Red Hat Enterprise Linux 10是美国Red Hat公司的一套面向企业用户的Linux操作系统。 Red Hat Enterprise Linux 10版本、Red Hat Enterprise Linux 8版本、Red Hat Enterprise Linux 9版本和Red Hat OpenShift Container Platform 4版本存在缓冲区错误漏洞,该漏洞源于rpcbind的rpcinfo工具中存在栈缓冲区溢出,在查询远程rpcbind服务时,服务器返回的地址信
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 8 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 9 | any |
affected |
| Red Hat | Red Hat OpenShift Container Platform 4 | any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat OpenShift Container Platform 4 | - |
cpe:/a:redhat:openshift:4
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-16242 | 9.4 CRITICAL | Hypershift: konnectivity proxy-server accepts agent connections without validating client |
| CVE-2026-12701 | 9.0 CRITICAL | Pulpcore: pulpcore: relative_path_validator bypass via directory traversal in filesystemex |
| CVE-2026-64612 | 7.5 HIGH | Libcupsfilters: cups-filters: libcupsfilters: cups image filter process abort via malforme |
| CVE-2026-12080 | 7.3 HIGH | Qemu-kvm: qemu-guest-agent: local privilege escalation via symlink attack in guest-ssh-add |
| CVE-2026-15813 | 6.5 MEDIUM | Kronosnet: kronosnet: memory corruption and out-of-bounds access via malformed network pac |
| CVE-2026-15588 | 5.3 MEDIUM | Gdbusserver: glib2: gdbusserver pre-authentication dos via unbounded sasl line buffering |
| CVE-2026-16254 | 4.3 MEDIUM | Claircore: claircore: denial of service via out-of-bounds slice in claircore's apk install |
No comments yet