Vulnerabilidades em RED HAT

2.141 resultados
Análise Vexday

Red Hat apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes sob exploração ativa no momento. A vulnerabilidade identificada relaciona-se a deficiências em armazenamento de credenciais (CWE-522), mas não figura entre as críticas e permanece sem atividade recente de ataque.

CVE-2026-71462MEDIUMAutomation-controller: automation-controller-container: automation-controller: custom_venv_path setting provides filesystem path-existence oracle on control podEPSS 0.3%CVE-2026-16443HIGHKeycloak-services: keycloak-services: saml broker metadata import disables response signature validationEPSS 0.3%CVE-2020-10744MEDIUMAn incomplete fix was found for the fix of the flaw CVE-2020-1733 ansible: insecure temporary directory when running become_user from becomeEPSS 0.3%CVE-2025-5988MEDIUMAap-gateway: csrf origin checking is disabledEPSS 0.3%CVE-2024-0562HIGHKernel: use-after-free after removing device in wb_inode_writeback_end in mm/page-writeback.cEPSS 0.3%CVE-2019-19351HIGHAn insecure modification vulnerability in the /etc/passwd file was found in the container openshift/jenkins. An attacker with access to the EPSS 0.3%CVE-2025-0577MEDIUMGlibc: vdso getrandom acceleration may return predictable randomnessEPSS 0.3%CVE-2026-16615MEDIUMLibrest: weak random number generation in pkce implementationEPSS 0.3%CVE-2023-4641MEDIUMShadow-utils: possible password leak during passwd(1) changeEPSS 0.3%CVE-2026-12548MEDIUMLibsoup: heap out-of-bounds read in libsoup due to integer truncationEPSS 0.3%CVE-2024-2496MEDIUMLibvirt: null pointer dereference in udevconnectlistallinterfaces()EPSS 0.3%CVE-2026-75886HIGHOpenshift/console: openshift/console: unauthenticated reverse proxy to in-cluster catalogd service with session token forwardingEPSS 0.3%CVE-2023-4132MEDIUMKernel: smsusb: use-after-free caused by do_submit_urb()EPSS 0.3%CVE-2023-4389HIGHKernel: btrfs: double free in btrfs_get_root_ref()EPSS 0.3%CVE-2026-10118HIGHPoppler: integer overflow in poppler splashoutputdev::tilingpatternfill leads to heap buffer overflow via unchecked dimension multiplicationEPSS 0.3%CVE-2023-4237HIGHPlatform: ec2_key module prints out the private key directly to the standard outputEPSS 0.3%CVE-2026-6383MEDIUMKubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluationEPSS 0.3%CVE-2026-18393MEDIUMFfmpeg: ffmpeg: heap buffer overflow in tdsc_load_cursor() via cur_fmt_mono cursorEPSS 0.3%CVE-2023-6176MEDIUMKernel: local dos vulnerability in scatterwalk_copychunksEPSS 0.3%CVE-2026-18569LOWKeycloak-services: keycloak-services: oidc backchannel logout accepts unsigned forged logout tokensEPSS 0.3%