Known vulnerabilities in python-sushy (Red Hat package) - page 2
Vendor:
Red Hat Inc.
Software:
python-sushy (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:python-sushy_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
68
Public exploits:
5
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
4.7.1-0.20240405121030.123a5a5.el9
4.1.6-0.20230517173625.5490eb6.el8
4.4.3-0.20230425095526.9f708cf.el9
4.1.5-0.20221125154417.ff95176.el8
4.1.1-0.20220302175405.c769149.el8
3.6.1-0.20210122201213.7ec0422.el8
2.0.0-0.20190923170230.eaa2cd7.el8ost
3.3.0-0.20200804091926.0dfe74a.el8ost
4.3.4-0.20221213135957.69b014c.el9
4.1.3-0.20221107175431.1da4385.el8
4.1.2-0.20220913104404.1ae8e49.el8
4.1.2-0.20220908165021.1ae8e49.el8
4.0.0-0.20211209155954.45d24d4.el8
3.7.4-0.20211119091058.2cc60dc.el8
3.12.1-0.20211122142104.806622c.el8
3.11.0-0.20210802160404.b93dcba.el8
3.7.3-0.20210804111215.b76050c.el8
3.7.1-0.20210428165244.bc49878.el8
3.5.0-2.20201005161238.74b8111.el8
1.3.3-2.el7
1.3.3-1.el7
1.3.2-1.el7
1.1.0-1.el7
Vulnerabilities (68)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU77628 - Improper input validation CVE-2012-6153 |
CWE-20 | Medium | 4.0.0-0.20211209155954.45d24d4.el8 | 22.06.2023 |
SB2023062250 SB2023092013 SB2023092037 and 15 more |
||
| #VU68299 - Incorrect Permission Assignment for Critical Resource CVE-2022-0532 |
CWE-732 | Medium | 4.0.0-0.20211209155954.45d24d4.el8 | 13.10.2022 |
SB2022101333 SB2022101334 SB2022101335 and 4 more |
||
| #VU64269 - Integer overflow CVE-2022-28327 |
CWE-190 | Low | 4.1.1-0.20220302175405.c769149.el8 | 14.06.2022 |
SB2022041004 SB2022061422 SB2022061506 and 90 more |
||
| #VU64266 - Buffer overflow CVE-2022-24675 |
CWE-120 | Low | 4.1.1-0.20220302175405.c769149.el8 | 14.06.2022 |
SB2022041004 SB2022061422 SB2022061511 and 88 more |
||
| #VU63493 - Improper Access Control CVE-2022-1706 |
CWE-284 | Low | 4.1.1-0.20220302175405.c769149.el8 | 20.05.2022 |
SB2022052015 SB2022071162 SB2022071163 and 9 more |
||
| #VU63090 - Permissions, Privileges, and Access Controls CVE-2022-29162 |
CWE-264 | Medium | 4.1.1-0.20220302175405.c769149.el8 | 12.05.2022 |
SB2022051205 SB2022062435 SB2022071158 and 32 more |
||
| #VU62039 - Use of a Broken or Risky Cryptographic Algorithm CVE-2022-27191 |
CWE-327 | Medium | 4.1.1-0.20220302175405.c769149.el8 | 10.04.2022 |
SB2022041004 SB2022041406 SB2022081226 and 91 more |
||
| #VU62038 - Resource exhaustion CVE-2022-23772 |
CWE-400 | Medium | 4.1.1-0.20220302175405.c769149.el8 | 10.04.2022 |
SB2022041002 SB2022060126 SB2022060127 and 40 more |
||
| #VU62037 - Incorrect Authorization CVE-2022-23773 |
CWE-863 | Low | 4.1.1-0.20220302175405.c769149.el8 | 10.04.2022 |
SB2022041002 SB2022060126 SB2022060127 and 39 more |
||
| #VU62036 - Unchecked Return Value CVE-2022-23806 |
CWE-252 | Medium | 4.1.1-0.20220302175405.c769149.el8 | 10.04.2022 |
SB2022041002 SB2022041003 SB2022060126 and 46 more |
||
| #VU61599 - Improper input validation CVE-2022-21698 |
CWE-20 | Medium | 4.1.1-0.20220302175405.c769149.el8 | 24.03.2022 |
SB2022021530 SB2022032413 SB2022040807 and 110 more |
||
| #VU61227 - Incorrect Regular Expression CVE-2022-24921 |
CWE-185 | Medium | 4.1.1-0.20220302175405.c769149.el8 | 10.03.2022 |
SB2022031004 SB2022031005 SB2022041208 and 41 more |
||
| #VU59042 - Resource exhaustion CVE-2021-44717 |
CWE-400 | Medium | 4.0.0-0.20211209155954.45d24d4.el8 | 16.12.2021 |
SB2021121610 SB2021121646 SB2022031628 and 32 more |
||
| #VU58824 - Improper input validation CVE-2021-44716 |
CWE-20 | Medium | 4.0.0-0.20211209155954.45d24d4.el8 | 10.12.2021 |
SB2021121010 SB2021121011 SB2021121605 and 67 more |
||
| #VU58229 - Type confusion CVE-2021-41190 |
CWE-843 | Low | 4.0.0-0.20211209155954.45d24d4.el8 | 18.11.2021 |
SB2021111806 SB2021111807 SB2021111809 and 39 more |
||
| #VU57988 - Missing Authorization CVE-2021-21695 |
CWE-862 | High | 3.7.4-0.20211119091058.2cc60dc.el8, 3.12.1-0.20211122142104.806622c.el8 | 08.11.2021 |
SB2021110805 SB2021110806 SB2021112915 and 4 more |
||
| #VU57982 - Missing Authorization CVE-2021-21689 |
CWE-862 | High | 3.7.4-0.20211119091058.2cc60dc.el8, 3.12.1-0.20211122142104.806622c.el8 | 08.11.2021 |
SB2021110805 SB2021110806 SB2021112915 and 4 more |
||
| #VU57978 - Missing Authorization CVE-2021-21685 |
CWE-862 | High | 3.7.4-0.20211119091058.2cc60dc.el8, 3.12.1-0.20211122142104.806622c.el8 | 08.11.2021 |
SB2021110805 SB2021110806 SB2021112915 and 4 more |
||
| #VU57150 - Improper Certificate Validation CVE-2014-3577 |
CWE-295 | Low | 4.0.0-0.20211209155954.45d24d4.el8 | 08.10.2021 |
SB2014082106 SB2021100807 SB2023020872 and 24 more |
||
| #VU57149 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2021-21684 |
CWE-79 | Low | 4.0.0-0.20211209155954.45d24d4.el8 | 08.10.2021 |
SB2021100806 SB2023022165 SB2022031044 and 1 more |
Showing elements 21 - 40 out of 68