Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Red Hat Hardened Images — Vulnerabilities & Security Advisories 43

All 43 CVE vulnerabilities found in Red Hat Hardened Images, with AI-generated Chinese analysis, references, and POCs.

This page documents Common Weakness Enumeration (CWE) vulnerabilities affecting the Red Hat Hardened Images product line. It aggregates known security weaknesses and configuration flaws identified within these specialized, security-focused container images designed to meet stringent compliance and hardening requirements. The content here collects detailed information on various vulnerability types, including privilege escalation risks, improper access controls, and insecure default configurations that may exist within the hardened image builds. The data covers historical records and recent findings, providing a comprehensive view of the security landscape for this product. This time range allows users to assess long-term trends and immediate risks associated with different versions of the hardened images. By reviewing this aggregation, users can track vendor advisories issued by Red Hat regarding these specific image builds. They can gain a deeper understanding of particular weakness classes and how they manifest in hardened environments. Additionally, users can look up a product's vulnerability history to inform their risk assessments and patch management strategies. This resource serves as a centralized reference for security professionals evaluating the integrity and safety of Red Hat Hardened Images in production deployments.

Vendor: Red Hat

CVE IDTitleCVSSSeverityPublished
CVE-2026-2625 Rust-rpm-sequoia: rust-rpm-sequoia: denial of service via crafted rpm file during signature verification CWE-347 4.0 Medium2026-04-03
CVE-2026-4647 Binutils: out-of-bounds read in xcoff relocation processing in gnu binutils bfd library CWE-125 6.1 Medium2026-03-23
CVE-2026-4426 Libarchive: libarchive: denial of service via malformed iso file processing CWE-1335 6.5 Medium2026-03-19
CVE-2026-3441 Binutils: gnu binutils: information disclosure via specially crafted xcoff object file CWE-125 6.1 Medium2026-03-15
CVE-2026-3442 Binutils: gnu binutils: information disclosure or denial of service via out-of-bounds read in bfd linker CWE-125 6.1 Medium2026-03-15
CVE-2026-4105 Systemd: systemd: privilege escalation via improper access control in registermachine d-bus method CWE-284 6.7 Medium2026-03-13
CVE-2026-26158 Busybox: busybox: arbitrary file modification and privilege escalation via unvalidated tar archive entries CWE-73 7.0 High2026-02-11
CVE-2026-26157 Busybox: busybox: arbitrary file overwrite and potential code execution via incomplete path sanitization CWE-73 7.0 High2026-02-11
CVE-2026-1757 Libxml2: memory leak leading to local denial of service in xmllint interactive shell CWE-401 6.2 Medium2026-02-02
CVE-2026-0988 Glib: glib: denial of service via integer overflow in g_buffered_input_stream_peek() CWE-190 3.7 Low2026-01-21
CVE-2026-0992 Libxml2: libxml2: denial of service via crafted xml catalogs CWE-400 2.9 Low2026-01-15
CVE-2026-0989 Libxml2: unbounded relaxng include recursion leading to stack overflow CWE-674 3.7 Low2026-01-15
CVE-2026-0990 Libxml2: libxml2: denial of service via uncontrolled recursion in xml catalog processing CWE-674 5.9 Medium2026-01-15

All 43 known CVE vulnerabilities affecting Red Hat Hardened Images with full Chinese analysis, references, and POCs where available.