<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Oracle Linux</title>
  <link>https://cvedaily.com/pages/tags/oracle-linux.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/oracle-linux.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Oracle Linux</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:11 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2022-21385 – A flaw in net_rds_alloc_sgs() in Oracle Linux kernels allows unprivileged local ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-21385</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-21385</guid>
    <pubDate>Mon, 29 Aug 2022 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-21385</strong></p>
  <p>A flaw in net_rds_alloc_sgs() in Oracle Linux kernels allows unprivileged local users to crash the machine. CVSS 3.1 Base Score 6.2 (Availability impacts). CVSS Vector (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)</p>
  <p><strong>CVSS:</strong> 6.2 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-21385">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-2464 – Vulnerability in Oracle Linux (component: OSwatcher). Supported versions that ar...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-2464</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-2464</guid>
    <pubDate>Fri, 24 Sep 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-2464</strong></p>
  <p>Vulnerability in Oracle Linux (component: OSwatcher). Supported versions that are affected are 7 and 8. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Linux executes to compromise Oracle Linux. Successful attacks of this vulnerability can result in takeover of Oracle Linux. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Avail…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-2464">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-5425 – The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS, Oracle ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-5425</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-5425</guid>
    <pubDate>Thu, 13 Oct 2016 14:59:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-5425</strong></p>
  <p>The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS, Oracle Linux, and possibly other Linux distributions uses weak permissions for /usr/lib/tmpfiles.d/tomcat.conf, which allows local users to gain root privileges by leveraging membership in the tomcat group.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-5425">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2016-0617 – Unspecified vulnerability in the kernel-uek component in Oracle Linux 6 allows l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-0617</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-0617</guid>
    <pubDate>Fri, 30 Sep 2016 14:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2016-0617</strong></p>
  <p>Unspecified vulnerability in the kernel-uek component in Oracle Linux 6 allows local users to affect availability via unknown vectors.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-0617">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2011-2306 – Unspecified vulnerability in Oracle Linux 4 and 5 allows remote authenticated us...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2011-2306</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2011-2306</guid>
    <pubDate>Tue, 18 Oct 2011 22:55:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2011-2306</strong></p>
  <p>Unspecified vulnerability in Oracle Linux 4 and 5 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to "Oracle validated."</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2011-2306">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
