Known vulnerabilities in OpenShift Service Mesh - page 8

Software CPE: cpe:2.3:a:red_hat:openshift_service_mesh:*:*:*:*:*:*:*:*
Total vulnerabilities: 273
Public exploits: 17
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting OpenShift Service Mesh OpenShift Service Mesh is affected by 273 known vulnerabilities: 47 high, 157 medium, 69 low Critical High Medium Low

Vulnerabilities (273)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU78682 - Use After Free
CVE-2023-35942
CWE-416 Medium
No
No
2.3.6, 2.4.3 26.07.2023 SB2023072633
SB2023072636
SB2023081405
and 3 more
#VU78681 - Use After Free
CVE-2023-35943
CWE-416 Medium
No
No
2.3.6, 2.4.2 26.07.2023 SB2023072633
SB2023072636
SB2023081403
and 3 more
#VU78679 - Improper input validation
CVE-2023-35944
CWE-20 High
No
No
2.2.10, 2.3.6, 2.4.2 26.07.2023 SB2023072633
SB2023072636
SB2023081403
and 4 more
#VU78678 - Improper Encoding or Escaping of Output
CVE-2023-35941
CWE-116 High
No
No
2.2.10, 2.3.6, 2.4.2 26.07.2023 SB2023072633
SB2023072636
SB2023081403
and 4 more
#VU78293 - Missing release of memory after effective lifetime
CVE-2023-35945
CWE-401 Medium
No
No
2.2.10, 2.3.6 16.07.2023 SB2023071620
SB2023080913
SB2023081405
and 18 more
#VU78005 - Inadequate Encryption Strength
CVE-2023-3089
CWE-326 Medium
No
No
2.2.8, 2.3.5, 2.4.1 06.07.2023 SB2023070602
SB2023070603
SB2023070604
and 34 more
#VU77780 - Memory corruption
CVE-2020-24736
CWE-119 Low
No
No
2.2.8, 2.2.10, 2.3.5, 2.4.1 29.06.2023 SB2023062903
SB2023062908
SB2023062968
and 45 more
#VU77612 - Resource exhaustion
CVE-2023-2828
CWE-400 Medium
No
No
2.3.6, 2.4.2 21.06.2023 SB2023062155
SB2023062201
SB2023062601
and 66 more
#VU75741 - Improper input validation
CVE-2023-1667
CWE-20 Medium
No
No
2.2.8, 2.2.10, 2.3.5, 2.4.1 04.05.2023 SB2023050456
SB2023050501
SB2023052441
and 75 more
#VU75740 - Improper Authentication
CVE-2023-2283
CWE-287 High
No
No
2.2.8, 2.2.10, 2.3.5, 2.4.1 04.05.2023 SB2023050456
SB2023050501
SB2023052441
and 84 more
#VU74475 - Improper input validation
CVE-2023-27493
CWE-20 High
No
No
2.2.9 05.04.2023 SB2023040516
SB2023040519
SB2023081407
and 1 more
#VU74473 - Improper input validation
CVE-2023-27496
CWE-20 Medium
No
No
2.2.9 05.04.2023 SB2023040516
SB2023040519
SB2023081407
and 1 more
#VU74146 - Improper Privilege Management
CVE-2023-26604
CWE-269 Low
No
No
2.2.8, 2.3.5, 2.4.1, 2.5.1 28.03.2023 SB2023032869
SB2023032871
SB2023040540
and 56 more
#VU73828 - State Issues
CVE-2023-27535
CWE-371 Low
No
No
2.2.7, 2.4.0 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 84 more
#VU72686 - Resource exhaustion
CVE-2022-41723
CWE-400 Medium
No
No
2.2.8, 2.3.5 01.03.2023 SB2023030130
SB2023030131
SB2023030946
and 190 more
#VU72618 - Improper input validation
CVE-2023-24329
CWE-20 Medium
No
No
2.2.8, 2.3.5, 2.4.1 28.02.2023 SB2023022819
SB2023022822
SB2023030832
and 158 more
#VU72125 - Inadequate Encryption Strength
CVE-2023-0361
CWE-326 Medium
No
No
2.2.7, 2.2.8, 2.3.5, 2.4.1 11.02.2023 SB2023021103
SB2023021109
SB2023021561
and 88 more
#VU71995 - Use After Free
CVE-2023-0215
CWE-416 Medium
No
No
2.2.7, 2.2.8, 2.3.5, 2.4.1 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 209 more
#VU71992 - Type confusion
CVE-2023-0286
CWE-843 High
No
No
2.2.7 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 223 more
#VU69582 - NULL Pointer Dereference
CVE-2022-36227
CWE-476 Low
No
No
2.2.7, 2.4.0, 2.4.8, 2.5.2 24.11.2022 SB2022112432
SB2022112437
SB2022112438
and 77 more


Showing elements 141 - 160 out of 273