Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat Hardened Images — Vulnerabilities & Security Advisories 50

All 50 CVE vulnerabilities found in Red Hat Hardened Images, with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerability data specifically for Red Hat Hardened Images, focusing on security weaknesses affecting this product line. The collection covers recent and historical security advisories, detailing various vulnerability classes such as buffer overflows, privilege escalation, and cryptographic flaws across the product's available lifecycle. Readers can use this section to track the vendor's security advisories, understand the characteristics of specific weakness types, and review the complete vulnerability history associated with Red Hat Hardened Images.

Vendor: Red Hat

CVE ID Title CVSS Severity Published
CVE-2026-44604 Rpm: command injection in rpmuncompress dountar() via unescaped archive top-level directory name in popen() shell command CWE-78 7.0 High 2026-05-28
CVE-2026-6732 Libxml2: libxml2: denial of service via crafted xsd-validated document CWE-843 6.5 Medium 2026-04-23
CVE-2026-6862 Efivar: efivar: denial of service due to stack overflow in device path node parsing CWE-674 5.5 Medium 2026-04-22
CVE-2026-6845 Binutils: binutils: denial of service via crafted elf file CWE-476 5.0 Medium 2026-04-22
CVE-2025-14821 Libssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windows CWE-427 7.8 High 2026-04-07
CVE-2026-5745 Libarchive: a null pointer dereference vulnerability exists in the acl parser of libarchive CWE-476 5.5 Medium 2026-04-07
CVE-2026-3184 Util-linux: util-linux: access control bypass due to improper hostname canonicalization CWE-289 3.7 Low 2026-04-03
CVE-2026-2625 Rust-rpm-sequoia: rust-rpm-sequoia: denial of service via crafted rpm file during signature verification CWE-347 4.0 Medium 2026-04-03
CVE-2026-4647 Binutils: out-of-bounds read in xcoff relocation processing in gnu binutils bfd library CWE-125 6.1 Medium 2026-03-23
CVE-2026-4426 Libarchive: libarchive: denial of service via malformed iso file processing CWE-1335 6.5 Medium 2026-03-19
CVE-2026-3441 Binutils: gnu binutils: information disclosure via specially crafted xcoff object file CWE-125 6.1 Medium 2026-03-15
CVE-2026-3442 Binutils: gnu binutils: information disclosure or denial of service via out-of-bounds read in bfd linker CWE-125 6.1 Medium 2026-03-15
CVE-2026-4105 Systemd: systemd: privilege escalation via improper access control in registermachine d-bus method CWE-284 6.7 Medium 2026-03-13
CVE-2026-26158 Busybox: busybox: arbitrary file modification and privilege escalation via unvalidated tar archive entries CWE-73 7.0 High 2026-02-11
CVE-2026-26157 Busybox: busybox: arbitrary file overwrite and potential code execution via incomplete path sanitization CWE-73 7.0 High 2026-02-11
CVE-2026-1757 Libxml2: memory leak leading to local denial of service in xmllint interactive shell CWE-401 6.2 Medium 2026-02-02
CVE-2026-0988 Glib: glib: denial of service via integer overflow in g_buffered_input_stream_peek() CWE-190 3.7 Low 2026-01-21
CVE-2026-0992 Libxml2: libxml2: denial of service via crafted xml catalogs CWE-400 2.9 Low 2026-01-15
CVE-2026-0989 Libxml2: unbounded relaxng include recursion leading to stack overflow CWE-674 3.7 Low 2026-01-15
CVE-2026-0990 Libxml2: libxml2: denial of service via uncontrolled recursion in xml catalog processing CWE-674 5.9 Medium 2026-01-15

All 50 known CVE vulnerabilities affecting Red Hat Hardened Images with full Chinese analysis, references, and POCs where available.