- EPSS 0.14%
- Veröffentlicht 24.08.2026 13:48:52
- Zuletzt bearbeitet 04.09.2026 12:17:19
A vulnerability was found in RPM's rpmbuild tarball processing. When processing a crafted source archive, the getTarSpec() function in tools/rpmbuild.cc passes an attacker-controlled tar archive member name to rpmExpand() as part of a %{basename:...}...
CVE-2026-19617
- EPSS 0.11%
- Veröffentlicht 14.08.2026 05:59:29
- Zuletzt bearbeitet 02.10.2026 14:17:10
A flaw was found in libdm. A local attacker could craft a malicious Logical Volume Manager (LVM) metadata configuration with deeply nested structures. This could lead to uncontrolled recursion in the libdm configuration file parser, exhausting the st...
CVE-2026-19730
- EPSS 0.11%
- Veröffentlicht 13.08.2026 18:17:25
- Zuletzt bearbeitet 01.10.2026 18:17:17
The 'podman quadlet install --replace' command opens the existing destination file with O_CREATE|O_WRONLY but omits O_TRUNC. When the initial reflink copy attempt fails (common on non-reflink-capable filesystems including many RHEL default XFS config...
CVE-2026-19548
- EPSS 0.12%
- Veröffentlicht 12.08.2026 15:51:39
- Zuletzt bearbeitet 01.09.2026 13:18:13
Multiple Use-After-Free vulnerabilities were found in the add_archive_element function in ld/ldmain.c of the GNU linker (ld), a component of binutils. The root cause is that plugin_maybe_claim() in ld/plugin.c frees the original BFD object via bfd_cl...
CVE-2026-72693
- EPSS 0.11%
- Veröffentlicht 11.08.2026 08:39:24
- Zuletzt bearbeitet 15.09.2026 12:17:53
`openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged context. In the documented `kbrequest`/init usage, the ownership test in `authenticate_user()` relies on `stat("/proc/<pid>/fd/0")...
CVE-2026-15816
- EPSS 0.26%
- Veröffentlicht 07.08.2026 10:33:33
- Zuletzt bearbeitet 02.10.2026 00:17:01
A flaw was found in dracut. The die() error-handling function writes its message into a shell script under the initramfs emergency-hook directory without properly shell-quoting it. When the message contains data derived from the DHCP ROOT_PATH option...
CVE-2026-18938
- EPSS 0.11%
- Veröffentlicht 07.08.2026 08:19:08
- Zuletzt bearbeitet 14.08.2026 19:07:46
A flaw was found in p11-kit. A local attacker, or one with equivalent access to a reachable RPC channel, could exploit an integer overflow vulnerability. By sending specially crafted messages, the attacker can cause the system to miscalculate memory ...
CVE-2026-19079
- EPSS 0.08%
- Veröffentlicht 07.08.2026 07:21:55
- Zuletzt bearbeitet 01.09.2026 13:18:12
A TOCTOU (Time-of-Check-Time-of-Use) race condition vulnerability was found in the fixfiles script in policycoreutils. When running fixfiles relabel or fixfiles restore, the script used find and chcon commands to locate and relabel unlabeled files un...
CVE-2026-18839
- EPSS 0.08%
- Veröffentlicht 05.08.2026 21:16:57
- Zuletzt bearbeitet 01.09.2026 13:18:12
An integer underflow was found in the popt library when formatting help text for option tables that exceed the terminal width. A local user who can cause an application to print help under those conditions may cause that application to crash or fail ...
CVE-2026-71227
- EPSS 0.13%
- Veröffentlicht 05.08.2026 12:42:10
- Zuletzt bearbeitet 21.09.2026 13:17:10
A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-t...