CVEs (1,858)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Redhat Samba3Enterprise Linux Openshift Container PlatformSambaJul 2, 2026 May 27, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read-many (WORM) protections by preventing modification of files after a configurable grace period. Due to insufficient validatio...Show more |
2Redhat Samba3Enterprise Linux Openshift Container PlatformSambaJul 15, 2026 May 27, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to missing SMB-layer access checks, authenticated users with underlying filesystem write permissions may cr...Show more |
2Redhat Samba3Enterprise Linux Openshift Container PlatformSambaJul 15, 2026 May 27, 2026 N/A· v4 6.8 MEDIUM· v3 N/A· v2 A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the...Show more |
2Opensuse Redhat6Enterprise Linux Hardened ImagesLibsolv+3 moreJul 23, 2026 May 26, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially...Show more |
2Redhat Samba3Enterprise Linux Openshift Container PlatformSambaJul 24, 2026 May 26, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping...Show more |
2Opensuse Redhat6Enterprise Linux Hardened ImagesLibsolv+3 moreJul 23, 2026 May 21, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libsolv. This heap buffer overflow vulnerability occurs when a victim processes a specially crafted `.solv` file containing negative size values in the `repo_add_solv` function. This leads to an under...Show more |
2Opensuse Redhat6Enterprise Linux Hardened ImagesLibsolv+3 moreJul 23, 2026 May 20, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libsolv. This stack-based buffer overflow vulnerability occurs in libsolv's Debian metadata parser when processing specially crafted Debian repository metadata. An attacker could exploit this by provi...Show more |
1Redhat 3389 Directory Server Directory ServerEnterprise LinuxJul 23, 2026 May 20, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in 389-ds-base. The get_ldapmessage_controls_ext() function in the LDAP server does not enforce an upper bound on the number of controls per LDAP message. A remote, unauthenticated attacker can send a sp...Show more |
2Gnu Redhat14Enterprise Linux Enterprise Linux For ElsEnterprise Linux For Eus+11 moreJul 23, 2026 May 18, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer Security (DTLS) packet reordering logic. The comparator function, responsible for ordering DTLS packets by sequence num...Show more |
2Gnu Redhat4Enterprise Linux GnutlsHardened Images+1 moreJul 23, 2026 May 7, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A flaw was found in gnutls. Servers configured with RSA-PSK (Rivest–Shamir–Adleman – Pre-Shared Key) wrongfully matched usernames containing a NUL character with truncated usernames. A remote attacker could exploit this...Show more |
2Redhat X.org2Enterprise Linux X ServerJun 17, 2026 May 5, 2026 N/A· v4 9.1 CRITICAL· v3 N/A· v2 A flaw was found in the X.Org X server. This vulnerability, an out-of-bounds read, affects the XKB (X Keyboard Extension) modifier map handling. An attacker with access to the X11 server can exploit this by sending a mal...Show more |
2Redhat X.org2Enterprise Linux X ServerJun 17, 2026 May 5, 2026 N/A· v4 9.1 CRITICAL· v3 N/A· v2 A flaw was found in the X.Org X server. This out-of-bounds read vulnerability in the XKB geometry processing, specifically within the `CheckSetGeom()` and `XkbAddGeomKeyAlias` functions, allows an attacker to read uninit...Show more |
2Gnu Redhat4Enterprise Linux GnutlsHardened Images+1 moreJul 22, 2026 Apr 30, 2026 N/A· v4 7.4 HIGH· v3 N/A· v2 A flaw was found in gnutls. This vulnerability occurs because gnutls performs case-sensitive comparisons of `nameConstraints` labels, specifically for `dNSName` (DNS) or `rfc822Name` (email) constraints within `excludedS...Show more |
2Gnu Redhat4Enterprise Linux GnutlsHardened Images+1 moreJul 13, 2026 Apr 30, 2026 N/A· v4 3.7 LOW· v3 N/A· v2 A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online Certificate Status Protocol (OCSP) response during a TLS handshake. Due to a logic error in how gnut...Show more |
2Gnu Redhat3Enterprise Linux GnutlsOpenshift Container PlatformJul 20, 2026 Apr 30, 2026 N/A· v4 9.1 CRITICAL· v3 N/A· v2 A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero length and non-zero offset, leading to an integer underflow during reassembly and resulting in an out-of-bounds read. This issue is remotely ex...Show more |
3Ibm RedhatXmlsoft7Aix Enterprise LinuxHardened Images+4 moreJun 30, 2026 Apr 23, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in libxml2. This vulnerability occurs when the library processes a specially crafted XML Schema Definition (XSD) validated document that includes an internal entity reference. An attacker could exploit t...Show more |
2Gnome Redhat2Enterprise Linux LibsoupJun 17, 2026 Apr 23, 2026 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A request smuggling vulnerability exists in libsoup's HTTP/1 header parsing logic. The soup_message_headers_append_common() function in libsoup/soup-message-headers.c unconditionally appends each header value without val...Show more |
2Gnu Redhat4Binutils Enterprise LinuxHardened Images+1 moreJul 15, 2026 Apr 22, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker could trick a user int...Show more |
2Gnu Redhat4Binutils Enterprise LinuxHardened Images+1 moreJul 13, 2026 Apr 22, 2026 N/A· v4 5.0 MEDIUM· v3 N/A· v2 A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by tricking a user into processing a specially crafted Executable and...Show more |
2Gnu Redhat4Binutils Enterprise LinuxHardened Images+1 moreJun 17, 2026 Apr 22, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in the `readelf` utility of the binutils package. A local attacker could exploit two Denial of Service (DoS) vulnerabilities by providing a specially crafted Executable and Linkable Format (ELF) file. On...Show more |