Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat Enterprise Linux 8 — Vulnerabilities & Security Advisories 70

All 70 CVE vulnerabilities found in Red Hat Enterprise Linux 8, with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerability data for Red Hat Enterprise Linux 8, focusing on the vendor Red Hat, the specific product version, and associated common weakness types. It collects security advisories and vulnerability records related to this operating system release, covering the period from its initial public availability through the most recent updates. Readers can use this aggregation to track Red Hat's published advisories, understand specific classes of software weaknesses impacting the platform, and review the complete vulnerability history for Enterprise Linux 8. The dataset includes information about exposed risks, patch status, and mitigation guidance without referencing individual CVE identifiers directly in the introductory overview.

Vendor: Red Hat

CVE ID Title CVSS Severity Published
CVE-2023-5088 Qemu: improper ide controller reset can lead to mbr overwrite CWE-821 6.4 Medium 2023-11-03
CVE-2023-3961 Samba: smbd allows client access to unix domain sockets on the file system as root CWE-22 9.1 Critical 2023-11-03
CVE-2023-1476 Kpatch: mm/mremap.c: incomplete fix for cve-2022-41222 CWE-416 7.0 High 2023-11-03
CVE-2023-5824 Squid: dos against http and https CWE-755 7.5 High 2023-11-03
CVE-2023-4091 Samba: smb clients can truncate files with read-only permissions CWE-276 6.5 Medium 2023-11-03
CVE-2023-5178 Kernel: use after free in nvmet_tcp_free_crypto in nvme CWE-416 8.8 High 2023-11-01
CVE-2023-4693 Grub2: out-of-bounds read at fs/ntfs.c CWE-125 5.3 Medium 2023-10-25
CVE-2023-5633 Kernel: vmwgfx: reference count issue leads to use-after-free in surface handling CWE-911 7.8 High 2023-10-23
CVE-2023-5557 Tracker-miners: sandbox escape CWE-693 7.5 High 2023-10-13
CVE-2023-39194 Kernel: xfrm: out-of-bounds read in __xfrm_state_filter_match() CWE-125 3.2 Low 2023-10-09
CVE-2023-39193 Kernel: netfilter: xtables sctp out-of-bounds read in match_flags() CWE-125 6.1 Medium 2023-10-09
CVE-2023-39192 Kernel: netfilter: xtables out-of-bounds read in u32_match_it() CWE-125 6.7 Medium 2023-10-09
CVE-2023-39189 Kernel: netfilter: nftables out-of-bounds read in nf_osf_match_one() CWE-125 5.1 Medium 2023-10-09
CVE-2023-42755 Kernel: rsvp: out-of-bounds read in rsvp_classify() CWE-125 6.5 Medium 2023-10-05
CVE-2023-42754 Kernel: ipv4: null pointer dereference in ipv4_send_dest_unreach() CWE-476 5.5 Medium 2023-10-05
CVE-2023-4732 Kernel: race between task migrating pages and another task calling exit_mmap to release those same pages getting invalid opcode bug in include/linux/swapops.h CWE-366 4.7 Medium 2023-10-03
CVE-2023-5157 Mariadb: node crashes with transport endpoint is not connected mysqld got signal 6 CWE-400 7.5 High 2023-09-26
CVE-2023-4806 Glibc: potential use-after-free in getaddrinfo() CWE-416 5.9 Medium 2023-09-18
CVE-2023-4527 Glibc: stack read overflow in getaddrinfo in no-aaaa mode CWE-121 6.5 Medium 2023-09-18
CVE-2023-3255 Qemu: vnc: infinite loop in inflate_buffer() leads to denial of service CWE-835 6.5 Medium 2023-09-13
CVE-2023-4813 Glibc: potential use-after-free in gaih_inet() CWE-416 5.9 Medium 2023-09-12
CVE-2023-4042 Ghostscript: incomplete fix for cve-2020-16305 CWE-125 5.5 Medium 2023-08-23
CVE-2023-4387 Kernel: vmxnet3: use-after-free in vmxnet3_rq_alloc_rx_buf() CWE-416 7.1 High 2023-08-16
CVE-2023-39418 Postgresql: merge fails to enforce update or select row security policies CWE-1220 3.1 Low 2023-08-11
CVE-2023-4132 Kernel: smsusb: use-after-free caused by do_submit_urb() CWE-416 5.5 Medium 2023-08-03
CVE-2023-4133 Kernel: cxgb4: use-after-free in ch_flower_stats_cb() CWE-416 5.5 Medium 2023-08-03
CVE-2023-38559 Ghostscript: out-of-bound read in base/gdevdevn.c:1973 in devn_pcx_write_rle could result in dos CWE-125 5.5 Medium 2023-08-01
CVE-2023-4004 Kernel: netfilter: use-after-free due to improper element removal in nft_pipapo_remove() CWE-416 7.8 High 2023-07-31
CVE-2023-3772 Kernel: xfrm: null pointer dereference in xfrm_update_ae_params() CWE-476 5.5 Medium 2023-07-25
CVE-2023-33951 Kernel: vmwgfx: race condition leading to information disclosure vulnerability CWE-413 6.7 Medium 2023-07-24

All 70 known CVE vulnerabilities affecting Red Hat Enterprise Linux 8 with full Chinese analysis, references, and POCs where available.