Known vulnerabilities in Red Hat Software Collections 1 for RHEL 6

Version: 1 for RHEL 6
Software CPE: cpe:2.3:a:red_hat:red_hat_software_collections:*:*:*:*:*:*:*:*
Total vulnerabilities: 40
Public exploits: 2
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.2

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Red Hat Software Collections version 1 for RHEL 6 Red Hat Software Collections 1 for RHEL 6 is affected by 40 vulnerabilities: 2 high, 16 medium, 22 low Critical High Medium Low

Vulnerabilities (40)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU24686 - Deserialization of Untrusted Data
CVE-2019-17570
CWE-502 High
No
No
- 28.01.2020 SB2016070803
SB2020020203
SB2020020716
and 7 more
#VU22617 - Improper input validation
CVE-2019-16056
CWE-20 Low
No
No
- 10.11.2019 SB2019111003
SB2019111004
SB2019110649
and 31 more
#VU22304 - Memory corruption
CVE-2019-11043
CWE-119 High
Public exploit available
Exploited
- 27.10.2019 SB2019102707
SB2019102708
SB2019102709
and 22 more
#VU20844 - Protection Mechanism Failure
CVE-2019-10086
CWE-693 Low
No
No
- 04.09.2019 SB2019090405
SB2019090406
SB2019121902
and 112 more
#VU20385 - NULL Pointer Dereference
CVE-2019-10097
CWE-476 Low
No
No
- 23.08.2019 SB2019082303
SB2019082610
SB2019090202
and 14 more
#VU20384 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-10092
CWE-79 Low
No
No
- 23.08.2019 SB2019082303
SB2019082610
SB2019090202
and 17 more
#VU20340 - Resource Management Errors
CVE-2019-9517
CWE-399 Medium
No
No
- 20.08.2019 SB2019082303
SB2019082610
SB2019090202
and 37 more
#VU20199 - Resource exhaustion
CVE-2019-9518
CWE-400 Medium
No
No
- 13.08.2019 SB2019081326
SB2019091011
SB2019091102
and 26 more
#VU19256 - Exposure of sensitive information to an unauthorized actor
CVE-2018-20852
CWE-200 Medium
No
No
- 19.07.2019 SB2019071301
SB2019082304
SB2019082305
and 16 more
#VU18829 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2019-9740
CWE-93 Medium
No
No
- 19.06.2019 SB2019031318
SB2019062812
SB2019072603
and 32 more
#VU18828 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2019-9947
CWE-93 Medium
No
No
- 19.06.2019 SB2019031318
SB2019062812
SB2019072603
and 22 more
#VU18403 - Integer overflow
CVE-2018-20406
CWE-190 Low
No
No
- 07.05.2019 SB2019050611
SB2019020901
SB2019110649
and 13 more
#VU18113 - Improper input validation
CVE-2019-0220
CWE-20 Low
No
No
- 02.04.2019 SB2019040201
SB2019040301
SB2019040407
and 17 more
#VU18111 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2019-0217
CWE-362 Low
No
No
- 02.04.2019 SB2019040201
SB2019040301
SB2019040407
and 17 more
#VU17805 - NULL Pointer Dereference
CVE-2019-5010
CWE-476 Medium
Public exploit available
No
- 20.02.2019 SB2019030606
SB2019030301
SB2019021425
and 25 more
#VU17178 - Improper Access Control
CVE-2018-17199
CWE-284 Low
No
No
- 23.01.2019 SB2019012307
SB2019012308
SB2019012508
and 18 more
#VU17177 - Improper input validation
CVE-2018-17189
CWE-20 Medium
No
No
- 23.01.2019 SB2019012307
SB2019012308
SB2019012508
and 18 more
#VU15760 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2018-14647
CWE-611 Low
No
No
- 08.11.2018 SB2018110808
SB2018122106
SB2018092802
and 35 more
#VU12283 - Improper input validation
CVE-2018-1060
CWE-20 Medium
No
No
- 27.04.2018 SB2018042706
SB2018111109
SB2018120712
and 36 more
#VU12282 - Improper input validation
CVE-2018-1061
CWE-20 Medium
No
No
- 27.04.2018 SB2018042706
SB2018111109
SB2018120712
and 20 more


Showing elements 1 - 20 out of 40