GNU linker是美国GNU基金会的一个将目标文件链接为可执行程序的软件工具。 GNU linker存在资源管理错误漏洞,该漏洞源于add_archive_element函数中的释放后重用问题,可能导致拒绝服务攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | any |
affected |
any |
affected | ||
any |
affected | ||
any |
affected | ||
| Red Hat | Red Hat Enterprise Linux 6 | any |
unknown |
| Red Hat | Red Hat Enterprise Linux 7 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 8 | any |
affected |
any |
affected | ||
any |
affected | ||
any |
affected | ||
| Red Hat | Red Hat Enterprise Linux 9 | any |
affected |
any |
affected | ||
any |
affected | ||
any |
affected | ||
any |
affected | ||
| Red Hat | Red Hat Hardened Images | any |
affected |
| Red Hat | Red Hat OpenShift Container Platform 4 | any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat Hardened Images | - |
cpe:/a:redhat:hummingbird:1
|
|
| Red Hat | Red Hat OpenShift Container Platform 4 | - |
cpe:/a:redhat:openshift:4
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-72526 | 9.9 CRITICAL | Multicloud-integrations: multicloud-integrations: pull-model propagation allows hub tenant |
| CVE-2026-72508 | 9.9 CRITICAL | Multicloud-operators-subscription: multicloud-operators-subscription: hub and spoke servic |
| CVE-2026-73268 | 9.9 CRITICAL | Cluster-curator-controller: cluster-curator-controller: spec.install.overridejob allows ar |
| CVE-2026-73269 | 9.9 CRITICAL | Cluster-curator-controller: cluster-curator-controller: tenant-controllable trigger create |
| CVE-2026-70398 | 9.6 CRITICAL | Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserver.argonamesp |
| CVE-2026-71471 | 9.0 CRITICAL | Acm-search-v2-rhel9: search-v2-operator: hub search cr collector.imageoverride propagated |
| CVE-2026-13622 | 8.8 HIGH | Kubevirt: virt-handler-rhel9: kubevirt: virt-handler migration proxy follows symlinks allo |
| CVE-2026-71473 | 8.5 HIGH | Acm-search-v2-rhel9: search-v2-operator: addonfactory.getvaluesfromaddonannotation enables |
| CVE-2026-73122 | 7.7 HIGH | Multicloud-operators-channel: multicloud-operators-channel: auto-generated role grants eve |
| CVE-2026-66878 | 7.7 HIGH | Multicloud-operators-subscription: multicloud-operators-subscription: fetchchannelreferenc |
| CVE-2026-19654 | 7.5 HIGH | Rsyslog: a configuration-dependent issue in rsyslog's optional imptcp input module can all |
| CVE-2026-71469 | 7.5 HIGH | Acm-search-v2-api-rhel9: search-v2-api: unbounded tokenreviews cache allows unauthenticate |
| CVE-2026-18726 | 6.5 MEDIUM | Open-iscsi: open-iscsi: denial of service in iscsiuio router advertisement parsing |
| CVE-2026-18727 | 6.5 MEDIUM | Open-iscsi: open-iscsi: integer underflow in iscsiuio dhcpv6 parsing |
| CVE-2026-71846 | 6.5 MEDIUM | Insights-client: insights-client: clusterrole grants cluster-wide secrets get/list/watch b |
| CVE-2026-64927 | 6.4 MEDIUM | Multicloud-operators-channel: multicloud-operators-channel: cross-namespace secret and con |
| CVE-2026-18663 | 5.9 MEDIUM | 389-ds-base: 389-ds-base: pre-authentication double-free in get_ldapmessage_controls_ext() |
| CVE-2026-19130 | 5.8 MEDIUM | Provider-credential-controller: provider-credential-controller: cross-namespace credential |
No comments yet