Known vulnerabilities in slirp4netns (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:slirp4netns_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 32
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting slirp4netns (Red Hat package) slirp4netns (Red Hat package) is affected by 32 known vulnerabilities: 21 medium, 11 low Critical High Medium Low

Vulnerabilities (32)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU107019 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-22871
CWE-444 Medium
No
No
1.1.8-3.rhaos4.18.el8 05.04.2025 SB2025040507
SB2025040508
SB2025040739
and 109 more
#VU94616 - Information Exposure Through Log Files
CVE-2024-6104
CWE-532 Low
No
No
1.1.8-3.rhaos4.17.el8 19.07.2024 SB2024071927
SB2024071929
SB2024071930
and 83 more
#VU91159 - Improper input validation
CVE-2024-24789
CWE-20 Low
No
No
1.1.8-3.rhaos4.17.el8 05.06.2024 SB2024060520
SB2024060635
SB2024060729
and 78 more
#VU89685 - Improper Validation of Integrity Check Value
CVE-2024-3727
CWE-354 Medium
No
No
1.1.8-2.rhaos4.16.el8 21.05.2024 SB2024052112
SB2024052116
SB2024052117
and 68 more
#VU87830 - Missing release of memory after effective lifetime
CVE-2024-1394
CWE-401 Medium
No
No
1.1.8-2.rhaos4.16.el8 26.03.2024 SB2024032646
SB2024032647
SB2024032648
and 54 more
#VU87329 - Resource exhaustion
CVE-2024-28176
CWE-400 Medium
No
No
1.1.8-2.rhaos4.16.el8 11.03.2024 SB2024031123
SB2024031446
SB2024031447
and 37 more
#VU87326 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-24786
CWE-835 Medium
No
No
1.1.8-2.rhaos4.14.el8, 1.1.8-2.rhaos4.16.el8 11.03.2024 SB2024031115
SB2024031435
SB2024031555
and 134 more
#VU87201 - Improper input validation
CVE-2024-24784
CWE-20 Medium
No
No
1.1.8-2.rhaos4.16.el8 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 48 more
#VU87200 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-24785
CWE-79 Low
No
No
1.1.8-2.rhaos4.16.el8 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 61 more
#VU87198 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45289
CWE-200 Low
No
No
1.1.8-2.rhaos4.16.el8 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 54 more
#VU87197 - Resource exhaustion
CVE-2023-45290
CWE-400 Medium
No
No
1.1.8-2.rhaos4.16.el8 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 101 more
#VU87196 - Error Handling
CVE-2024-24783
CWE-388 Medium
No
No
1.1.8-2.rhaos4.16.el8 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 81 more
#VU86795 - Improper input validation
CVE-2023-29483
CWE-20 Medium
No
No
1.1.8-2.rhaos4.16.el8 26.02.2024 SB2024022638
SB2024040115
SB2024042448
and 37 more
#VU68390 - Resource exhaustion
CVE-2022-41715
CWE-400 Medium
No
No
1.1.8-2.rhaos4.12.el8 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 113 more
#VU68389 - Improper input validation
CVE-2022-2880
CWE-20 Medium
No
No
1.1.8-2.rhaos4.12.el8 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 94 more
#VU68387 - Resource Management Errors
CVE-2022-2879
CWE-399 Medium
No
No
1.1.8-2.rhaos4.12.el8 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 78 more
#VU64269 - Integer overflow
CVE-2022-28327
CWE-190 Low
No
No
1.1.8-1.rhaos4.11.el8 14.06.2022 SB2022041004
SB2022061422
SB2022061506
and 90 more
#VU63493 - Improper Access Control
CVE-2022-1706
CWE-284 Low
No
No
1.1.8-1.rhaos4.11.el8 20.05.2022 SB2022052015
SB2022071162
SB2022071163
and 9 more
#VU63090 - Permissions, Privileges, and Access Controls
CVE-2022-29162
CWE-264 Medium
No
No
1.1.8-1.rhaos4.11.el8 12.05.2022 SB2022051205
SB2022062435
SB2022071158
and 32 more
#VU62039 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-27191
CWE-327 Medium
No
No
1.1.8-1.rhaos4.11.el8 10.04.2022 SB2022041004
SB2022041406
SB2022081226
and 91 more


Showing elements 1 - 20 out of 32