Redhat

Enterprise Linux

1952 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.37%
  • Veröffentlicht 06.04.2026 15:17:27
  • Zuletzt bearbeitet 22.09.2026 22:17:11

A flaw was found in tar. A remote attacker could exploit this vulnerability by crafting a malicious archive, leading to hidden file injection with fully attacker-controlled content. This bypasses pre-extraction inspection mechanisms, potentially allo...

Exploit
  • EPSS 0.18%
  • Veröffentlicht 06.04.2026 09:22:36
  • Zuletzt bearbeitet 01.05.2026 19:53:02

A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AVI (Audio Video Interleave) parser, specifically in the avi_parse_input_file() function. A local attacker could exploit this by tricking a user into op...

  • EPSS 0.09%
  • Veröffentlicht 03.04.2026 18:38:09
  • Zuletzt bearbeitet 24.07.2026 22:10:00

A flaw was found in rust-rpm-sequoia. An attacker can exploit this vulnerability by providing a specially crafted Red Hat Package Manager (RPM) file. During the RPM signature verification process, this crafted file can trigger an error in the OpenPGP...

Exploit
  • EPSS 0.99%
  • Veröffentlicht 01.04.2026 13:18:55
  • Zuletzt bearbeitet 21.08.2026 13:17:37

A flaw was found in Corosync. An integer overflow vulnerability in Corosync's join message sanity validation allows a remote, unauthenticated attacker to send crafted User Datagram Protocol (UDP) packets. This can cause the service to crash, leading ...

Exploit
  • EPSS 0.87%
  • Veröffentlicht 01.04.2026 13:18:53
  • Zuletzt bearbeitet 21.08.2026 13:17:36

A flaw was found in Corosync. A remote unauthenticated attacker can exploit a wrong return value vulnerability in the Corosync membership commit token sanity check by sending a specially crafted User Datagram Protocol (UDP) packet. This can lead to a...

  • EPSS 1.07%
  • Veröffentlicht 31.03.2026 08:32:58
  • Zuletzt bearbeitet 15.07.2026 01:16:40

A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the JPEG image loader due to improper validation of color component counts when processing a specially crafted JPEG image. A remote attacker can explo...

Medienbericht
  • EPSS 25.04%
  • Veröffentlicht 30.03.2026 19:07:28
  • Zuletzt bearbeitet 19.08.2026 14:32:04

A flaw in Node.js HTTP request handling causes an uncaught `TypeError` when a request is received with a header named `__proto__` and the application accesses `req.headersDistinct`. When this occurs, `dest["__proto__"]` resolves to `Object.prototy...

  • EPSS 0.11%
  • Veröffentlicht 30.03.2026 15:16:36
  • Zuletzt bearbeitet 28.04.2026 14:22:23

A flaw was found in virtio-win. The `RhelDoUnMap()` function does not properly validate the number of descriptors provided by a user during an unmap request. A local user could exploit this input validation vulnerability by supplying an excessive num...

  • EPSS 0.11%
  • Veröffentlicht 30.03.2026 15:16:36
  • Zuletzt bearbeitet 28.04.2026 14:17:41

A flaw was found in virtio-win, specifically within the VirtIO Block (BLK) device. When the device undergoes a reset, it fails to properly manage memory, resulting in a use-after-free vulnerability. This issue could allow a local attacker to corrupt ...

Medienbericht
  • EPSS 1.07%
  • Veröffentlicht 30.03.2026 08:16:18
  • Zuletzt bearbeitet 29.09.2026 01:16:55

A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image, which can lead to a heap buff...