Red Hat Security Advisory: A Subscription Management tool for finding and reporting Red Hat product usage
🔗 CVE IDs covered (12)
📋 Description
CVE-2023-4752 — vim: use-after-free in function ins_compl_get_exp in vim/vim CVE-2024-8176 — libexpat: expat: Improper Restriction of XML Entity Expansion Depth in libexpat CVE-2024-12087 — rsync: Path traversal vulnerability in rsync CVE-2024-12088 — rsync: --safe-links option bypass leads to path traversal CVE-2024-12133 — libtasn1: Inefficient DER Decoding in libtasn1 Leading to Potential Remote DoS CVE-2024-12243 — gnutls: GnuTLS Impacted by Inefficient DER Decoding in libtasn1 Leading to Remote DoS CVE-2024-12747 — rsync: Race Condition in rsync Handling Symbolic Links CVE-2024-35195 — requests: subsequent requests to the same host ignore cert verification CVE-2024-52005 — git: The sideband payload is passed unfiltered to the terminal in git CVE-2025-0938 — python: cpython: URL parser allowed square brackets in domain names CVE-2025-24528 — krb5: overflow when calculating ulog block size CVE-2025-26465 — openssh: Machine-in-the-middle attack if VerifyHostKeyDNS is enabled
🔗 References (16)
- selfhttps://access.redhat.com/errata/RHSA-2025:8385
- externalhttps://access.redhat.com/security/cve/CVE-2023-4752
- externalhttps://access.redhat.com/security/cve/CVE-2024-12087
- externalhttps://access.redhat.com/security/cve/CVE-2024-12088
- externalhttps://access.redhat.com/security/cve/CVE-2024-12133
- externalhttps://access.redhat.com/security/cve/CVE-2024-12243
- externalhttps://access.redhat.com/security/cve/CVE-2024-12747
- externalhttps://access.redhat.com/security/cve/CVE-2024-35195
- externalhttps://access.redhat.com/security/cve/CVE-2024-52005
- externalhttps://access.redhat.com/security/cve/CVE-2024-8176
- externalhttps://access.redhat.com/security/cve/CVE-2025-0938
- externalhttps://access.redhat.com/security/cve/CVE-2025-24528
- externalhttps://access.redhat.com/security/cve/CVE-2025-26465
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://docs.redhat.com/en/documentation/subscription_central/1-latest/#Discovery
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_8385.json