Back Issues This Week → Calendar → Current Issue → Popular →

All issuesVolume 315, Issue 3IT Vendor NewsRed Hat

Reducing The Significant Risk Of Known Exploitable Vulnerabilities In Red Hat Software

Red Hat News, Monday, June 17th, 2024

In a previous Red Hat article, VP of Red Hat Product Security, Vincent Danen, discussed the question "Do all vulnerabilities really matter?" He emphasized that "a software vulnerability has the potential to be exploited by miscreants to harm its user."

The key word here is "potential". If the potential for exploitation is high, or if an exploit for a vulnerability is already in use in the wild, then these vulnerabilities pose a greater risk and must be prioritized and addressed promptly.

Red Hat uses CISA as a source for known exploited vulnerabilities

The Cybersecurity and Infrastructure Security Agency (CISA) leads the US national effort to understand, manage, and reduce risk to their cyber and physical infrastructure. CISA maintains a Known Exploited Vulnerabilities (KEV) catalog, otherwise known as the CISA catalog.

more →  ·  More from Red Hat →