Vulnerabilities in RED HAT
2,146 resultsVexday analysis
Red Hat apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes sob exploração ativa no momento. A vulnerabilidade identificada relaciona-se a deficiências em armazenamento de credenciais (CWE-522), mas não figura entre as críticas e permanece sem atividade recente de ataque.
CVE-2026-0965LOWLibssh: libssh: denial of service via improper configuration file handlingEPSS 0.2%CVE-2026-1766MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: denial of service and information disclosure via malformed mp3 files.EPSS 0.2%CVE-2026-1485LOWGlib: glib: local denial of service via buffer underflow in content type parsingEPSS 0.2%CVE-2025-57853MEDIUMWeb-terminal: privilege escalation via excessive /etc/passwd permissionsEPSS 0.2%CVE-2026-70495HIGHSearch-v2-operator: search-v2-operator: cluster-wide impersonate on users/groups shared across 4 pods grants hub system:mastersEPSS 0.2%CVE-2026-52902MEDIUMAwxkit: path traversal via yaml !include directiveEPSS 0.2%CVE-2026-12892MEDIUMGstreamer1-plugins-bad-free: gstreamer1-plugins-bad: 1-byte heap out-of-bounds read in h.264 nal extension slice parserEPSS 0.2%CVE-2025-57852MEDIUMOpenshift-ai: privilege escalation via excessive /etc/passwd permissionsEPSS 0.2%CVE-2024-9620MEDIUMEvent-driven automation in ansible automation platform (aap): ansible event-driven automation (eda) lacks encryptionEPSS 0.2%CVE-2026-12505HIGHCifs-utils: local privilege escalation via forged cifs.spnego key description in cifs.upcallEPSS 0.2%CVE-2026-90996MEDIUMSssd: sssd: denial of service in nss responder via crafted zero-length requestsEPSS 0.2%CVE-2026-71474HIGHInsights-client-rhel9: insights-client: pull-secret bearer token written to logs on non-200 ccx responseEPSS 0.2%CVE-2026-2376MEDIUMMirror-registry: quay: quay: server-side request forgery via open redirect vulnerability in web interfaceEPSS 0.2%CVE-2026-78410HIGHUtil-linux: util-linux: restricted bind mounts do not pin the source, allowing x-mount.owner/group/mode redirectionEPSS 0.2%CVE-2026-90995MEDIUMSssd: sssd: local denial of service due to null pointer dereference in pam responderEPSS 0.2%CVE-2026-5165MEDIUMVirtio-win: virtio-win: memory corruption via use-after-free in virtio blk device resetEPSS 0.2%CVE-2026-93433MEDIUMLibstoragemgmt: libstoragemgmt: denial of service via stack buffer overflow in scsi vpd page parsingEPSS 0.2%CVE-2026-19548MEDIUMBinutils: binutils: multiple use-after-free in add_archive_element via lto plugin processingEPSS 0.2%CVE-2026-92615MEDIUMFlightctl: flightctl: package-global go-git https transport mutated per-repo -- cross-tenant tls-config bleedEPSS 0.2%CVE-2026-0665MEDIUMQemu-kvm: heap off-by-one in kvm xen physdevop_map_pirqEPSS 0.2%