RHSA-2025:8385MediumCVSS 7.5

Red Hat Security Advisory: A Subscription Management tool for finding and reporting Red Hat product usage

Published
June 2, 2025
Last Modified
June 2, 2026

🔗 CVE IDs covered (12)

📋 Description

CVE-2023-4752 — vim: use-after-free in function ins_compl_get_exp in vim/vim CVE-2024-8176 — libexpat: expat: Improper Restriction of XML Entity Expansion Depth in libexpat CVE-2024-12087 — rsync: Path traversal vulnerability in rsync CVE-2024-12088 — rsync: --safe-links option bypass leads to path traversal CVE-2024-12133 — libtasn1: Inefficient DER Decoding in libtasn1 Leading to Potential Remote DoS CVE-2024-12243 — gnutls: GnuTLS Impacted by Inefficient DER Decoding in libtasn1 Leading to Remote DoS CVE-2024-12747 — rsync: Race Condition in rsync Handling Symbolic Links CVE-2024-35195 — requests: subsequent requests to the same host ignore cert verification CVE-2024-52005 — git: The sideband payload is passed unfiltered to the terminal in git CVE-2025-0938 — python: cpython: URL parser allowed square brackets in domain names CVE-2025-24528 — krb5: overflow when calculating ulog block size CVE-2025-26465 — openssh: Machine-in-the-middle attack if VerifyHostKeyDNS is enabled

🔗 References (16)