Known vulnerabilities in skupper-router (Red Hat package)
Vendor:
Red Hat Inc.
Software:
skupper-router (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:skupper-router_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
15
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (15)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU82064 - Resource exhaustion CVE-2023-39325 |
CWE-400 | Medium | 2.4.3-1.el8, 2.4.3-1.el9 | 16.10.2023 |
SB2023101651 SB2023101652 SB2023101653 and 341 more |
||
| #VU81728 - Resource exhaustion CVE-2023-44487 |
CWE-400 | High | 2.4.3-1.el8, 2.4.3-1.el9 | 10.10.2023 |
SB2023101023 SB2023101024 SB2023101037 and 650 more |
||
| #VU75792 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2023-29400 |
CWE-79 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 08.05.2023 |
SB2023050814 SB2023050817 SB2023050825 and 74 more |
||
| #VU75790 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2023-24539 |
CWE-79 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 08.05.2023 |
SB2023050814 SB2023050817 SB2023050825 and 75 more |
||
| #VU74574 - Improper Control of Generation of Code ('Code Injection') CVE-2023-24538 |
CWE-94 | High | 2.4.1-2.el8, 2.4.1-2.el9 | 06.04.2023 |
SB2023040668 SB2023040678 SB2023040679 and 85 more |
||
| #VU74573 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2023-24537 |
CWE-835 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 06.04.2023 |
SB2023040668 SB2023040678 SB2023040679 and 87 more |
||
| #VU74572 - Resource Management Errors CVE-2023-24536 |
CWE-399 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 06.04.2023 |
SB2023040668 SB2023040678 SB2023040679 and 80 more |
||
| #VU74571 - Resource exhaustion CVE-2023-24534 |
CWE-400 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 06.04.2023 |
SB2023040668 SB2023040678 SB2023040679 and 85 more |
||
| #VU73722 - Resource exhaustion CVE-2022-41725 |
CWE-400 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 15.03.2023 |
SB2023030130 SB2023031537 SB2023031538 and 80 more |
||
| #VU72686 - Resource exhaustion CVE-2022-41723 |
CWE-400 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 01.03.2023 |
SB2023030130 SB2023030131 SB2023030946 and 190 more |
||
| #VU72685 - Resource Management Errors CVE-2022-41724 |
CWE-399 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 01.03.2023 |
SB2023030130 SB2023030131 SB2023030211 and 87 more |
||
| #VU68390 - Resource exhaustion CVE-2022-41715 |
CWE-400 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 18.10.2022 |
SB2022101833 SB2022101834 SB2022102005 and 113 more |
||
| #VU68389 - Improper input validation CVE-2022-2880 |
CWE-20 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 18.10.2022 |
SB2022101833 SB2022101834 SB2022102005 and 94 more |
||
| #VU68387 - Resource Management Errors CVE-2022-2879 |
CWE-399 | Medium | 2.4.1-2.el8, 2.4.1-2.el9 | 18.10.2022 |
SB2022101833 SB2022101834 SB2022102005 and 78 more |
||
| #VU64269 - Integer overflow CVE-2022-28327 |
CWE-190 | Low | 2.4.1-2.el8, 2.4.1-2.el9 | 14.06.2022 |
SB2022041004 SB2022061422 SB2022061506 and 90 more |