Redhat

Hardened Images

82 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.11%
  • Veröffentlicht 14.08.2026 05:59:29
  • Zuletzt bearbeitet 14.08.2026 19:07:46

A flaw was found in libdm. A local attacker could craft a malicious Logical Volume Manager (LVM) metadata configuration with deeply nested structures. This could lead to uncontrolled recursion in the libdm configuration file parser, exhausting the st...

  • EPSS 0.11%
  • Veröffentlicht 13.08.2026 18:17:25
  • Zuletzt bearbeitet 14.08.2026 19:07:46

The 'podman quadlet install --replace' command opens the existing destination file with O_CREATE|O_WRONLY but omits O_TRUNC. When the initial reflink copy attempt fails (common on non-reflink-capable filesystems including many RHEL default XFS config...

  • EPSS 0.11%
  • Veröffentlicht 11.08.2026 08:39:24
  • Zuletzt bearbeitet 20.08.2026 21:17:08

`openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged context. In the documented `kbrequest`/init usage, the ownership test in `authenticate_user()` relies on `stat("/proc/<pid>/fd/0")...

  • EPSS 0.26%
  • Veröffentlicht 07.08.2026 10:33:33
  • Zuletzt bearbeitet 20.08.2026 22:17:07

A flaw was found in dracut. The die() error-handling function writes its message into a shell script under the initramfs emergency-hook directory without properly shell-quoting it. When the message contains data derived from the DHCP ROOT_PATH option...

  • EPSS 0.11%
  • Veröffentlicht 07.08.2026 08:19:08
  • Zuletzt bearbeitet 14.08.2026 19:07:46

A flaw was found in p11-kit. A local attacker, or one with equivalent access to a reachable RPC channel, could exploit an integer overflow vulnerability. By sending specially crafted messages, the attacker can cause the system to miscalculate memory ...

  • EPSS 0.08%
  • Veröffentlicht 07.08.2026 07:21:55
  • Zuletzt bearbeitet 14.08.2026 19:07:46

A TOCTOU (Time-of-Check-Time-of-Use) race condition vulnerability was found in the fixfiles script in policycoreutils. When running fixfiles relabel or fixfiles restore, the script used find and chcon commands to locate and relabel unlabeled files un...

  • EPSS 0.08%
  • Veröffentlicht 05.08.2026 21:16:57
  • Zuletzt bearbeitet 06.08.2026 15:37:22

An integer underflow was found in the popt library when formatting help text for option tables that exceed the terminal width. A local user who can cause an application to print help under those conditions may cause that application to crash or fail ...

Exploit
  • EPSS 0.13%
  • Veröffentlicht 05.08.2026 12:42:10
  • Zuletzt bearbeitet 19.08.2026 21:17:36

A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-t...

  • EPSS 0.13%
  • Veröffentlicht 05.08.2026 12:37:17
  • Zuletzt bearbeitet 19.08.2026 21:17:36

Memory Corruption via Uncanceled AIO Requests on Error: libkcapi's one-shot AIO path can return an error before all submitted IOCBs are drained, allowing later kernel writes into caller-owned output buffers.

Exploit
  • EPSS 0.3%
  • Veröffentlicht 05.08.2026 12:16:52
  • Zuletzt bearbeitet 19.08.2026 21:17:35

A flaw was found in libkcapi. When performing one-shot symmetric cipher operations on large inputs (over 64 KiB) in stateful modes such as Counter (CTR) or Cipher Block Chaining (CBC), the library improperly reuses the Initialization Vector (IV) for ...