CVEs (49)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Redhat 3Enterprise Linux Hardened ImagesOpenshift Container PlatformSep 1, 2026 Aug 14, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in libdm. A local attacker could craft a malicious Logical Volume Manager (LVM) metadata configuration with deeply nested structures. This could lead to uncontrolled recursion in the libdm configuration...Show more |
1Redhat 3Enterprise Linux Hardened ImagesOpenshift Container PlatformSep 1, 2026 Aug 12, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Multiple Use-After-Free vulnerabilities were found in the add_archive_element function in ld/ldmain.c of the GNU linker (ld), a component of binutils. The root cause is that plugin_maybe_claim() in ld/plugin.c frees the...Show more |
2Redhat Smuellerdd4Enterprise Linux Hardened ImagesLibkcapi+1 moreSep 1, 2026 Aug 5, 2026 N/A· v4 5.1 MEDIUM· v3 N/A· v2 A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_al...Show more |
2Redhat Smuellerdd4Enterprise Linux Hardened ImagesLibkcapi+1 moreSep 1, 2026 Aug 5, 2026 N/A· v4 7.3 HIGH· v3 N/A· v2 Memory Corruption via Uncanceled AIO Requests on Error: libkcapi's one-shot AIO path can return an error before all submitted IOCBs are drained, allowing later kernel writes into caller-owned output buffers. |
2Redhat Smuellerdd4Enterprise Linux Hardened ImagesLibkcapi+1 moreSep 1, 2026 Aug 5, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libkcapi. When performing one-shot symmetric cipher operations on large inputs (over 64 KiB) in stateful modes such as Counter (CTR) or Cipher Block Chaining (CBC), the library improperly reuses the I...Show more |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshAug 17, 2026 Jul 21, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 A flaw was found in libssh. On servers with GSSAPIKeyExchange enabled, the gssapi-keyex path does not verify whether the authenticated Kerberos principal is authorized for the requested local user, allowing authenticated...Show more |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshSep 1, 2026 Jul 21, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in libssh. If data packets are processed after a channel is closed, channel data callbacks can be invoked after the associated data has already been freed, leading to crashes or possible use-after-free c...Show more |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshAug 19, 2026 Jul 21, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in libssh. Logic errors in automatic certificate-based public key authentication can cause libssh clients to loop indefinitely when configured certificates are missing or repeatedly rejected by a server,...Show more |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshSep 1, 2026 Jul 21, 2026 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queued indefinitely, causing unbounded memory growth and client-side denial of service. |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshSep 4, 2026 Jul 21, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in libssh. Incorrect AES-GCM finalization checks in builds using the OpenSSL backend can effectively remove integrity protection, allowing an in-path attacker to modify plaintext on the wire without dete...Show more |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshSep 1, 2026 Jul 21, 2026 N/A· v4 3.9 LOW· v3 N/A· v2 A flaw was found in libssh. A malicious username expanded through %r in ProxyCommand handling can inject shell metacharacters, exposing environment variables and causing unintended shell behavior. |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshSep 1, 2026 Jul 21, 2026 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A flaw was found in libssh. When ProxyCommand is used, an unchecked fork() failure can be stored as process ID -1; during cleanup, signals may then be sent across the caller's accessible process tree, leading to local de...Show more |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshSep 1, 2026 Jul 21, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libssh. A remote authenticated client can issue SSH_FXP_READ requests with an arbitrarily large length, causing a libssh SFTP server to allocate excessive memory and potentially exhaust it through rep...Show more |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshSep 1, 2026 Jul 21, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libssh. A remote authenticated peer can advertise a zero maximum packet size in SSH_MSG_CHANNEL_OPEN, causing later channel writes to loop indefinitely and consume CPU, leading to denial of service. |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshAug 19, 2026 Jul 21, 2026 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the expected length is copied without proper length validation, leading to an out-of-bounds heap re...Show more |
2Libssh Redhat3Enterprise Linux Hardened ImagesLibsshAug 17, 2026 Jul 21, 2026 N/A· v4 7.3 HIGH· v3 N/A· v2 A flaw was found in libssh. During SFTP server directory listing, the longname field is constructed with unsafe concatenation into a fixed-size stack buffer. When a client causes the server to list attacker-controlled fi...Show more |
2P11 Kit Project Redhat4Enterprise Linux Hardened ImagesOpenshift Container Platform+1 moreSep 1, 2026 Jun 29, 2026 N/A· v4 6.2 MEDIUM· v3 N/A· v2 A flaw was found in p11-kit. The RPC message attribute parsing functions p11_rpc_message_get_attribute() and p11_rpc_message_get_attribute_array_value() form a mutually-recursive call chain with no recursion depth limit...Show more |
2Kernel Redhat4Enterprise Linux Hardened ImagesOpenshift Container Platform+1 moreAug 31, 2026 Jun 29, 2026 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A flaw was found in the libblkid library of util-linux. During nested partition probing, the BSD, Minix, Solaris x86, and UnixWare partition probers cache a raw pointer to a parent partition entry in a dynamically alloca...Show more |
2Openbsd Redhat3Enterprise Linux Hardened ImagesOpensshSep 1, 2026 Jun 23, 2026 N/A· v4 3.7 LOW· v3 N/A· v2 A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanup of GSSAPI (Generic Security Service Application Programming Interface) indicators when a trailing NULL termination is...Show more |
2Openbsd Redhat4Enterprise Linux Hardened ImagesOpenshift Container Platform+1 moreSep 1, 2026 Jun 23, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group Exchange (DH-GEX) client path. This occurs during FIPS (Federal Information Processing Standards) mo...Show more |