CVEs (326)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Gnu Redhat3Enterprise Linux NanoOpenshift Container PlatformSep 1, 2026 Apr 22, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in nano. A local user could exploit a format string vulnerability in the `statusline()` function. By creating a directory with a name containing `printf` specifiers, the application attempts to display t...Show more |
12Amazon AristaCanonical+9 more46Amazon Linux Basesystem ModuleCaas Platform+43 moreSep 8, 2026 Apr 22, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is...Show more |
2Fedoraproject Redhat3Enterprise Linux Openshift Container PlatformSssdSep 1, 2026 Apr 15, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in the System Security Services Daemon (SSSD). The pam_passkey_child_read_data() function within the PAM passkey responder fails to properly handle raw bytes received from a pipe. Because the data is tre...Show more |
2Libcap Project Redhat3Enterprise Linux LibcapOpenshift Container PlatformSep 7, 2026 Apr 9, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory t...Show more |
2Libarchive Redhat4Enterprise Linux Hardened ImagesLibarchive+1 moreSep 1, 2026 Apr 7, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in libarchive. A NULL pointer dereference vulnerability exists in the ACL parsing logic, specifically within the archive_acl_from_text_nl() function. When processing a malformed ACL string (such as a bar...Show more |
2Libarchive Redhat4Enterprise Linux Hardened ImagesLibarchive+1 moreSep 1, 2026 Mar 30, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image,...Show more |
2Libssh Redhat4Enterprise Linux Hardened ImagesLibssh+1 moreSep 1, 2026 Mar 26, 2026 N/A· v4 8.2 HIGH· v3 N/A· v2 A flaw was found in libssh. The API function `ssh_get_hexa()` is vulnerable to a denial of service when processing zero-length input. This can be exploited remotely by an attacker during GSSAPI (Generic Security Service...Show more |
2Libssh Redhat4Enterprise Linux Hardened ImagesLibssh+1 moreSep 1, 2026 Mar 26, 2026 N/A· v4 6.3 MEDIUM· v3 N/A· v2 A malicious SCP server can send unexpected paths that could make the client application override local files outside of working directory. This could be misused to create malicious executable or configuration files and m...Show more |
2Freedesktop Redhat3Enterprise Linux Openshift Container PlatformPolkitSep 1, 2026 Mar 26, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A flaw was found in polkit. A local user can exploit this by providing a specially crafted, excessively long input to the `polkit-agent-helper-1` setuid binary via standard input (stdin). This unbounded input can lead to...Show more |
2Gnu Redhat3Binutils Enterprise LinuxOpenshift Container PlatformSep 1, 2026 Mar 23, 2026 N/A· v4 6.1 MEDIUM· v3 N/A· v2 A flaw was found in the GNU Binutils BFD library, a widely used component for handling binary files such as object files and executables. The issue occurs when processing specially crafted XCOFF object files, where a rel...Show more |
2Libarchive Redhat4Enterprise Linux Hardened ImagesLibarchive+1 moreSep 1, 2026 Mar 19, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libarchive. An Undefined Behavior vulnerability exists in the zisofs decompression logic, caused by improper validation of a field (`pz_log2_bs`) read from ISO9660 Rock Ridge extensions. A remote atta...Show more |
2Libarchive Redhat7Enterprise Linux Enterprise Linux Server AusHardened Images+4 moreAug 31, 2026 Mar 19, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of the LZSS sliding window size after transitions between compression metho...Show more |
2Gnu Redhat3Binutils Enterprise LinuxOpenshift Container PlatformSep 1, 2026 Mar 16, 2026 N/A· v4 7.1 HIGH· v3 N/A· v2 A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker component. An attacker could exploit this by convincing a user to process a...Show more |
2Gnu Redhat3Binutils Enterprise LinuxOpenshift Container PlatformSep 1, 2026 Mar 16, 2026 N/A· v4 7.1 HIGH· v3 N/A· v2 A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in the bfd linker, allows an attacker to gain access to sensitive information. By convincing a user to p...Show more |
2Linux Nfs Redhat3Enterprise Linux Nfs UtilsOpenshift Container PlatformSep 1, 2026 Mar 4, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particu...Show more |
3Ibm RedhatXmlsoft7Aix Enterprise LinuxHardened Images+4 moreSep 1, 2026 Jan 15, 2026 N/A· v4 2.9 LOW· v3 N/A· v2 A flaw was found in the libxml2 library. This uncontrolled resource consumption vulnerability occurs when processing XML catalogs that contain repeated <nextCatalog> elements pointing to the same downstream catalog. A re...Show more |
3Ibm RedhatXmlsoft7Aix Enterprise LinuxHardened Images+4 moreSep 1, 2026 Jan 15, 2026 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A flaw was found in libxml2, an XML parsing library. This uncontrolled recursion vulnerability occurs in the xmlCatalogXMLResolveURI function when an XML catalog contains a delegate URI entry that references itself. A re...Show more |
3Ibm RedhatXmlsoft7Aix Enterprise LinuxHardened Images+4 moreSep 1, 2026 Jan 15, 2026 N/A· v4 3.7 LOW· v3 N/A· v2 A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially c...Show more |
2Gnome Redhat29Ceph Storage Codeready Linux BuilderCodeready Linux Builder For Arm64+26 moreAug 31, 2026 Nov 26, 2025 N/A· v4 7.7 HIGH· v3 N/A· v2 A heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer size in the g_escape_uri_string() function. If the string to escape contains a very large number of unacceptable character...Show more |
1Redhat 2Enterprise Linux Openshift Container PlatformSep 1, 2026 Jul 28, 2025 N/A· v4 3.7 LOW· v3 N/A· v2 A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as...Show more |