Known vulnerabilities in patch (Red Hat package)
Vendor:
Red Hat Inc.
Software:
patch (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:patch_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU20411 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2018-20969 |
CWE-78 | High | 2.7.1-11.el7_6 | 27.08.2019 |
SB2019091721 SB2019100311 SB2019102601 and 4 more |
||
| #VU19504 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2019-13638 |
CWE-78 | Low | 2.7.1-11.el7_6 | 28.07.2019 |
SB2019072704 SB2019081805 SB2019091721 and 7 more |
||
| #VU19283 - Improper Link Resolution Before File Access ('Link Following') CVE-2019-13636 |
CWE-59 | Low | 2.7.6-11.el8 | 22.07.2019 |
SB2019072208 SB2019072704 SB2019081805 and 5 more |