Redhat

Enterprise Linux

1952 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 05.06.2026 10:31:39
  • Zuletzt bearbeitet 05.08.2026 13:23:30

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers sized XkbMaxShiftLevel * XkbNumKbdGroups but CheckKeyTypes() does not verify or clamp non-canonical key types to XkbMaxShiftLevel...

  • EPSS 0.17%
  • Veröffentlicht 05.06.2026 10:31:39
  • Zuletzt bearbeitet 05.08.2026 13:23:31

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. _XkbSetMapChecks() declares a fixed-size stack buffer mapWidths[256] indexed by key type index. The helper function CheckKeyTypes() writes to this buffer at a client-con...

  • EPSS 0.16%
  • Veröffentlicht 05.06.2026 10:31:22
  • Zuletzt bearbeitet 05.08.2026 13:23:28

A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. A mismatch between the X server and the libXfont2 library's maximum font name length can cause a stack buffer overflow during font alias resolution. The server allocates...

  • EPSS 0.14%
  • Veröffentlicht 05.06.2026 10:31:22
  • Zuletzt bearbeitet 05.08.2026 13:23:29

A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multiple fence triggers can trigger a use-after-free function pointer call. An attacker would connect to the X server to set up a fence ...

  • EPSS 2.5%
  • Veröffentlicht 28.05.2026 07:25:27
  • Zuletzt bearbeitet 08.10.2026 21:18:01

A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the client...

  • EPSS 0.86%
  • Veröffentlicht 27.05.2026 12:28:44
  • Zuletzt bearbeitet 08.10.2026 21:17:57

A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to missing SMB-layer access checks, authenticated users with underlying filesystem write permissions may create or delete reparse point m...

  • EPSS 0.94%
  • Veröffentlicht 27.05.2026 12:09:32
  • Zuletzt bearbeitet 09.10.2026 00:17:08

A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read-many (WORM) protections by preventing modification of files after a configurable grace period. Due to insufficient validation during rename operations, an...

  • EPSS 0.26%
  • Veröffentlicht 27.05.2026 10:02:21
  • Zuletzt bearbeitet 08.10.2026 21:17:59

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without prop...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 26.05.2026 16:16:07
  • Zuletzt bearbeitet 09.10.2026 00:17:09

A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` file, which, ...

Medienbericht
  • EPSS 13.93%
  • Veröffentlicht 26.05.2026 13:56:32
  • Zuletzt bearbeitet 01.09.2026 12:17:42

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remot...