Known vulnerabilities in OpenShift Service Mesh - page 10
Vendor:
Red Hat Inc.
Software:
OpenShift Service Mesh
Software CPE:
cpe:2.3:a:red_hat:openshift_service_mesh:*:*:*:*:*:*:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
273
Public exploits:
17
Known exploited (KEV):
3
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2.6.12
2.6.11
2.6.10
2.6.9
2.6.8
2.6.7
2.6.6
2.6.4
2.6.1
2.6.0
3.1.4
3.1.3
3.1.2
3.1.1
3.1.0
3.0.7
3.0.6
3.0.5
3.0.4
3.0.3
3.0.2
3.0.1
3.0.0
1.1.18
1.1.17
1.1.16
1.1.15
1.1.14
1.1.13
1.1.12
2.5.10
2.6.5
2.5.8
2.4.14
2.5.7
2.4.13
2.5.6
2.6.3
2.6.2
2.5.5
2.4.11
2.4.8
2.5.2
2.5.1
2.5.0
2.4.5
2.2.12
2.2.11
2.3.8
2.3.7
2.4.4
2.4.3
2.2.10
2.2.9
2.3.6
2.4.2
2.4.1
2.3.5
2.3.4
2.3.3
2.2.8
2.2.7
2.2.6
2.2.5
2.2.4
2.2.3
2.4.0
2.3.2
2.1.6
2.3.1
2.3.0
1.0
2.1.5.1
2.2.2
2.1.5
2.0.11
2.2.1
2.2.0
2.1.4
2.1.3
2.0.10
2.1.2.1
2.1.2
2.0.9
2.1.1
2.1.0
2.0.8
2.0.7.1
2.0.7
2.0.6
2.0.5
2.0.4
2.0.3
2.0.2
2.0.1
2.0.0
1.1.11
1.1.10
1.1.9
1.1.8
1.1.7
1.1.6
1.1.5
1.1.4
1.1.3
1.1.2
1.1.1
1.1.0
Vulnerabilities (273)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU71686 - Insufficient Entropy CVE-2021-4238 |
CWE-331 | Low | 2.1.6, 2.3.1 | 31.01.2023 |
SB2023013107 SB2023013111 SB2023013113 and 22 more |
||
| #VU71379 - Incorrect Regular Expression CVE-2022-40897 |
CWE-185 | Medium | 2.3.2 | 20.01.2023 |
SB2023012008 SB2023012015 SB2023012016 and 99 more |
||
| #VU70474 - Integer overflow CVE-2022-47629 |
CWE-190 | High | 2.3.2, 2.4.8, 2.5.2 | 22.12.2022 |
SB2022122202 SB2022122204 SB2022122205 and 98 more |
||
| #VU70461 - Improper Privilege Management CVE-2022-4415 |
CWE-269 | Low | 2.3.2, 2.5.1 | 21.12.2022 |
SB2022122140 SB2022122735 SB2022122816 and 70 more |
||
| #VU70334 - Allocation of Resources Without Limits or Throttling CVE-2022-41717 |
CWE-770 | Medium | 2.3.2 | 14.12.2022 |
SB2022121432 SB2022121433 SB2022121435 and 185 more |
||
| #VU69392 - Resource exhaustion CVE-2022-45061 |
CWE-400 | Medium | 2.3.2 | 16.11.2022 |
SB2022111650 SB2022112824 SB2022112856 and 125 more |
||
| #VU68858 - Off-by-one Error CVE-2021-46848 |
CWE-193 | Medium | 2.3.1, 2.3.2, 2.4.8, 2.5.2 | 31.10.2022 |
SB2022103141 SB2022103142 SB2022103143 and 84 more |
||
| #VU68829 - Resource Management Errors CVE-2022-40304 |
CWE-399 | Medium | 2.3.2 | 30.10.2022 |
SB2022103005 SB2022103006 SB2022103007 and 90 more |
||
| #VU68828 - Integer overflow CVE-2022-40303 |
CWE-190 | High | 2.3.2 | 30.10.2022 |
SB2022103005 SB2022103006 SB2022103007 and 88 more |
||
| #VU68718 - Use After Free CVE-2022-43680 |
CWE-416 | Medium | 2.3.1, 2.3.2 | 25.10.2022 |
SB2022102560 SB2022102566 SB2022103010 and 99 more |
||
| #VU67971 - Use After Free CVE-2022-42012 |
CWE-416 | Low | 2.3.1, 2.3.2 | 06.10.2022 |
SB2022100645 SB2022100708 SB2022102733 and 57 more |
||
| #VU67970 - Out-of-bounds read CVE-2022-42011 |
CWE-125 | Low | 2.3.1, 2.3.2 | 06.10.2022 |
SB2022100645 SB2022100708 SB2022102733 and 57 more |
||
| #VU67760 - Type conversion CVE-2020-10735 |
CWE-704 | Medium | 2.3.2 | 29.09.2022 |
SB2022092968 SB2022092970 SB2022093032 and 86 more |
||
| #VU67591 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2021-28861 |
CWE-601 | Low | 2.3.2 | 22.09.2022 |
SB2022092243 SB2022092244 SB2022093032 and 76 more |
||
| #VU67414 - Improper Validation of Array Index CVE-2022-35737 |
CWE-129 | Medium | 2.3.1, 2.3.2 | 15.09.2022 |
SB2022091537 SB2022092034 SB2022092682 and 72 more |
||
| #VU66067 - Resource exhaustion CVE-2022-30632 |
CWE-400 | Medium | 2.2.2, 2.3.1 | 03.08.2022 |
SB2022080321 SB2022080323 SB2022080324 and 79 more |
||
| #VU63280 - Use After Free CVE-2022-26709 |
CWE-416 | High | 2.3.1 | 16.05.2022 |
SB2022051701 SB2022051704 SB2022051705 and 36 more |
||
| #VU63281 - Use After Free CVE-2022-26710 |
CWE-416 | High | 2.3.1 | 16.05.2022 |
SB2022051701 SB2022051705 SB2022051706 and 34 more |
||
| #VU63282 - Use After Free CVE-2022-26717 |
CWE-416 | High | 2.3.1 | 16.05.2022 |
SB2022051701 SB2022051704 SB2022051705 and 37 more |
||
| #VU63283 - Memory corruption CVE-2022-26716 |
CWE-119 | High | 2.3.1 | 16.05.2022 |
SB2022051701 SB2022051704 SB2022051705 and 36 more |
Showing elements 181 - 200 out of 273