Vulnerabilities in RED HAT
2,138 resultsVexday analysis
Red Hat apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes sob exploração ativa no momento. A vulnerabilidade identificada relaciona-se a deficiências em armazenamento de credenciais (CWE-522), mas não figura entre as críticas e permanece sem atividade recente de ataque.
CVE-2023-6238MEDIUMKernel: nvme: memory corruption via unprivileged user passthroughEPSS 0.3%CVE-2025-14525MEDIUMKubevirt: kubevirt: vm administration denial of service via guest agentEPSS 0.3%CVE-2026-58381MEDIUMGimp: gimp: double-free in read_layer_block()EPSS 0.3%CVE-2025-5278MEDIUMCoreutils: heap buffer under-read in gnu coreutils sort via key specificationEPSS 0.3%CVE-2026-18218MEDIUMKeycloak-services: keycloak-services: client not-before revocation ignored when realm not-before is older but nonzeroEPSS 0.3%CVE-2026-16910MEDIUMQuay: ssrf in red hat quay notification webhooks (slack/generic)EPSS 0.3%CVE-2023-0160MEDIUMPossibility of deadlock in libbpf function sock_hash_delete_elemEPSS 0.3%CVE-2024-45770MEDIUMPcp: pmpost symlink attack allows escalating pcp to root userEPSS 0.3%CVE-2023-3355MEDIUMNull pointer dereference in submit_lookup_cmds() in drivers/gpu/drm/msm/msm_gem_submit.cEPSS 0.3%CVE-2024-2700HIGHQuarkus-core: leak of local configuration properties into quarkus applicationsEPSS 0.3%CVE-2025-14243MEDIUMMirror-registry: openshift mirror registry: user enumeration via authentication error messagesEPSS 0.3%CVE-2024-8354MEDIUMQemu-kvm: usb: assertion failure in usb_ep_get()EPSS 0.3%CVE-2026-1531HIGHForeman-kubevirt: foreman_kubevirt: man-in-the-middle due to insecure default ssl verificationEPSS 0.3%CVE-2026-78376HIGHWebkitgtk: use-after-free of jscvalue function parametersEPSS 0.3%CVE-2024-45780MEDIUMGrub2: fs/tar: integer overflow causes heap oob writeEPSS 0.3%CVE-2025-0678HIGHGrub2: squash4: integer overflow may lead to heap based out-of-bounds write when reading dataEPSS 0.3%CVE-2024-1013HIGHUnixodbc: out of bounds stack write due to pointer-to-integer types conversionEPSS 0.3%CVE-2025-6920MEDIUMAi-inference-server: authentication bypass via unprotected inference endpoint in apiEPSS 0.3%CVE-2025-11731LOWLibxslt: type confusion in exsltfuncresultcompfunction of libxsltEPSS 0.3%CVE-2023-4569MEDIUMKernel: information leak in nft_set_catchall_flush in net/netfilter/nf_tables_api.cEPSS 0.3%