📦 Enterprise Linux Desktop

by Redhat

🔍 What is Enterprise Linux Desktop?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-6816

CRITICAL CVSS 9.8 Jan 18, 2024

This vulnerability in X.Org server allows heap overflow when button mapping exceeds allocated memory space. Attackers could exploit this to execute arbitrary code or crash the system. Affects systems ...

CVE-2024-0409

HIGH CVSS 7.8 Jan 18, 2024

This vulnerability in X.Org server's cursor code allows memory corruption by using incorrect private types in Xephyr and Xwayland, potentially leading to privilege escalation or denial of service. It ...

CVE-2023-5869

HIGH CVSS 8.8 Dec 10, 2023

This CVE-2023-5869 vulnerability in PostgreSQL allows authenticated database users to execute arbitrary code on the server through an integer overflow when modifying SQL arrays. Attackers can write ar...

CVE-2023-3972

HIGH CVSS 7.8 Nov 1, 2023

This vulnerability allows unprivileged local users to escalate privileges to root by exploiting insecure temporary directory handling in insights-client. Attackers can create and control the /var/tmp/...

CVE-2023-5367

HIGH CVSS 7.8 Oct 25, 2023

This CVE-2023-5367 is an out-of-bounds write vulnerability in xorg-x11-server that allows attackers to write beyond allocated heap buffers. It could lead to privilege escalation or denial of service o...

CVE-2023-0494

HIGH CVSS 7.8 Mar 27, 2023

This CVE-2023-0494 vulnerability in X.Org allows attackers to exploit a dangling pointer in DeepCopyPointerClasses via ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() functions. This can lead to loc...

CVE-2019-8720

HIGH CVSS 8.8 Mar 6, 2023

CVE-2019-8720 is a memory corruption vulnerability in WebKit that allows arbitrary code execution when processing malicious web content. This affects any application using WebKit for web rendering, in...

CVE-2022-0330

HIGH CVSS 7.8 Mar 25, 2022

A memory access vulnerability in the Linux kernel's i915 GPU driver allows local attackers to execute malicious GPU code, potentially causing system crashes or privilege escalation. This affects Linux...

CVE-2021-3656

HIGH CVSS 8.8 Mar 4, 2022

This vulnerability in KVM's AMD SVM nested virtualization allows a malicious L1 guest to disable security intercepts for L2 guests, potentially enabling L2 guests to read/write host physical memory. T...

CVE-2021-4091

HIGH CVSS 7.5 Feb 18, 2022

CVE-2021-4091 is a double-free vulnerability in 389 Directory Server's handling of virtual attributes during persistent searches. An attacker can send crafted search requests to cause the directory se...

CVE-2020-25717

HIGH CVSS 8.1 Feb 18, 2022

CVE-2020-25717 is a privilege escalation vulnerability in Samba's domain user mapping mechanism. Authenticated attackers can exploit this flaw to gain elevated privileges on Samba servers. This affect...

CVE-2020-25719

HIGH CVSS 7.2 Feb 18, 2022

This vulnerability in Samba's Active Directory Domain Controller allows attackers to bypass Kerberos authentication by exploiting confusion about user identity when Kerberos PAC (Privilege Attribute C...

CVE-2021-4034

HIGH CVSS 7.8 Jan 28, 2022

CVE-2021-4034 (PwnKit) is a local privilege escalation vulnerability in polkit's pkexec utility that allows unprivileged local users to gain root privileges by exploiting improper argument handling. T...

CVE-2019-1125

MEDIUM CVSS 5.6 Sep 3, 2019

CVE-2019-1125 is a Spectre Variant 1 speculative execution side-channel vulnerability in AMD, ARM, and Intel CPUs that allows attackers to read privileged memory across trust boundaries. It affects sy...