Redhat

Hardened Images

114 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Veröffentlicht 05.08.2026 12:37:17
  • Zuletzt bearbeitet 21.09.2026 13:17:10

Memory Corruption via Uncanceled AIO Requests on Error: libkcapi's one-shot AIO path can return an error before all submitted IOCBs are drained, allowing later kernel writes into caller-owned output buffers.

Exploit
  • EPSS 0.3%
  • Veröffentlicht 05.08.2026 12:16:52
  • Zuletzt bearbeitet 21.09.2026 13:17:09

A flaw was found in libkcapi. When performing one-shot symmetric cipher operations on large inputs (over 64 KiB) in stateful modes such as Counter (CTR) or Cipher Block Chaining (CBC), the library improperly reuses the Initialization Vector (IV) for ...

  • EPSS 0.11%
  • Veröffentlicht 04.08.2026 05:32:50
  • Zuletzt bearbeitet 31.08.2026 18:17:14

A flaw was found in popt, a command-line option parsing library. An off-by-one error in the poptStuffArgs function, when repeatedly called by a host application or through deep alias nesting, can lead to corruption of internal program data. This corr...

  • EPSS 0.1%
  • Veröffentlicht 03.08.2026 15:34:36
  • Zuletzt bearbeitet 22.09.2026 22:17:11

A TOCTOU (Time-of-Check Time-of-Use) vulnerability in GNU tar's incremental dumpdir 'X' rename handling allows a local attacker with write access to a directory being backed up to influence the restore process if the attacker has access to the system...

  • EPSS 0.14%
  • Veröffentlicht 03.08.2026 14:51:41
  • Zuletzt bearbeitet 22.09.2026 22:17:11

A flaw was found in GNU tar. When extracting an archive with the --one-top-level option, hardlink targets are not confined to the designated top-level directory and may resolve relative to the extraction working directory. A crafted archive can creat...

  • EPSS 0.11%
  • Veröffentlicht 24.07.2026 11:26:18
  • Zuletzt bearbeitet 10.09.2026 18:17:56

A flaw was found in dbus-broker. When the process file-descriptor limit is reached, EMFILE/ENFILE errors during peer setup (notably SO_PEERPIDFD) are handled as fatal failures, causing the broker to exit. A local attacker who can open many connection...

  • EPSS -
  • Veröffentlicht 22.07.2026 15:55:58
  • Zuletzt bearbeitet 23.07.2026 11:16:39

Rejected reason: The reported issue is invalid, as it requires root privileges to reproduce, and it is out of scope of the threat model of the affected component.

  • EPSS 0.08%
  • Veröffentlicht 21.07.2026 23:17:00
  • Zuletzt bearbeitet 22.09.2026 00:16:31

A signed integer overflow vulnerability was found in libarchive's ZIP writer. In the archive_write_zip_header function in archive_write_set_format_zip.c, when ZIP encryption is enabled and the entry file size is close to INT64_MAX, the addition of th...

  • EPSS 0.29%
  • Veröffentlicht 21.07.2026 14:20:47
  • Zuletzt bearbeitet 17.08.2026 22:17:15

A flaw was found in libssh. On servers with GSSAPIKeyExchange enabled, the gssapi-keyex path does not verify whether the authenticated Kerberos principal is authorized for the requested local user, allowing authenticated clients to log in as arbitrar...

  • EPSS 0.32%
  • Veröffentlicht 21.07.2026 14:15:58
  • Zuletzt bearbeitet 01.09.2026 21:18:35

A flaw was found in libssh. If data packets are processed after a channel is closed, channel data callbacks can be invoked after the associated data has already been freed, leading to crashes or possible use-after-free conditions.