Known vulnerabilities in zsh (Red Hat package)
Vendor:
Red Hat Inc.
Software:
zsh (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:zsh_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
2
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU60674 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-45444 |
CWE-78 | High | 5.5.1-9.el8 | 17.02.2022 |
SB2022021701 SB2022021702 SB2022031621 and 15 more |
||
| #VU26210 - Improper Check for Dropped Privileges CVE-2019-20044 |
CWE-273 | Low | 5.0.2-34.el7_7.2, 5.5.1-6.el8_0.2, 5.5.1-6.el8_1.2 | 19.03.2020 |
SB2020022427 SB2020031902 SB2020032519 and 13 more |