Redhat

Hardened Images

82 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.15%
  • Veröffentlicht 29.06.2026 18:44:24
  • Zuletzt bearbeitet 13.08.2026 21:17:40

A flaw was found in p11-kit. The RPC message attribute parsing functions p11_rpc_message_get_attribute() and p11_rpc_message_get_attribute_array_value() form a mutually-recursive call chain with no recursion depth limit when processing nested CKA_WRA...

  • EPSS 0.11%
  • Veröffentlicht 29.06.2026 08:06:09
  • Zuletzt bearbeitet 08.07.2026 03:37:21

A flaw was found in the libblkid library of util-linux. During nested partition probing, the BSD, Minix, Solaris x86, and UnixWare partition probers cache a raw pointer to a parent partition entry in a dynamically allocated array. When subsequent par...

Exploit
  • EPSS 0.43%
  • Veröffentlicht 23.06.2026 03:37:00
  • Zuletzt bearbeitet 21.08.2026 12:16:28

A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanup of GSSAPI (Generic Security Service Application Programming Interface) indicators when a trailing NULL termination is missing in the auth-indicators...

  • EPSS 0.09%
  • Veröffentlicht 23.06.2026 03:36:25
  • Zuletzt bearbeitet 21.08.2026 12:16:29

A flaw was found in OpenSSH. A local unprivileged attacker on a Linux client host can hijack client-side X11 forwarding connections. This is possible by pre-binding the preferred abstract X socket name when X11 forwarding is enabled and a local UNIX-...

Exploit
  • EPSS 0.29%
  • Veröffentlicht 23.06.2026 03:36:22
  • Zuletzt bearbeitet 21.08.2026 12:16:28

A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group Exchange (DH-GEX) client path. This occurs during FIPS (Federal Information Processing Standards) mode known-group validation when...

  • EPSS 0.45%
  • Veröffentlicht 19.06.2026 16:28:33
  • Zuletzt bearbeitet 18.08.2026 09:17:16

A remote code execution vulnerability was found in libaom, the reference AV1 codec implementation. Insufficient bounds validation in the AV1 encoder's SVC (Scalable Video Coding) layer ID control allows an attacker to supply crafted video frame pixel...

  • EPSS 0.29%
  • Veröffentlicht 19.06.2026 16:28:33
  • Zuletzt bearbeitet 18.08.2026 09:17:15

A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Video Coding) layer ID control function allows setting a spatial_layer_id exceeding the configured numb...

  • EPSS 0.33%
  • Veröffentlicht 19.06.2026 16:28:26
  • Zuletzt bearbeitet 18.08.2026 09:17:15

An arbitrary address write vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Video Coding) layer ID control function allows an attacker to inject an arbitrary pointer into the cycli...

  • EPSS 0.35%
  • Veröffentlicht 19.06.2026 16:28:26
  • Zuletzt bearbeitet 18.08.2026 12:19:26

A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder's Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_fram...

  • EPSS 0.22%
  • Veröffentlicht 17.06.2026 15:34:00
  • Zuletzt bearbeitet 04.08.2026 22:17:13

A flaw was found in Katello's of Red Hat Satellite. A content upload functionality where insufficient authorization checks in the ContentUploadsController allowed users with the edit_products permission to query content information for repositories o...