Oracle Linux Bulletin - July 2021

 

Description

The Oracle Linux Bulletin lists all CVEs that had been resolved and announced in Oracle Linux Security Advisories (ELSA) in the last one month prior to the release of the bulletin. Oracle Linux Bulletins are published on the same day as Oracle Critical Patch Updates are released. These bulletins will also be updated for the following two months after their release (i.e., the two months between the normal quarterly Critical Patch Update publication dates) to cover all CVEs that had been resolved in those two months following the bulletin's publication. In addition, Oracle Linux Bulletins may also be updated for vulnerability issues deemed too critical to wait for the next scheduled bulletin publication date.

Due to the threat posed by a successful attack, Oracle strongly recommends that customers apply Oracle Linux Bulletin security patches as soon as possible.

 

Patch Availability

Please see ULN Advisory https://linux.oracle.com/ol-pad-bulletin

 

Oracle Linux Bulletin Schedule

Oracle Linux Bulletins are released on the Tuesday closest to the 17th day of January, April, July and October. The next four dates are:

  • 19 October 2021
  • 18 January 2022
  • 19 April 2022
  • 19 July 2022

References

 

Modification History

Date Note
2021-September-21 Rev 3. New CVEs added
2021-August-18 Rev 2. New CVEs added
2021-July-20 Rev 1. Initial Release

Oracle Linux Executive Summary

This Oracle Linux Bulletin contains 23 new security patches for the Oracle Linux. 

Oracle Linux Risk Matrix

Revision 3: Published on 2021-09-21

CVE# Product Component Remote Exploit without Auth.? CVSS VERSION 3.1 RISK (see Risk Matrix Definitions) Supported Versions Affected
Base
Score
Attack
Vector
Attack
Complex
Privs
Req'd
User
Interact
Scope Confid-
entiality
Inte-
grity
Avail-
ability
CVE-2021-3653 Oracle Linux Unbreakable Enterprise kernel No 8.8 Local Low Low None Changed High High High 7,8
CVE-2021-3656 Oracle Linux Unbreakable Enterprise kernel No 8.8 Local Low Low None Changed High High High 7,8
CVE-2021-3653 Oracle Linux Unbreakable Enterprise kernel-container No 8.8 Local Low Low None Changed High High High 7,8
CVE-2021-3656 Oracle Linux Unbreakable Enterprise kernel-container No 8.8 Local Low Low None Changed High High High 7,8
CVE-2021-38493 Oracle Linux firefox No 8.8 Local Low Low None Changed High High High 7,8
CVE-2021-3653 Oracle Linux kernel No 8.8 Local Low Low None Changed High High High 8
CVE-2021-3246 Oracle Linux libsndfile Yes 8.8 Network Low None Required Unchanged High High High 7,8
CVE-2021-38493 Oracle Linux thunderbird No 8.8 Local Low Low None Changed High High High 7,8
CVE-2021-31291 Oracle Linux compat-exiv2-023 Yes 8.1 Network High None None Unchanged High High High 7
CVE-2021-31291 Oracle Linux compat-exiv2-026 Yes 8.1 Network High None None Unchanged High High High 7
CVE-2021-31535 Oracle Linux libX11 Yes 8.1 Network High None None Unchanged High High High 7
CVE-2021-3573 Oracle Linux Unbreakable Enterprise kernel No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2021-3573 Oracle Linux Unbreakable Enterprise kernel-container No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2021-22555 Oracle Linux kernel No 7.8 Local Low Low None Unchanged High High High 7
CVE-2021-3715 Oracle Linux kernel No 7.8 Local Low Low None Unchanged High High High 7
CVE-2021-37576 Oracle Linux kernel No 7.8 Local Low Low None Unchanged High High High 8
CVE-2021-33582 Oracle Linux cyrus-imapd Yes 7.5 Network Low None None Unchanged None None High 8
CVE-2021-38201 Oracle Linux kernel Yes 7.5 Network Low None None Unchanged None None High 8
CVE-2018-14621 Oracle Linux libtirpc Yes 7.5 Network Low None None Unchanged None None High 8
CVE-2021-22543 Oracle Linux Unbreakable Enterprise kernel No 7.0 Local High Low None Unchanged High High High 7,8
CVE-2021-3609 Oracle Linux Unbreakable Enterprise kernel No 7.0 Local High Low None Unchanged High High High 7,8
CVE-2021-22543 Oracle Linux Unbreakable Enterprise kernel-container No 7.0 Local High Low None Unchanged High High High 7,8
CVE-2021-3609 Oracle Linux Unbreakable Enterprise kernel-container No 7.0 Local High Low None Unchanged High High High 7,8
CVE-2021-29154 Oracle Linux kernel No 7.0 Local High Low None Unchanged High High High 7
CVE-2021-32399 Oracle Linux kernel No 7.0 Local High Low None Unchanged High High High 7
CVE-2020-27777 Oracle Linux kernel No 6.7 Local High None None Unchanged None High High 7
CVE-2021-3621 Oracle Linux sssd No 6.7 Local Low High None Unchanged High High High 7
CVE-2021-25214 Oracle Linux bind No 6.5 Network Low Low None Unchanged None None High 7
CVE-2021-29650 Oracle Linux kernel No 5.5 Local Low Low None Unchanged None None High 7
CVE-2021-3622 Oracle Linux hivex Yes 4.3 Network Low None Required Unchanged None None Low 7
CVE-2020-36311 Oracle Linux Unbreakable Enterprise kernel No 2.8 Local Low Low Required Unchanged None None Low 7,8
CVE-2020-36311 Oracle Linux Unbreakable Enterprise kernel-container No 2.8 Local Low Low Required Unchanged None None Low 7,8

Revision 2: Published on 2021-08-18

CVE# Product Component Remote Exploit without Auth.? CVSS VERSION 3.1 RISK (see Risk Matrix Definitions) Supported Versions Affected
Base
Score
Attack
Vector
Attack
Complex
Privs
Req'd
User
Interact
Scope Confid-
entiality
Inte-
grity
Avail-
ability
CVE-2020-8696 Oracle Linux microcode_ctl No null.0 Local Low Low None Unchanged High None None 7
CVE-2020-8698 Oracle Linux microcode_ctl Yes null.0 Network Low None None Unchanged Low None None 8
CVE-2020-8698 Oracle Linux microcode_ctl Yes null.0 Network Low None None Unchanged None None Low 7
CVE-2021-22918 Oracle Linux nodejs:12 Yes null.0 Network Low None None Unchanged None None High 8
CVE-2021-23362 Oracle Linux nodejs:12 Yes null.0 Network Low None None Unchanged Low None None 8
CVE-2021-27290 Oracle Linux nodejs:12 Yes null.0 Network Low None None Unchanged None None Low 8
CVE-2021-22918 Oracle Linux nodejs:14 Yes null.0 Network Low None None Unchanged None None High 8
CVE-2021-23362 Oracle Linux nodejs:14 No null.0 Local Low High None Changed None None Low 8
CVE-2021-27290 Oracle Linux nodejs:14 No null.0 Local Low High None Changed None None Low 8
CVE-2021-3392 Oracle Linux qemu No null.0 Local Low High None Changed Low None None 7
CVE-2021-3527 Oracle Linux qemu No null.0 Local Low Low None Changed None Low Low 7
CVE-2021-3544 Oracle Linux qemu No null.0 Local Low High None Changed None None Low 7
CVE-2021-3545 Oracle Linux qemu No null.0 Local Low High None Changed None None Low 7
CVE-2021-3546 Oracle Linux qemu No null.0 Local Low High None Changed None None Low 7
CVE-2021-3582 Oracle Linux qemu Yes null.0 Network Low None Required Unchanged High High High 7
CVE-2021-3607 Oracle Linux qemu No null.0 Local High None Required Unchanged High High High 7
CVE-2021-3608 Oracle Linux qemu Yes null.0 Network Low None Required Unchanged Low Low None 7
CVE-2020-36327 Oracle Linux ruby:2.7 Yes null.0 Network High None None Unchanged Low High None 8
CVE-2021-31799 Oracle Linux ruby:2.7 Yes null.0 Network Low None None Unchanged Low None High 8
CVE-2021-31810 Oracle Linux ruby:2.7 Yes null.0 Network Low None None Unchanged None None High 8
CVE-2021-32066 Oracle Linux ruby:2.7 Yes null.0 Network Low None None Unchanged None Low None 8
CVE-2020-36323 Oracle Linux rust-toolset:ol8 Yes null.0 Network Low None None Unchanged None None High 8
CVE-2021-28875 Oracle Linux rust-toolset:ol8 Yes null.0 Network Low None None Unchanged None None High 8
CVE-2021-28876 Oracle Linux rust-toolset:ol8 Yes null.0 Network Low None None Unchanged High High High 8
CVE-2021-30547 Oracle Linux thunderbird No null.0 Local Low Low None Changed None None Low 8
CVE-2021-3653 Oracle Linux Unbreakable Enterprise kernel No null.0 Local High None Required Changed None None None 7,8
CVE-2020-24511 Oracle Linux microcode_ctl No 9.8 Local High Low None Changed Low None None 8
CVE-2021-28879 Oracle Linux rust-toolset:ol8 No 9.8 Local Low Low None Unchanged None None High 8
CVE-2020-24588 Oracle Linux Unbreakable Enterprise kernel-container No 8.8 Local Low None None Unchanged None High None 7,8
CVE-2020-26141 Oracle Linux Unbreakable Enterprise kernel-container No 8.8 Local Low None None Unchanged None High None 7,8
CVE-2021-29988 Oracle Linux firefox No 8.8 Local High None Required Changed None None None 8
CVE-2020-0548 Oracle Linux microcode_ctl No 8.8 Local Low Low None Unchanged High None None 7
CVE-2020-24512 Oracle Linux microcode_ctl No 8.8 Local High None None Unchanged High None None 7
CVE-2020-8695 Oracle Linux microcode_ctl No 8.8 Local High Low None Changed Low None None 7,8
CVE-2020-8696 Oracle Linux microcode_ctl No 8.8 Local Low Low None Unchanged High None None 8
CVE-2021-28877 Oracle Linux rust-toolset:ol8 Yes 8.8 Network Low None None Unchanged High High High 8
CVE-2021-29976 Oracle Linux thunderbird Yes 8.8 Network Low None Required Unchanged High High High 7,8
CVE-2021-2369 Oracle Linux java-1.8.0-openjdk Yes 8.3 Network High None Required Unchanged Low None None 7
CVE-2021-29988 Oracle Linux firefox No 8.2 Local High None Required Changed None None None 7
CVE-2021-31162 Oracle Linux rust-toolset:ol8 Yes 8.1 Network High None None Unchanged High None None 8
CVE-2021-3621 Oracle Linux sssd Yes 8.1 Network High None None Unchanged High None None 8
CVE-2021-33910 Oracle Linux systemd Yes 8.1 Network Low None Required Unchanged High High High 8
CVE-2021-3656 Oracle Linux Unbreakable Enterprise kernel Yes 8.1 Network High None None Unchanged High High High 7,8
CVE-2021-31291 Oracle Linux exiv2 Yes 7.8 Network High None None Unchanged High High High 8
CVE-2021-2388 Oracle Linux java-1.8.0-openjdk Yes 7.8 Network High None Required Unchanged Low None None 8
CVE-2021-2341 Oracle Linux java-11-openjdk Yes 7.8 Network Low None Required Unchanged None Low None 8
CVE-2021-29980 Oracle Linux thunderbird No 7.8 Local High None Required Changed None None None 8
CVE-2021-23134 Oracle Linux Unbreakable Enterprise kernel No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2021-33909 Oracle Linux Unbreakable Enterprise kernel No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2021-29980 Oracle Linux firefox No 7.5 Local High None Required Changed None None None 7
CVE-2021-33909 Oracle Linux kernel No 7.5 Local High Low None Unchanged High High High 8
CVE-2021-33909 Oracle Linux kernel No 7.5 Local High None None Changed High High High 7
CVE-2021-22543 Oracle Linux kernel No 7.5 Local High Low None Unchanged High High High 8
CVE-2021-22555 Oracle Linux kernel No 7.5 Network Low Low None Unchanged High High High 8
CVE-2021-3609 Oracle Linux kernel Yes 7.5 Network Low None None Unchanged Low None None 8
CVE-2021-28091 Oracle Linux lasso No 7.5 Local Low Low None Changed High None None 7
CVE-2021-22918 Oracle Linux libuv No 7.5 Local Low Low None Changed High None None 8
CVE-2020-0543 Oracle Linux microcode_ctl No 7.5 Local Low Low None Unchanged High None None 7,8
CVE-2020-0548 Oracle Linux microcode_ctl No 7.5 Local Low Low None Unchanged High None None 8
CVE-2020-0549 Oracle Linux microcode_ctl No 7.5 Local Low Low None Changed High High High 8
CVE-2020-24489 Oracle Linux microcode_ctl No 7.5 Local High Low None Changed High None None 7,8
CVE-2021-28878 Oracle Linux rust-toolset:ol8 Yes 7.5 Network Low None None Unchanged None None High 8
CVE-2021-3652 Oracle Linux 389-ds:1.4 No 7.1 Local High None Required Changed None None None 8
CVE-2021-26423 Oracle Linux .NET 5.0 Yes 7.0 Network Low None None Unchanged None None High 8
CVE-2021-2341 Oracle Linux java-1.8.0-openjdk Yes 7.0 Network High None Required Unchanged High High High 7
CVE-2021-29969 Oracle Linux thunderbird Yes 7.0 Network Low None Required Unchanged High High High 8
CVE-2021-29984 Oracle Linux thunderbird No 7.0 Local High None Required Changed None None None 7,8
CVE-2021-29985 Oracle Linux thunderbird No 7.0 Local High None Required Changed None None None 7,8
CVE-2021-29986 Oracle Linux thunderbird No 7.0 Local High None Required Changed None None None 7,8
CVE-2021-29988 Oracle Linux thunderbird No 7.0 Local High None Required Changed None None None 8
CVE-2021-29988 Oracle Linux thunderbird Yes 7.0 Network Low None Required Unchanged High High High 7
CVE-2020-26147 Oracle Linux Unbreakable Enterprise kernel No 7.0 Local High Low None Unchanged None None High 7,8
CVE-2021-34485 Oracle Linux .NET 5.0 No 6.5 Local Low Low None Unchanged High None None 8
CVE-2021-34532 Oracle Linux .NET 5.0 No 6.5 Local Low Low None Unchanged High None None 8
CVE-2021-29980 Oracle Linux firefox No 6.5 Local High None Required Changed None None None 8
CVE-2021-29984 Oracle Linux firefox No 6.5 Local High None Required Changed None None None 7,8
CVE-2021-29985 Oracle Linux firefox No 6.5 Local High None Required Changed None None None 7
CVE-2021-29970 Oracle Linux thunderbird No 6.5 Local High None Required Changed None None None 8
CVE-2021-3504 Oracle Linux virt:ol and virt-devel:rhel No 6.5 Local Low None None Unchanged None Low None 8
CVE-2020-24511 Oracle Linux microcode_ctl No 5.9 Local High Low None Changed Low None None 7
CVE-2020-24512 Oracle Linux microcode_ctl No 5.9 Local High None None Unchanged High None None 8
CVE-2021-29969 Oracle Linux thunderbird Yes 5.9 Network Low None Required Unchanged High High High 7
CVE-2020-26145 Oracle Linux Unbreakable Enterprise kernel-container No 5.6 Local High None Required Unchanged None High None 7,8
CVE-2020-26147 Oracle Linux Unbreakable Enterprise kernel-container No 5.6 Local Low Low None Unchanged High High High 7,8
CVE-2021-34485 Oracle Linux .NET Core 2.1 No 5.5 Local Low Low None Unchanged High None None 8
CVE-2021-26423 Oracle Linux .NET Core 3.1 Yes 5.5 Network Low None None Unchanged None None High 8
CVE-2021-34485 Oracle Linux .NET Core 3.1 No 5.5 Local Low Low None Unchanged High None None 8
CVE-2021-34532 Oracle Linux .NET Core 3.1 No 5.5 Local Low Low None Unchanged High None None 8
CVE-2021-3564 Oracle Linux Unbreakable Enterprise kernel-container No 5.5 Local Low Low None Unchanged None None High 7,8
CVE-2021-31525 Oracle Linux go-toolset:ol8 Yes 5.5 Network Low None Required Unchanged None None High 8
CVE-2021-33196 Oracle Linux go-toolset:ol8 Yes 5.5 Network High None Required Unchanged Low None None 8
CVE-2021-29980 Oracle Linux thunderbird No 5.5 Local High None Required Changed None None None 7
CVE-2021-29989 Oracle Linux thunderbird Yes 5.5 Network Low None Required Unchanged High High High 8
CVE-2021-36740 Oracle Linux varnish:6 No 5.5 Local High High None Changed None None Low 8
CVE-2020-13754 Oracle Linux virt:ol and virt-devel:rhel No 5.5 Local Low High None Changed None None Low 8
CVE-2020-27617 Oracle Linux virt:ol and virt-devel:rhel Yes 5.5 Network Low None Required Unchanged Low None Low 8
CVE-2021-20221 Oracle Linux virt:ol and virt-devel:rhel No 5.5 Local Low None None Unchanged Low None None 8
CVE-2021-3416 Oracle Linux virt:ol and virt-devel:rhel No 5.5 Local High None None Unchanged Low None None 8
CVE-2021-3564 Oracle Linux Unbreakable Enterprise kernel No 5.5 Local Low Low None Unchanged None None High 7,8
CVE-2021-29970 Oracle Linux thunderbird Yes 5.4 Network Low None Required Unchanged High High High 7
CVE-2020-14304 Oracle Linux Unbreakable Enterprise kernel No 5.4 Local Low Low None Unchanged High High High 7,8
CVE-2021-2388 Oracle Linux java-1.8.0-openjdk Yes 5.3 Network Low None Required Unchanged None Low None 7
CVE-2021-2341 Oracle Linux java-1.8.0-openjdk Yes 5.3 Network High None Required Unchanged High High High 8
CVE-2021-2369 Oracle Linux java-1.8.0-openjdk Yes 5.3 Network High None Required Unchanged Low None None 8
CVE-2021-2341 Oracle Linux java-11-openjdk Yes 5.3 Network Low None Required Unchanged None Low None 7
CVE-2021-2369 Oracle Linux java-11-openjdk Yes 5.3 Network High None Required Unchanged High High High 8
CVE-2020-0549 Oracle Linux microcode_ctl No 5.3 Local Low Low None Changed High High High 7
CVE-2020-24588 Oracle Linux Unbreakable Enterprise kernel No 5.2 Local Low None None Unchanged None High None 7,8
CVE-2021-29989 Oracle Linux firefox No 5.1 Local High None Required Changed None None None 7
CVE-2021-29989 Oracle Linux firefox Yes 5.1 Network Low None None Unchanged None None High 8
CVE-2021-33909 Oracle Linux Unbreakable Enterprise kernel No 5.0 Local High Low None Unchanged High High High 7,8
CVE-2021-29985 Oracle Linux firefox No 4.8 Local High None Required Changed None None None 8
CVE-2021-29986 Oracle Linux firefox No 4.8 Local High None Required Changed None None None 7
CVE-2020-25670 Oracle Linux Unbreakable Enterprise kernel No 4.7 Local High None Required Unchanged None High None 7
CVE-2020-25671 Oracle Linux Unbreakable Enterprise kernel No 4.7 Local Low Low None Unchanged High High High 7
CVE-2020-14304 Oracle Linux Unbreakable Enterprise kernel-container No 4.4 Local Low None None Unchanged Low None None 7,8
CVE-2020-24586 Oracle Linux Unbreakable Enterprise kernel-container No 4.4 Local High None None Unchanged Low None None 7,8
CVE-2020-24587 Oracle Linux Unbreakable Enterprise kernel-container No 4.4 Local Low None None Unchanged None Low None 7,8
CVE-2021-33909 Oracle Linux Unbreakable Enterprise kernel-container No 4.3 Local High Low None Unchanged None None High 7,8
CVE-2021-3429 Oracle Linux cloud-init Yes 4.3 Network High None None Unchanged High High High 8
CVE-2021-31291 Oracle Linux compat-exiv2-026 Yes 4.3 Network High None None Unchanged High High High 8
CVE-2020-11668 Oracle Linux kernel No 4.3 Local Low None None Unchanged None High High 7
CVE-2021-32399 Oracle Linux kernel No 4.3 Local Low Low None Unchanged High High High 8
CVE-2021-33033 Oracle Linux kernel No 4.3 Local High Low None Unchanged High High High 7
CVE-2021-33034 Oracle Linux kernel No 4.3 Local High Low None Unchanged High High High 7
CVE-2021-29986 Oracle Linux firefox No 3.8 Local High None Required Changed None None None 8
CVE-2021-30547 Oracle Linux thunderbird No 3.2 Local High High None Changed Low Low Low 7
CVE-2020-14304 Oracle Linux Unbreakable Enterprise kernel No 3.2 Local Low Low None Unchanged None None None 7
CVE-2020-24586 Oracle Linux Unbreakable Enterprise kernel Yes 3.2 Network Low None None Unchanged None None High 7,8
CVE-2020-24587 Oracle Linux Unbreakable Enterprise kernel No 3.2 Local Low None None Unchanged None High None 7,8
CVE-2020-25672 Oracle Linux Unbreakable Enterprise kernel No 3.2 Local High Low None Unchanged High High High 7
CVE-2020-26141 Oracle Linux Unbreakable Enterprise kernel No 3.2 Local High Low None Unchanged High High High 7,8
CVE-2020-26145 Oracle Linux Unbreakable Enterprise kernel No 3.2 Local High Low None Unchanged High High High 7,8
CVE-2021-3653 Oracle Linux Unbreakable Enterprise kernel-container No 3.1 Local High None Required Changed None None None 7,8
CVE-2021-3656 Oracle Linux Unbreakable Enterprise kernel-container No 3.1 Local High None Required Changed None None None 7,8
CVE-2021-2369 Oracle Linux java-11-openjdk Yes 3.1 Network High None Required Unchanged High High High 7
CVE-2021-2388 Oracle Linux java-11-openjdk No 3.1 Local High Low None Unchanged High High High 8
CVE-2021-2388 Oracle Linux java-11-openjdk No 3.1 Local Low Low None Unchanged None High High 7
CVE-2019-20934 Oracle Linux kernel No 3.1 Local High Low None Unchanged High High High 7
CVE-2021-23134 Oracle Linux Unbreakable Enterprise kernel-container No 2.8 Local High Low None Unchanged High High High 7,8
CVE-2021-33909 Oracle Linux Unbreakable Enterprise kernel-container No 2.8 Local High Low None Unchanged High High High 7,8
CVE-2021-27218 Oracle Linux glib2 Yes 2.8 Network Low None None Unchanged None None High 8
CVE-2021-27918 Oracle Linux go-toolset:ol8 Yes 2.8 Network High None None Unchanged None None High 8
CVE-2021-34558 Oracle Linux go-toolset:ol8 Yes 2.5 Network Low None Required Unchanged None Low None 8
CVE-2021-29989 Oracle Linux thunderbird Yes 2.5 Network High None None Unchanged High High High 7
CVE-2021-31291 Oracle Linux exiv2 Undefined 7

Revision 1: Published on 2021-07-20

CVE# Product Component Remote Exploit without Auth.? CVSS VERSION 3.1 RISK (see Risk Matrix Definitions) Supported Versions Affected
Base
Score
Attack
Vector
Attack
Complex
Privs
Req'd
User
Interact
Scope Confid-
entiality
Inte-
grity
Avail-
ability
CVE-2020-14343 Oracle Linux python38:3.8 and python38-devel:3.8 Yes 9.8 Network Low None None Unchanged High High High 8
CVE-2021-30547 Oracle Linux firefox Yes 8.8 Network Low None Required Unchanged High High High 7,8
CVE-2021-3570 Oracle Linux linuxptp No 8.8 Network Low Low None Unchanged High High High 7,8
CVE-2020-24489 Oracle Linux microcode_ctl No 8.8 Local Low Low None Changed High High High 8
CVE-2021-3517 Oracle Linux libxml2 Yes 8.6 Network Low None None Unchanged Low Low High 8
CVE-2021-3518 Oracle Linux libxml2 Yes 8.6 Network Low None None Unchanged Low Low High 8
CVE-2021-3520 Oracle Linux lz4 Yes 8.6 Network Low None None Unchanged Low Low High 8
CVE-2019-16255 Oracle Linux ruby:2.5 Yes 8.1 Network High None None Unchanged High High High 8
CVE-2019-16255 Oracle Linux ruby:2.6 Yes 8.1 Network High None None Unchanged High High High 8
CVE-2019-2308 Oracle Linux Unbreakable Enterprise kernel-container No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2020-25670 Oracle Linux Unbreakable Enterprise kernel-container No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2021-33034 Oracle Linux Unbreakable Enterprise kernel-container No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2021-33034 Oracle Linux kernel No 7.8 Local Low Low None Unchanged High High High 8
CVE-2021-3516 Oracle Linux libxml2 No 7.8 Local Low None Required Unchanged High High High 8
CVE-2019-2308 Oracle Linux Unbreakable Enterprise kernel No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2020-25670 Oracle Linux Unbreakable Enterprise kernel No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2021-33034 Oracle Linux Unbreakable Enterprise kernel No 7.8 Local Low Low None Unchanged High High High 7,8
CVE-2021-33033 Oracle Linux Unbreakable Enterprise kernel-container No 7.7 Local Low None None Unchanged None High High 7,8
CVE-2021-33033 Oracle Linux Unbreakable Enterprise kernel No 7.7 Local Low None None Unchanged None High High 7,8
CVE-2020-25672 Oracle Linux Unbreakable Enterprise kernel-container Yes 7.5 Network Low None None Unchanged None None High 7,8
CVE-2021-29970 Oracle Linux firefox Yes 7.5 Network High None Required Unchanged High High High 7,8
CVE-2021-29976 Oracle Linux firefox Yes 7.5 Network High None Required Unchanged High High High 7,8
CVE-2021-3537 Oracle Linux libxml2 Yes 7.5 Network Low None None Unchanged None None High 8
CVE-2019-16201 Oracle Linux ruby:2.5 Yes 7.5 Network Low None None Unchanged None None High 8
CVE-2020-25613 Oracle Linux ruby:2.5 Yes 7.5 Network Low None None Unchanged None High None 8
CVE-2021-28965 Oracle Linux ruby:2.5 Yes 7.5 Network Low None None Unchanged None High None 8
CVE-2019-16201 Oracle Linux ruby:2.6 Yes 7.5 Network Low None None Unchanged None None High 8
CVE-2020-25613 Oracle Linux ruby:2.6 Yes 7.5 Network Low None None Unchanged None High None 8
CVE-2021-28965 Oracle Linux ruby:2.6 Yes 7.5 Network Low None None Unchanged None High None 8
CVE-2020-25613 Oracle Linux ruby:2.7 Yes 7.5 Network Low None None Unchanged None High None 8
CVE-2021-28965 Oracle Linux ruby:2.7 Yes 7.5 Network Low None None Unchanged None High None 8
CVE-2020-25672 Oracle Linux Unbreakable Enterprise kernel Yes 7.5 Network Low None None Unchanged None None High 7,8
CVE-2020-10663 Oracle Linux ruby:2.5 Yes 7.3 Network Low None None Unchanged Low Low Low 8
CVE-2020-10663 Oracle Linux ruby:2.6 Yes 7.3 Network Low None None Unchanged Low Low Low 8
CVE-2020-25671 Oracle Linux Unbreakable Enterprise kernel-container No 7.2 Local Low Low None Unchanged None None None 7,8
CVE-2020-25671 Oracle Linux Unbreakable Enterprise kernel No 7.2 Local Low Low None Unchanged None None None 7,8
CVE-2021-23133 Oracle Linux Unbreakable Enterprise kernel-container No 7.0 Local High Low None Unchanged High High High 7,8
CVE-2021-32399 Oracle Linux Unbreakable Enterprise kernel-container No 7.0 Local High Low None Unchanged High High High 7,8
CVE-2019-3881 Oracle Linux ruby:2.6 No 7.0 Local High Low None Unchanged High High High 8
CVE-2021-23133 Oracle Linux Unbreakable Enterprise kernel No 7.0 Local High Low None Unchanged High High High 7,8
CVE-2021-32399 Oracle Linux Unbreakable Enterprise kernel No 7.0 Local High Low None Unchanged High High High 7,8
CVE-2021-28211 Oracle Linux edk2 No 6.7 Local Low High None Unchanged High High High 8
CVE-2021-20271 Oracle Linux rpm No 6.7 Local High Low Required Unchanged High High High 8
CVE-2021-3514 Oracle Linux 389-ds:1.4 No 6.5 Network Low Low None Unchanged None None High 8
CVE-2020-26541 Oracle Linux kernel No 6.5 Local Low High Required Unchanged High High High 8
CVE-2021-3541 Oracle Linux libxml2 No 6.5 Network Low Low None Unchanged None None High 8
CVE-2019-15845 Oracle Linux ruby:2.5 Yes 6.5 Network Low None None Unchanged Low Low None 8
CVE-2019-15845 Oracle Linux ruby:2.6 Yes 6.5 Network Low None None Unchanged Low Low None 8
CVE-2021-31829 Oracle Linux Unbreakable Enterprise kernel-container No 6.2 Local Low None None Unchanged High None None 7,8
CVE-2021-31829 Oracle Linux Unbreakable Enterprise kernel No 6.2 Local Low None None Unchanged High None None 7,8
CVE-2020-24511 Oracle Linux microcode_ctl No 5.6 Local High Low None Changed High None None 8
CVE-2020-24513 Oracle Linux microcode_ctl No 5.6 Local High Low None Changed High None None 8
CVE-2019-16254 Oracle Linux ruby:2.5 Yes 5.3 Network Low None None Unchanged None Low None 8
CVE-2020-10933 Oracle Linux ruby:2.5 Yes 5.3 Network Low None None Unchanged Low None None 8
CVE-2019-16254 Oracle Linux ruby:2.6 Yes 5.3 Network Low None None Unchanged None Low None 8
CVE-2020-10933 Oracle Linux ruby:2.6 Yes 5.3 Network Low None None Unchanged Low None None 8
CVE-2021-29155 Oracle Linux Unbreakable Enterprise kernel-container No 4.4 Local Low High None Unchanged High None None 7,8
CVE-2021-29155 Oracle Linux Unbreakable Enterprise kernel No 4.4 Local Low High None Unchanged High None None 7,8
CVE-2020-27661 Oracle Linux qemu No 3.8 Local Low Low None Changed None None Low 7
CVE-2021-20257 Oracle Linux qemu No 3.2 Local Low High None Changed None None Low 7
CVE-2020-24512 Oracle Linux microcode_ctl No 2.8 Local High Low None Changed Low None None 8