Vulnerabilities in RED HAT

2,153 results
Vexday analysis

Red Hat apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes sob exploração ativa no momento. A vulnerabilidade identificada relaciona-se a deficiências em armazenamento de credenciais (CWE-522), mas não figura entre as críticas e permanece sem atividade recente de ataque.

CVE-2026-19816HIGHPackageKit: dnf5 backend ignores SIMULATE on RepoRemoveEPSS 0.1%CVE-2026-15779MEDIUMSamba-winbind: samba: pam_winbind mkhomedir chowns critical system paths without validationEPSS 0.1%CVE-2026-26104MEDIUMUdisks: missing authorization check allows unprivileged users to back up luks headers via udisks d-bus apiEPSS 0.1%CVE-2026-76925MEDIUMFlatpak: flatpak: toctou race condition allows symlink redirectionEPSS 0.1%CVE-2025-11568MEDIUMLuksmeta: data corruption when handling luks1 partitions with luksmetaEPSS 0.1%CVE-2025-53861LOWAap: sensitive cookie(s) set without security flagsEPSS 0.1%CVE-2026-91203MEDIUMCockpit-files: cockpit-files: arbitrary file ownership and permission modification via symlink race conditionEPSS 0.1%CVE-2023-5342MEDIUMShim: expired secure boot certificateEPSS 0.1%CVE-2026-15811MEDIUMKronosnet: kronosnet: encryption key exposure in memory after cryptographic configuration changesEPSS 0.1%CVE-2026-18477MEDIUMTar: tar: toctou in incremental dumpdir 'x' rename handling allows restore path escapeEPSS 0.1%CVE-2026-16517LOWLibarchive: libarchive: signed integer overflow in archive_write_zip_headerEPSS 0.1%CVE-2026-102473MEDIUMDash: dash: super-polynomial backtracking in pmatch when libc fnmatch is disabledEPSS —CVE-2026-102623MEDIUMKubevirt: kubevirt: virt-controller nil-pointer dereference via malformed ephemeral volumeEPSS —CVE-2026-102555HIGHLibsoup: libsoup: heap buffer overflow via uninitialized length in data-uri base64 decodingEPSS —CVE-2026-101292HIGHArtemis-core-client: unsafe reflection in apache activemq artemis federation message deserializationEPSS —CVE-2026-102560HIGHLibsoup: libsoup: heap buffer overflow during outgoing permessage-deflate buffer growthEPSS —CVE-2026-102558HIGHLibsoup: libsoup: heap buffer overflow during websocket receive-buffer growthEPSS —CVE-2026-97023HIGHFlatpak: flatpak: arbitrary file deletion in root context via path traversal in deploy directory export/binEPSS —CVE-2026-97024HIGHFlatpak: flatpak: arbitrary write in root context via path traversal in deploy directory files/etcEPSS —CVE-2026-96740MEDIUMStreamshub/console: console-operator: streams for apache kafka console: unfiltered kafka client properties → sa-token exfiltration via config.providersEPSS —