Known vulnerabilities in redhat-virtualization-host-productimg (Red Hat package)
Vendor:
Red Hat Inc.
Software CPE:
cpe:2.3:o:red_hat:redhat-virtualization-host-productimg_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
31
Public exploits:
6
Known exploited (KEV):
3
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (31)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU69337 - Integer overflow CVE-2022-42898 |
CWE-190 | Medium | 4.5.3-2.el8 | 15.11.2022 |
SB2022111530 SB2022111610 SB2022111621 and 123 more |
||
| #VU68722 - Improper Authorization CVE-2022-41974 |
CWE-285 | Low | 4.5.3-1.el8 | 26.10.2022 |
SB2022102601 SB2022102602 SB2022102603 and 43 more |
||
| #VU68376 - Integer overflow CVE-2022-3515 |
CWE-190 | High | 4.5.3-1.el8 | 18.10.2022 |
SB2022101805 SB2022101807 SB2022101808 and 64 more |
||
| #VU67550 - Missing release of memory after effective lifetime CVE-2022-38178 |
CWE-401 | Medium | 4.5.3-1.el8 | 21.09.2022 |
SB2022092131 SB2022092140 SB2022092147 and 48 more |
||
| #VU67549 - Missing release of memory after effective lifetime CVE-2022-38177 |
CWE-401 | Medium | 4.5.3-1.el8 | 21.09.2022 |
SB2022092131 SB2022092140 SB2022092143 and 52 more |
||
| #VU67532 - Use After Free CVE-2022-40674 |
CWE-416 | High | 4.5.3-1.el8 | 21.09.2022 |
SB2022092118 SB2022092119 SB2022092317 and 111 more |
||
| #VU66871 - Resource Management Errors CVE-2022-2132 |
CWE-399 | Medium | 4.5.2-1.el8 | 31.08.2022 |
SB2022083102 SB2022083104 SB2022090821 and 32 more |
||
| #VU66757 - Use After Free CVE-2022-2526 |
CWE-416 | Medium | 4.5.2-1.el8 | 25.08.2022 |
SB2022082509 SB2022082511 SB2022082531 and 48 more |
||
| #VU66397 - Double Free CVE-2022-2588 |
CWE-415 | Low | 4.5.2-1.el8 | 11.08.2022 |
SB2022081109 SB2022081110 SB2022081111 and 99 more |
||
| #VU66189 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2022-29154 |
CWE-22 | Low | 4.5.2-1.el8 | 08.08.2022 |
SB2022080837 SB2022081645 SB2022081649 and 70 more |
||
| #VU64668 - Use After Free CVE-2022-32250 |
CWE-416 | Low | 4.5.2-1.el8 | 24.06.2022 |
SB2022062427 SB2022062437 SB2022062440 and 57 more |
||
| #VU64079 - Missing release of memory after effective lifetime CVE-2022-1012 |
CWE-401 | Medium | 4.5.2-1.el8 | 08.06.2022 |
SB2022060827 SB2022061417 SB2022062437 and 75 more |
||
| #VU64070 - Use After Free CVE-2022-1966 |
CWE-416 | Low | 4.3.23-1.el7 | 08.06.2022 |
SB2022060822 SB2022060823 SB2022060824 and 44 more |
||
| #VU64062 - Integer underflow CVE-2022-28733 |
CWE-191 | High | 4.5.1-1.el8 | 08.06.2022 |
SB2022060810 SB2022061540 SB2022061566 and 38 more |
||
| #VU62830 - Heap-based Buffer Overflow CVE-2022-24903 |
CWE-122 | High | 4.3.23-1.el7, 4.5.0-2.el8 | 05.05.2022 |
SB2022050524 SB2022050920 SB2022052425 and 45 more |
||
| #VU62002 - Improper input validation CVE-2022-1271 |
CWE-20 | High | 4.3.23-1.el7, 4.5.0-2.el8 | 08.04.2022 |
SB2022040803 SB2022040804 SB2022040822 and 134 more |
||
| #VU61672 - Heap-based Buffer Overflow CVE-2022-27666 |
CWE-122 | Low | 4.5.1-1.el8 | 29.03.2022 |
SB2022032901 SB2022032902 SB2022033118 and 66 more |
||
| #VU61671 - Memory corruption CVE-2018-25032 |
CWE-119 | Medium | 4.3.23-1.el7, 4.5.0-2.el8 | 28.03.2022 |
SB2022032844 SB2022032845 SB2022033018 and 192 more |
||
| #VU61271 - Heap-based Buffer Overflow CVE-2022-25636 |
CWE-122 | Low | 4.5.0-2.el8 | 13.03.2022 |
SB2022031307 SB2022031308 SB2022031401 and 26 more |
||
| #VU60797 - Use After Free CVE-2021-4028 |
CWE-416 | Low | 4.3.22-1.el7, 4.5.0-2.el8 | 22.02.2022 |
SB2022022230 SB2022022231 SB2022022232 and 32 more |
Showing elements 1 - 20 out of 31