Vulnerabilities in RED HAT
2,153 resultsVexday analysis
Red Hat apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes sob exploração ativa no momento. A vulnerabilidade identificada relaciona-se a deficiências em armazenamento de credenciais (CWE-522), mas não figura entre as críticas e permanece sem atividade recente de ataque.
CVE-2026-96284LOWFlatpak: flatpak: arbitrary read-access to files in the system-helper context via oci symlink followingEPSS 0.1%CVE-2026-3196MEDIUMQemu-kvm: virtio-snd: integer overflow leading to unbounded memory allocationEPSS 0.1%CVE-2026-71224MEDIUMGfs2-utils: gfs2-utils: stack overflow via alloca(i_height) in metadata walkEPSS 0.1%CVE-2026-92747MEDIUMCockpit-machines: cockpit-machines: sensitive data exposure of guest credentials via json argument in process listEPSS 0.1%CVE-2026-73585MEDIUMSblim-cmpi-base: insecure temporary file creation in sblim-cmpi-base provider registration scripts allows local symlink attackEPSS 0.1%CVE-2025-54771MEDIUMGrub2: use-after-free in grub_file_close()EPSS 0.1%CVE-2025-14876MEDIUMQemu-kvm: unbounded allocation in virtio-cryptoEPSS 0.1%CVE-2026-84828MEDIUMPcs: pcs: non-root haclient users can read arbitrary files via pcs host auth --tokenEPSS 0.1%CVE-2026-86469MEDIUMGlib2: toctou symlink race in `g_file_create_replace_destination` fallback pathEPSS 0.1%CVE-2026-4878MEDIUMLibcap: libcap: privilege escalation via toctou race condition in cap_set_file()EPSS 0.1%CVE-2026-18508MEDIUMTar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwriteEPSS 0.1%CVE-2026-86564LOWDpdk: dpdk: missing length validation before reading command_data in virtio-net control queue handlerEPSS 0.1%CVE-2026-18743LOWPopt-devel: popt-static: short realloc in poptconfigfiletostringEPSS 0.1%CVE-2026-16743MEDIUMAccountsservice: accountsservice: arbitrary file read via seticonfile for systemd-homed usersEPSS 0.1%CVE-2025-61664MEDIUMGrub2: missing unregister call for normal_exit command may lead to use-after-freeEPSS 0.1%CVE-2026-18739LOWPopt-devel: popt-static: off-by-one in poptstuffargsEPSS 0.1%CVE-2025-12390MEDIUMOrg.keycloak.protocol.oidc.endpoints.logoutendpoint: offline session takeover due to reused authentication session idEPSS 0.1%CVE-2026-59845MEDIUMLibssh: libssh: denial of service via unchecked proxycommand fork() failureEPSS 0.1%CVE-2026-71222MEDIUMGfs2-utils: gfs2-utils: heap out-of-bounds read via unchecked ea_num_ptrs in extended attribute processingEPSS 0.1%CVE-2026-19617MEDIUMLibdm: lvm2: libdm: denial of service via uncontrolled recursion in config parserEPSS 0.1%