Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat Enterprise Linux 7 — Vulnerabilities & Security Advisories 18

All 18 CVE vulnerabilities found in Red Hat Enterprise Linux 7, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities affecting Red Hat Enterprise Linux 7, focusing on common weakness types and associated security tags. It collects known flaws, including buffer overflows, privilege escalation issues, and denial-of-service conditions, covering advisories published within the product's active support lifecycle. Here, you can track the vendor's security advisories, understand specific weakness classes, and review the historical vulnerability record for this enterprise distribution.

Vendor: Red Hat

CVE ID Title CVSS Severity Published
CVE-2026-71224 Gfs2-utils: gfs2-utils: stack overflow via alloca(i_height) in metadata walk CWE-770 4.7 Medium 2026-09-03
CVE-2026-71222 Gfs2-utils: gfs2-utils: heap out-of-bounds read via unchecked ea_num_ptrs in extended attribute processing CWE-125 5.3 Medium 2026-09-03
CVE-2026-71221 Gfs2-utils: gfs2-utils: stack out-of-bounds write via unchecked height in savemeta CWE-787 7.0 High 2026-09-03
CVE-2026-71220 Gfs2-utils: gfs2-utils: stack out-of-bounds write via unchecked di_height in gfs2_edit CWE-787 7.0 High 2026-09-03
CVE-2026-71219 Gfs2-utils: gfs2-utils: stack overflow via alloca(1<<di_depth) in hash table traversal CWE-770 4.7 Medium 2026-09-03
CVE-2026-19411 Shim/dp.c library: null-pointer dereference in is_removable_media_path() when devicepathtostr() returns null CWE-476 3.9 Low 2026-08-10
CVE-2026-2239 Gimp: gimp: application crash (dos) via crafted psd file due to heap-buffer-overflow CWE-170 2.8 Low 2026-03-26
CVE-2023-40551 Shim: out of bounds read when parsing mz binaries CWE-125 5.1 Medium 2024-01-29
CVE-2023-40546 Shim: out-of-bounds read printing error messages CWE-476 6.2 Medium 2024-01-29
CVE-2023-40549 Shim: out-of-bounds read in verify_buffer_authenticode() malformed pe file CWE-125 6.2 Medium 2024-01-29
CVE-2023-40550 Shim: out-of-bound read in verify_buffer_sbat() CWE-125 5.5 Medium 2024-01-29
CVE-2023-40548 Shim: interger overflow leads to heap buffer overflow in verify_sbat_section on 32-bits systems CWE-190 7.4 High 2024-01-29
CVE-2023-40547 Shim: rce in http boot support may lead to secure boot bypass CWE-787 8.3 High 2024-01-25
CVE-2023-5455 Ipa: invalid csrf protection CWE-352 6.5 Medium 2024-01-10
CVE-2023-3972 Insights-client: unsafe handling of temporary files and directories CWE-379 7.8 High 2023-11-01
CVE-2023-5380 Xorg-x11-server: use-after-free bug in destroywindow CWE-416 4.7 Medium 2023-10-25
CVE-2023-42753 Kernel: netfilter: potential slab-out-of-bound access due to integer underflow CWE-787 7.0 High 2023-09-25
CVE-2023-3899 Subscription-manager: inadequate authorization of com.redhat.rhsm1 d-bus interface allows local users to modify configuration CWE-285 7.8 High 2023-08-23

All 18 known CVE vulnerabilities affecting Red Hat Enterprise Linux 7 with full Chinese analysis, references, and POCs where available.