VulnSea

enterprise_linux vulnerabilities

CVEs whose affected-version data names the enterprise_linux package (go, rust). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

678 CVEsRSS

CVE-2025-26598High· 7.8
1y ago

An out-of-bounds write flaw was found in X.Org and Xwayland

An out-of-bounds write flaw was found in X.Org and Xwayland. The function GetBarrierDevice() searches for the pointer device based on its device ID and returns the matching value, or supposedly NULL, if no match was found. However, the c…

▾ Twilighttigervnc · tigervncEPSS 0.40%via NVD
CVE-2025-26597High· 7.8
1y ago

A buffer overflow flaw was found in X.Org and Xwayland

A buffer overflow flaw was found in X.Org and Xwayland. If XkbChangeTypesOfKey() is called with a 0 group, it will resize the key symbols table to 0 but leave the key actions unchanged. If the same function is later called with a non-zer…

▾ Twilighttigervnc · tigervncEPSS 0.44%via NVD
CVE-2025-26596High· 7.8
1y ago

A heap overflow flaw was found in X.Org and Xwayland

A heap overflow flaw was found in X.Org and Xwayland. The computation of the length in XkbSizeKeySyms() differs from what is written in XkbWriteKeySyms(), which may lead to a heap-based buffer overflow.

▾ Twilighttigervnc · tigervncEPSS 0.44%via NVD
CVE-2025-26595High· 7.8
1y ago

A buffer overflow flaw was found in X.Org and Xwayland

A buffer overflow flaw was found in X.Org and Xwayland. The code in XkbVModMaskText() allocates a fixed-sized buffer on the stack and copies the names of the virtual modifiers to that buffer. The code fails to check the bounds of the buf…

▾ Twilighttigervnc · tigervncEPSS 0.44%via NVD
CVE-2025-26594High· 7.8
1y ago

A use-after-free flaw was found in X.Org and Xwayland

A use-after-free flaw was found in X.Org and Xwayland. The root cursor is referenced in the X server as a global variable. If a client frees the root cursor, the internal reference points to freed memory and causes a use-after-free.

▾ Twilighttigervnc · tigervncEPSS 0.39%via NVD
CVE-2024-45777Medium· 6.7
1y ago

A flaw was found in grub2

A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may overflow, leading to a Out-of-bound write. This issue can be leveraged by an attacker to ove…

▾ Sunlitgnu · grub2EPSS 0.24%via NVD
CVE-2025-26465Medium· 6.8PoC
1y ago

A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled

A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled. A machine-in-the-middle attack can be performed by a malicious machine impersonating a legit server. This issue occurs due to how OpenSSH mishandles error …

▾ Twilightopenbsd · opensshEPSS 7.7%via NVD
CVE-2025-22866Medium· 5.3
1y ago

crypto/internal/nistec: golang: Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec (CVE-2025-22866)

A flaw was found in the Golang crypto/internal/nistec package. Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le archi…

▾ SunlitRed Hat · Red Hat Enterprise Linux AppStream E4S (v.8.8)EPSS 0.29%via CSAF
CVE-2025-5791High· 7.1
1y ago

users: `root` appended to group listings (CVE-2025-5791)

A flaw was found in the user's crate for Rust. This vulnerability allows privilege escalation via incorrect group listing when a user or process has fewer than exactly 1024 groups, leading to the erroneous inclusion of the root group in th…

▾ TwilightRed Hat · Red Hat OpenShift Container Platform 4EPSS 0.20%via CSAF
CVE-2024-12084Critical· 9.8PoC
1y ago

A heap-based buffer overflow flaw was found in the rsync daemon

A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attac…

▾ Abyssalsamba · rsyncEPSS 72%via NVD
CVE-2024-12088Medium· 6.5
1y ago

A flaw was found in rsync

A flaw was found in rsync. When using the `--safe-links` option, the rsync client fails to properly verify if a symbolic link destination sent from the server contains another symbolic link within it. This results in a path traversal vul…

▾ Sunlitsamba · rsyncEPSS 4.7%via NVD
CVE-2024-12087Medium· 6.5
1y ago

A path traversal vulnerability exists in rsync

A path traversal vulnerability exists in rsync. It stems from behavior enabled by the `--inc-recursive` option, a default-enabled option for many client options and can be enabled by the server even if not explicitly enabled by the clien…

▾ Sunlitsamba · rsyncEPSS 2.3%via NVD
CVE-2024-12086Medium· 6.1
1y ago

A flaw was found in rsync

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server w…

▾ Sunlitsamba · rsyncEPSS 1.8%via NVD
CVE-2024-12085High· 7.5PoC
1y ago

A flaw was found in rsync which could be triggered when rsync compares file checksums

A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized memory and leak o…

▾ Midnightsamba · rsyncEPSS 8.8%via NVD
CVE-2024-49395Medium· 5.3
1y ago

In mutt and neomutt, PGP encryption does not use the --hidden-recipient mode which may leak the Bcc email header field by inferring from the recipients info.

In mutt and neomutt, PGP encryption does not use the --hidden-recipient mode which may leak the Bcc email header field by inferring from the recipients info.

▾ Sunlitmutt · muttEPSS 0.30%via NVD
CVE-2024-49394Medium· 5.3
1y ago

In mutt and neomutt the In-Reply-To email header field is not protected by cryptographic signing which allows an attacker to reuse an unencrypted but signed email message to impersonate the original sender.

In mutt and neomutt the In-Reply-To email header field is not protected by cryptographic signing which allows an attacker to reuse an unencrypted but signed email message to impersonate the original sender.

▾ Sunlitmutt · muttEPSS 0.33%via NVD
CVE-2024-49393Medium· 6.5
1y ago

In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of the recipients to compromise message con…

In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of the recipients to compromise message con…

▾ Sunlitmutt · muttEPSS 0.33%via NVD
CVE-2024-51744Low· 3.1
1y ago

golang-jwt: Bad documentation of error handling in ParseWithClaims can lead to potentially dangerous situations in golang-jwt (CVE-2024-517…

A flaw was found in the golang-jwt package. Unclear documentation of the error behavior in `ParseWithClaims` can lead to situation where users are not checking errors in the way they should be. Especially, if a token is both expired and in…

▾ SunlitRed Hat · Red Hat OpenShift Container Platform 4.16EPSS 0.51%via CSAF
CVE-2024-9675High· 7.8⚖ disputed
1y ago

A vulnerability was found in Buildah

A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified paths for the cache are within our cache directory, allowing a `RUN` instruction in a Container file to mount an arbitrary directory from the…

▾ Twilightbuildah_project · buildahEPSS 0.39%via NVD
CVE-2024-9341Medium· 5.4
1y ago

A flaw was found in Go

A flaw was found in Go. When FIPS mode is enabled on a system, container runtimes may incorrectly handle certain file paths due to improper validation in the containers/common Go library. This flaw allows an attacker to exploit symbolic …

▾ Sunlitcontainers · commonEPSS 1.0%via NVD
CVE-2024-8443Low· 2.9
2y ago

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver

A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using the `pkcs15-init` tool may lead to ou…

▾ Sunlitopensc_project · openscEPSS 0.32%via NVD
CVE-2024-45620Low· 3.9
2y ago

A vulnerability was found in the pkcs15-init tool in OpenSC

A vulnerability was found in the pkcs15-init tool in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are partially filled with data…

▾ Sunlitopensc_project · openscEPSS 0.32%via NVD
CVE-2024-45619Medium· 4.3
2y ago

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are…

▾ Sunlitopensc_project · openscEPSS 0.33%via NVD
CVE-2024-45618Low· 3.9
2y ago

A vulnerability was found in pkcs15-init in OpenSC

A vulnerability was found in pkcs15-init in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. Insufficient or missing checking of return values …

▾ Sunlitopensc_project · openscEPSS 0.31%via NVD
CVE-2024-45617Low· 3.9
2y ago

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. Insufficient o…

▾ Sunlitopensc_project · openscEPSS 0.30%via NVD
CVE-2024-45616Low· 3.9
2y ago

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. The following …

▾ Sunlitopensc_project · openscEPSS 0.36%via NVD
CVE-2024-45615Low· 3.9
2y ago

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK

A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. The problem is missing initialization of variables expected to be initialized (as arguments to other functions, etc.).

▾ Sunlitopensc_project · openscEPSS 0.36%via NVD
CVE-2024-6387High· 8.1PoC
2y ago

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd)

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by f…

▾ Midnightopenbsd · opensshEPSS 100%via NVD
CVE-2024-27304High· 8.1PoC
2y ago

pgx: SQL Injection via Protocol Message Size Overflow (CVE-2024-27304)

pgx is a PostgreSQL driver and toolkit for Go. SQL injection can occur if an attacker can cause a single query or bind message to exceed 4 GB in size. An integer overflow in the calculated message size can cause the one large message to be…

▾ MidnightRed Hat · RHACS 4.3 for RHEL 8EPSS 1.1%via CSAF
CVE-2024-1488High· 8.0
2y ago

A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration

A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can alter the…

▾ Twilightfedoraproject · unboundEPSS 0.32%via NVD
enterprise_linux vulnerabilities (CVEs) — page 21 · VulnSea