Known vulnerabilities in Red Hat OpenShift Container Platform - page 88

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_container_platform:*:*:*:*:*:*:*:*
Total vulnerabilities: 2229
Public exploits: 122
Known exploited (KEV): 31
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift Container Platform Red Hat OpenShift Container Platform is affected by 2229 known vulnerabilities: 7 critical, 265 high, 732 medium, 1225 low Critical High Medium Low

Vulnerabilities (2229)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU66867 - Out-of-bounds write
CVE-2021-38593
CWE-787 Low
No
No
4.11.0 30.08.2022 SB2021081244
SB2022083038
SB2022051045
and 13 more
#VU66814 - Improper Access Control
CVE-2021-44225
CWE-284 Low
No
No
4.11.0 29.08.2022 SB2021112614
SB2022082931
SB2022083038
and 9 more
#VU66467 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-42771
CWE-22 Medium
No
No
4.11.0 12.08.2022 SB20211214110
SB2022081226
SB2022083038
and 18 more
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
4.11.0, 4.11.1 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64668 - Use After Free
CVE-2022-32250
CWE-416 Low
Available
No
4.7.56, 4.9.45, 4.10.25, 4.11.0, 4.11.1 24.06.2022 SB2022062427
SB2022062437
SB2022062440
and 57 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
4.11.0, 4.11.1 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU64156 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-1729
CWE-362 Low
No
No
4.7.56, 4.9.45, 4.10.25, 4.11.0 10.06.2022 SB2022061213
SB2022061417
SB2022061630
and 79 more
#VU64079 - Missing release of memory after effective lifetime
CVE-2022-1012
CWE-401 Medium
No
No
4.7.56, 4.9.45, 4.10.25, 4.11.0, 4.11.1 08.06.2022 SB2022060827
SB2022061417
SB2022062437
and 75 more
#VU63490 - Out-of-bounds read
CVE-2022-1629
CWE-125 High
No
No
4.11.0 20.05.2022 SB2022052017
SB2022063027
SB2022070109
and 27 more
#VU63041 - Heap-based Buffer Overflow
CVE-2022-1621
CWE-122 High
No
No
4.11.0 11.05.2022 SB2022052018
SB2022060635
SB2022070109
and 25 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Available
No
4.11.0, 4.11.1 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU62644 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27776
CWE-200 Low
No
No
4.11.0 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 62 more
#VU62452 - Use of Externally-Controlled Format String
CVE-2022-1215
CWE-134 Low
No
No
4.11.0 20.04.2022 SB2022042005
SB2022042150
SB2022050222
and 12 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Available
No
4.6.57, 4.8.37, 4.9.29, 4.10.10, 4.11.0 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU59660 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-43818
CWE-79 Low
No
No
4.11.0 17.01.2022 SB2022011721
SB2022011724
SB2022050418
and 23 more
#VU58333 - Improper Privilege Management
CVE-2021-41617
CWE-269 Low
No
No
4.11.0 23.11.2021 SB2021092601
SB2021112330
SB2021120119
and 38 more
#VU57752 - Resource exhaustion
CVE-2021-25219
CWE-400 Medium
No
No
4.11.0 28.10.2021 SB2021102801
SB2021102903
SB2021110111
and 33 more
#VU55853 - Integer overflow
CVE-2021-38185
CWE-190 High
Available
No
4.11.0 16.08.2021 SB2021081602
SB2021090901
SB2022051160
and 21 more
#VU49973 - Memory corruption
CVE-2021-3177
CWE-119 High
No
No
3.11.784 19.01.2021 SB2021012516
SB2021012517
SB2021022418
and 54 more
#VU48592 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2020-26116
CWE-93 Medium
No
No
3.11.784 27.09.2020 SB2020092711
SB2020112308
SB2020112309
and 34 more


Showing elements 1741 - 1760 out of 2229