU62641 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27774
CWE-200 Medium
No
No
4.11.0 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 57 more
#VU62640 - Improper Authentication
CVE-2022-22576
CWE-287 Medium
No
No
4.11.0 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 60 more
#VU60738 - Integer overflow
CVE-2022-25314
CWE-190 Medium
No
No
4.11.0 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 68 more
#VU60737 - Stack-based buffer overflow
CVE-2022-25313
CWE-121 High
No
No
4.11.0 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 64 more
#VU20426 - Resource exhaustion
CVE-2019-10747
CWE-400 Medium
No
No
4.11.0 28.08.2019 SB2019082316
SB2022082512
SB2020110621
and 5 more


Showing elements 301 - 320 out of 476