Known vulnerabilities in Red Hat Ceph Storage - page 5

Software CPE: cpe:2.3:a:red_hat:red_hat_ceph_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 205
Public exploits: 11
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Ceph Storage Red Hat Ceph Storage is affected by 205 known vulnerabilities: 27 high, 112 medium, 66 low Critical High Medium Low

Vulnerabilities (205)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU89712 - Stack-based buffer overflow
CVE-2024-33599
CWE-121 High
No
No
5.3 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 84 more
#VU89711 - NULL Pointer Dereference
CVE-2024-33600
CWE-476 Medium
No
No
5.3 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 83 more
#VU89710 - Allocation of Resources Without Limits or Throttling
CVE-2024-33601
CWE-770 Low
No
No
5.3 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 82 more
#VU89709 - Memory corruption
CVE-2024-33602
CWE-119 Medium
No
No
5.3 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 91 more
#VU88857 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-3758
CWE-362 Medium
No
No
5.3 19.04.2024 SB2024041945
SB2024041946
SB2024041947
and 19 more
#VU88226 - Missing release of memory after effective lifetime
CVE-2024-26461
CWE-401 Medium
No
No
5.3 09.04.2024 SB2024040939
SB2024040943
SB20240611102
and 46 more
#VU88225 - Missing release of memory after effective lifetime
CVE-2024-26458
CWE-401 Medium
No
No
5.3 09.04.2024 SB2024040938
SB2024040943
SB20240611102
and 47 more
#VU87685 - Resource exhaustion
CVE-2024-0450
CWE-400 Medium
No
No
5.3 21.03.2024 SB2024032107
SB2024032110
SB2024040848
and 80 more
#VU87671 - Cryptographic Issues
CVE-2024-28834
CWE-310 Medium
No
No
5.3 20.03.2024 SB2024032057
SB2024032058
SB2024032059
and 111 more
#VU87185 - UNIX Symbolic Link (Symlink) Following
CVE-2023-6597
CWE-61 Low
No
No
5.3 07.03.2024 SB2024030718
SB2024030726
SB2024030727
and 88 more
#VU86052 - Use After Free
CVE-2024-25062
CWE-416 High
No
No
5.3 05.02.2024 SB2024020507
SB2024020508
SB2024020742
and 115 more
#VU85764 - Improper Authentication
CVE-2023-42465
CWE-287 Low
No
No
5.3 24.01.2024 SB2024012432
SB2024012434
SB2024012435
and 32 more
#VU85658 - Insufficient Verification of Data Authenticity
CVE-2023-7008
CWE-345 Medium
No
No
5.3 22.01.2024 SB2024012238
SB2024012239
SB2024012240
and 38 more
#VU85552 - Resource exhaustion
CVE-2024-22365
CWE-400 Low
No
No
5.3 17.01.2024 SB2024011799
SB20240117126
SB2024011839
and 44 more
#VU85368 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-22195
CWE-79 Medium
No
No
5.3, 7.1 15.01.2024 SB2024011508
SB2024011512
SB2024011513
and 60 more
#VU84540 - Unchecked Return Value
CVE-2023-6918
CWE-252 Low
No
No
5.3 19.12.2023 SB2023121906
SB2023121910
SB2023121911
and 63 more
#VU84538 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-6004
CWE-78 Medium
No
No
5.3 19.12.2023 SB2023121905
SB2023121906
SB2023121910
and 58 more
#VU74197 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-28487
CWE-78 Low
No
No
5.3 30.03.2023 SB2023033028
SB2023033038
SB2023033039
and 28 more
#VU74196 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-28486
CWE-78 Low
No
No
5.3 30.03.2023 SB2023033028
SB2023033038
SB2023033039
and 31 more
#VU63553 - Integer overflow
CVE-2021-43618
CWE-190 Medium
No
No
5.3, 6.1 24.05.2022 SB2021121654
SB2022052401
SB2021120223
and 85 more


Showing elements 81 - 100 out of 205