Known vulnerabilities in resource-agents (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:resource-agents_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 13
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting resource-agents (Red Hat package) resource-agents (Red Hat package) is affected by 13 known vulnerabilities: 1 high, 8 medium, 4 low Critical High Medium Low

Vulnerabilities (13)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU128152 - Uncontrolled Recursion
CVE-2026-30922
CWE-674 Medium
No
No
4.1.1-90.el8_4.25, 4.9.0-16.el8_6.22, 4.9.0-40.el8_8.19, 4.9.0-54.el8_10.33 27.04.2026 SB20260427104
SB20260427114
SB20260427115
and 27 more
#VU122270 - Resource exhaustion
CVE-2026-23490
CWE-400 Medium
No
No
4.1.1-61.el7_9.23, 4.1.1-90.el8_4.23, 4.9.0-16.el8_6.20, 4.9.0-40.el8_8.16 03.02.2026 SB2026020365
SB2026020366
SB2026020370
and 51 more
#VU121072 - Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-21441
CWE-409 Medium
No
No
4.1.1-90.el8_4.22, 4.9.0-16.el8_6.19, 4.9.0-40.el8_8.15, 4.9.0-54.el8_10.27 07.01.2026 SB2026010780
SB2026011269
SB2026011328
and 89 more
#VU119231 - Resource exhaustion
CVE-2025-66471
CWE-400 Medium
No
No
4.1.1-61.el7_9.22, 4.1.1-90.el8_4.22, 4.9.0-16.el8_6.19, 4.9.0-40.el8_8.15, 4.9.0-54.el8_10.27 05.12.2025 SB2025120581
SB2025121208
SB2026011313
and 88 more
#VU119230 - Allocation of Resources Without Limits or Throttling
CVE-2025-66418
CWE-770 Medium
No
No
4.1.1-61.el7_9.21, 4.1.1-90.el8_4.21, 4.9.0-16.el8_6.18, 4.9.0-40.el8_8.14, 4.9.0-54.el8_10.27 05.12.2025 SB2025120581
SB2025121208
SB2025121938
and 93 more
#VU111716 - Insufficiently Protected Credentials
CVE-2024-47081
CWE-522 Medium
No
No
4.1.1-90.el8_4.20, 4.9.0-16.el8_6.17, 4.9.0-40.el8_8.11, 4.9.0-54.el8_10.16 21.06.2025 SB2025062111
SB2025062112
SB2025062113
and 95 more
#VU95339 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-6345
CWE-94 High
No
No
4.1.1-90.el8_4.18, 4.9.0-16.el8_6.14, 4.9.0-40.el8_8.6, 4.9.0-54.el8_10.4 05.08.2024 SB2024080590
SB2024080593
SB2024080594
and 159 more
#VU92262 - Exposure of sensitive information to an unauthorized actor
CVE-2024-37891
CWE-200 Low
No
No
4.1.1-90.el8_4.17, 4.9.0-16.el8_6.13, 4.9.0-54.el8_10.4 19.06.2024 SB2024061955
SB20240625146
SB2024062605
and 193 more
#VU85747 - Observable discrepancy
CVE-2023-52323
CWE-203 Low
No
No
4.9.0-54.el8 24.01.2024 SB2024012414
SB2024012416
SB2024022053
and 24 more
#VU82978 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45803
CWE-200 Medium
No
No
4.9.0-54.el8 10.11.2023 SB2023111038
SB2023111040
SB2023111048
and 122 more
#VU51776 - Resource Management Errors
CVE-2021-27291
CWE-399 Medium
No
No
4.1.1-98.el8 30.03.2021 SB2021031407
SB2021033004
SB2021041202
and 17 more
#VU51449 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-20270
CWE-835 Low
No
No
4.1.1-98.el8 14.03.2021 SB2021031407
SB2021031410
SB2021041202
and 14 more
#VU28245 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2020-11078
CWE-93 Low
No
No
4.1.1-61.el7_9.4, 4.1.1-68.el8 26.05.2020 SB2020052606
SB2020090111
SB2020110521
and 15 more