Known vulnerabilities in redhat-release-virtualization-host (Red Hat package) - page 5

Software CPE: cpe:2.3:o:red_hat:redhat-release-virtualization-host_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 107
Public exploits: 26
Known exploited (KEV): 12
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting redhat-release-virtualization-host (Red Hat package) redhat-release-virtualization-host (Red Hat package) is affected by 107 known vulnerabilities: 18 high, 30 medium, 59 low Critical High Medium Low

Vulnerabilities (107)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU50040 - Heap-based Buffer Overflow
CVE-2021-3156
CWE-122 Low
Available
Exploited
4.3.13-2.el7ev, 4.4.4-1.el8ev 26.01.2021 SB2021012632
SB2021012633
SB2021012634
and 55 more
#VU49845 - Insufficient Verification of Data Authenticity
CVE-2020-25686
CWE-345 Low
Available
No
4.3.13-2.el7ev, 4.4.4-1.el8ev 20.01.2021 SB2021012070
SB20210120108
SB20210120122
and 27 more
#VU49844 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-25685
CWE-327 Low
Available
No
4.3.13-2.el7ev, 4.4.4-1.el8ev 20.01.2021 SB2021012070
SB20210120107
SB20210120122
and 27 more
#VU49843 - Insufficient Verification of Data Authenticity
CVE-2020-25684
CWE-345 Low
Available
No
4.3.13-2.el7ev, 4.4.4-1.el8ev 20.01.2021 SB2021012070
SB20210120106
SB20210120122
and 27 more
#VU45985 - Out-of-bounds write
CVE-2020-14364
CWE-787 Medium
Available
No
4.3.11-1.el7ev, 4.4.2-1.el8ev 24.08.2020 SB2020082410
SB2020090715
SB2020091121
and 35 more
#VU41989 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-8203
CWE-94 Medium
No
No
4.4.3-2.el8ev 10.08.2020 SB2020071548
SB2020122111
SB2021042308
and 31 more
#VU32922 - Out-of-bounds write
CVE-2020-10713
CWE-787 Low
Available
No
4.3.11-1.el7ev, 4.4.2-1.el8ev 30.07.2020 SB2020073018
SB2020073026
SB2020073027
and 33 more
#VU26756 - Resource Management Errors
CVE-2020-1730
CWE-399 Medium
No
No
4.4.3-1.el8ev 10.04.2020 SB2020041003
SB2020041004
SB2020041005
and 25 more
#VU48780 - Memory corruption
CVE-2015-8011
CWE-119 High
No
No
4.3.12-4.el7ev, 4.4.3-2.el8ev 28.01.2020 SB2020012836
SB2020120408
SB2020120409
and 17 more
#VU32018 - Improper Access Control
CVE-2019-10166
CWE-284 Low
No
No
4.3.4-1.el7ev 02.08.2019 SB2019080213
SB2019072014
SB2019070117
and 8 more
#VU32019 - Improper Access Control
CVE-2019-10167
CWE-284 Low
No
No
4.3.4-1.el7ev 02.08.2019 SB2019080214
SB2019072014
SB2019070117
and 8 more
#VU32020 - Improper Access Control
CVE-2019-10168
CWE-284 Low
No
No
4.3.4-1.el7ev 02.08.2019 SB2019080215
SB2019072014
SB2019070323
and 7 more
#VU18947 - Resource exhaustion
CVE-2019-11479
CWE-400 Medium
No
No
4.2-11.1.el7, 4.3.4-1.el7ev 01.07.2019 SB2019061702
SB2019070105
SB2019061811
and 48 more
#VU18946 - Resource exhaustion
CVE-2019-11478
CWE-400 Medium
No
No
4.2-11.1.el7, 4.3.4-1.el7ev 01.07.2019 SB2019061702
SB2019070105
SB2019061811
and 49 more
#VU18879 - Improper Access Control
CVE-2019-10161
CWE-284 Low
No
No
4.3.4-1.el7ev 23.06.2019 SB2019062004
SB2019072014
SB2019070117
and 8 more
#VU18813 - Integer overflow
CVE-2019-11477
CWE-190 Medium
No
No
4.2-11.1.el7, 4.3.4-1.el7ev 17.06.2019 SB2019061702
SB2019070105
SB2019061811
and 53 more
#VU28395 - Exposure of sensitive information to an unauthorized actor
CVE-2018-12127
CWE-200 Low
No
No
4.2-8.6.el7, 4.3-0.7.el7 30.05.2019 SB2019053010
SB2019051422
SB2019072469
and 67 more
#VU28397 - Exposure of sensitive information to an unauthorized actor
CVE-2018-12126
CWE-200 Low
No
No
4.2-8.6.el7, 4.3-0.7.el7 30.05.2019 SB2019053012
SB2019051422
SB2019072469
and 67 more
#VU18355 - Improper input validation
CVE-2019-9636
CWE-20 Medium
No
No
4.2-8.4.el7 27.04.2019 SB2019042703
SB2019050611
SB2019051007
and 56 more
#VU13949 - NULL Pointer Dereference
CVE-2018-14404
CWE-476 Low
No
No
4.3.9-2.el7ev 19.07.2018 SB2018072012
SB2018090705
SB2018101502
and 13 more


Showing elements 81 - 100 out of 107