Known vulnerabilities in squashfs-tools (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:squashfs-tools_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 2
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting squashfs-tools (Red Hat package) squashfs-tools (Red Hat package) is affected by 2 known vulnerabilities: 2 medium Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU57416 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-41072
CWE-59 Medium
No
No
4.3-21.el8, 4.4-10.git1.el9 18.10.2021 SB2021090501
SB2021101901
SB2021091530
and 13 more
#VU56306 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-40153
CWE-22 Medium
No
No
4.3-21.el8, 4.4-10.git1.el9 05.09.2021 SB2021090501
SB2021090502
SB2021083142
and 15 more