GNU nano是美国GNU基金会开源的一个命令行文本编辑器。 GNU nano存在格式化字符串错误漏洞,该漏洞源于GNU nano的多缓冲区错误消息处理中存在格式字符串漏洞,当用户在启动时打开多个文件且其中一个触发ALERT级错误时,包含printf格式说明符的特制文件名可能被重新解释,导致栈信息泄露、拒绝服务或内存写入。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 6 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 7 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 8 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 9 | any |
affected |
| Red Hat | Red Hat OpenShift Container Platform 4 | any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat OpenShift Container Platform 4 | - |
cpe:/a:redhat:openshift:4
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-16745 | 8.8 HIGH | Odh-dashboard: odh-dashboard: backend port 8080 trusts x-forwarded-access-token without or |
| CVE-2026-64611 | 7.5 HIGH | Libcupsfilters: cups-filters: libcupsfilters: cpu exhaustion via infinite loop in cfieee12 |
| CVE-2026-12353 | 5.3 MEDIUM | Rhcs: memory leak during https connection leads to denial of service |
No comments yet