Known vulnerabilities in osbuild-composer (Red Hat package) - page 2

Software CPE: cpe:2.3:o:red_hat:osbuild-composer_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 33
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting osbuild-composer (Red Hat package) osbuild-composer (Red Hat package) is affected by 33 known vulnerabilities: 2 high, 30 medium, 1 low Critical High Medium Low

Vulnerabilities (33)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU118190 - Resource exhaustion
CVE-2025-58183
CWE-400 Medium
No
No
28.7-4.el8_4, 46.3-4.el8_6, 46.3-5.el9_0, 75-5.el8_8, 76.1-3.el9_2, 101.4-2.el8_10, 132.2-4.el9_6, 134.1-4.el10_0, 149-3.el9_7, 149-4.el10_1 07.11.2025 SB2025110705
SB2025110725
SB2025110726
and 177 more
#VU107019 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-22871
CWE-444 Medium
No
No
28.7-3.el8_4, 46.3-3.el8_6, 46.3-4.el9_0, 75-4.el8_8, 76.1-2.el9_2, 101.3-2.el9_4, 101-4.el8_10, 132.2-2.el9_6, 134.1-2.el10_0 05.04.2025 SB2025040507
SB2025040508
SB2025040739
and 109 more
#VU105983 - Resource exhaustion
CVE-2025-30204
CWE-400 Medium
No
No
46.3-3.el9_0, 75-3.el8_8, 76.1-1.el9_2, 101-3.el8_10, 101.3-1.el9_4, 118.2-1.el9_5 24.03.2025 SB2025032475
SB2025032730
SB2025040333
and 97 more
#VU105450 - Resource exhaustion
CVE-2025-27144
CWE-400 Medium
No
No
134.1-3.el10_0 07.03.2025 SB2025030735
SB2025030736
SB2025030737
and 80 more
#VU97216 - Resource exhaustion
CVE-2024-34156
CWE-400 Medium
No
No
28.7-2.el8_4, 46.3-2.el8_6, 46.3-2.el9_0, 75-2.el8_8, 76-3.el9_2.2, 101-2.el8_10, 101-2.el9_4, 118-2.el9_5 12.09.2024 SB2024091261
SB2024091264
SB2024091265
and 143 more
#VU89084 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-2307
CWE-362 Medium
No
No
101-1.el8, 101-1.el9 01.05.2024 SB2024050110
SB2024050116
SB2024061160
and 2 more
#VU87830 - Missing release of memory after effective lifetime
CVE-2024-1394
CWE-401 Medium
No
No
101-2.el8_10 26.03.2024 SB2024032646
SB2024032647
SB2024032648
and 54 more
#VU70334 - Allocation of Resources Without Limits or Throttling
CVE-2022-41717
CWE-770 Medium
Available
No
75-1.el8, 76-2.el9_2 14.12.2022 SB2022121432
SB2022121433
SB2022121435
and 185 more
#VU68390 - Resource exhaustion
CVE-2022-41715
CWE-400 Medium
No
No
75-1.el8, 76-2.el9_2 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 113 more
#VU68389 - Improper input validation
CVE-2022-2880
CWE-20 Medium
No
No
75-1.el8, 76-2.el9_2 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 94 more
#VU68387 - Resource Management Errors
CVE-2022-2879
CWE-399 Medium
No
No
75-1.el8, 76-2.el9_2 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 78 more
#VU67396 - Improper input validation
CVE-2022-27664
CWE-20 Medium
No
No
75-1.el8, 76-2.el9_2 15.09.2022 SB2022091520
SB2022091521
SB2022092144
and 127 more
#VU66121 - Improper input validation
CVE-2022-32189
CWE-20 Medium
No
No
62-1.el8, 62.1-1.el9 04.08.2022 SB2022080502
SB2022080503
SB2022080511
and 81 more


Showing elements 21 - 40 out of 33