Vulnerabilidades em Red Hat

2.126 resultados
Análise Vexday

Com 1.477 CVEs catalogadas e 232 surgidas apenas nos últimos 90 dias, o volume de vulnerabilidades associadas ao Red Hat exige monitoramento contínuo. A taxa de exploração ativa está abaixo da média geral do catálogo, com apenas 1 CVE confirmada no CISA KEV — a CVE-2023-4911, que apresenta EPSS de 0,7861, indicando probabilidade elevada de exploração e merecendo atenção prioritária de equipes de resposta. Das 34 vulnerabilidades de severidade crítica, 18 contam com prova de conceito pública disponível, o que reduz a barreira técnica para exploração e aumenta o risco operacional. O tipo de falha mais recorrente é CWE-125 (leitura fora dos limites), padrão que frequentemente viabiliza vazamento de dados ou corrupção de memória e deve orientar revisões de hardening e priorização de patches.

CVE-2023-3397HIGHKernel: slab-use-after-free write in txend due to race conditionEPSS 0.2%CVE-2026-90462MEDIUMSssd: sssd: fail-open in ldap ppolicy access check allows continued authorizationEPSS 0.2%CVE-2026-50256HIGHXorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfont2 name length mismatchEPSS 0.2%CVE-2026-71464LOWAutomation-controller: automation-controller-container: automation-controller: schedule and workflowjobtemplatenode scm_branch prompt bypasses leading-dash git-argument guardEPSS 0.2%CVE-2026-71461MEDIUMAutomation-controller: automation-controller-container: automation-controller: verbose internal exception disclosure via hostlist bare-exception handlerEPSS 0.2%CVE-2026-71465LOWAutomation-controller: automation-controller-container: automation-controller: ad-hoc command limit field allows cli argument injection into ansible executableEPSS 0.2%CVE-2026-53682MEDIUMPki-core: dogtag-pki: unauthenticated dogtag ca rest api exposes security domain hostsEPSS 0.2%CVE-2026-1764MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leads to denial of service or information disclosure when parsing mp3 filesEPSS 0.2%CVE-2026-9073MEDIUMForeman-mcp-server: mcp server: insecure sensitive http header sanitizationEPSS 0.2%CVE-2019-10157MEDIUMIt was found that Keycloak's Node.js adapter before version 4.8.3 did not properly verify the web token received from the server in its backEPSS 0.2%CVE-2025-12748MEDIUMLibvirt: denial of service in xml parsingEPSS 0.2%CVE-2025-57849MEDIUMFuse: privilege escalation via excessive /etc/passwd permissionsEPSS 0.2%CVE-2023-26590MEDIUMFloating point exception in src/aiff.cEPSS 0.2%CVE-2024-3716MEDIUMForeman-installer: candlepin database password being leaked to local users via the process listEPSS 0.2%CVE-2026-35093HIGHLibinput: libinput: unauthorized code execution and information disclosure through lua bytecode pluginsEPSS 0.2%CVE-2026-18726MEDIUMOpen-iscsi: open-iscsi: denial of service in iscsiuio router advertisement parsingEPSS 0.2%CVE-2024-9979MEDIUMPyo3: risk of use-after-free in `borrowed` reads from python weak referencesEPSS 0.2%CVE-2026-1757MEDIUMLibxml2: memory leak leading to local denial of service in xmllint interactive shellEPSS 0.2%CVE-2025-58712MEDIUMAmq: privilege escalation via excessive /etc/passwd permissionsEPSS 0.2%CVE-2026-88840MEDIUMBusybox: busybox: tls ssl_server reads one byte out of bounds when parsing truncated clienthelloEPSS 0.2%