Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat — Vulnerabilities & Security Advisories 1426

Browse all 1426 CVE security advisories affecting Red Hat. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

CVE ID Title CVSS Severity Published
CVE-2026-103641 Gegl: gegl04: gegl: out-of-bounds read in the radiance hdr uncompressed scanline decoder — Red Hat Enterprise Linux 10 CWE-125 5.5 Medium 2026-10-01
CVE-2026-103399 Libsoup: soupserver: http/1 request smuggling via undrained expect: 100-continue body — Red Hat Enterprise Linux 10 CWE-444 5.3 Medium 2026-09-30
CVE-2026-101295 Oc-mirror: oc-mirror: path traversal / arbitrary file write in operator catalog image extraction — Assisted Installer for Red Hat OpenShift Container Platform 2 CWE-22 7.3 High 2026-09-30
CVE-2026-103242 Rpm: heap-based buffer overflow write in hex2binv() via a mistyped rpmtag_filesignatures header tag — Red Hat Enterprise Linux 10 CWE-122 7.1 High 2026-09-30
CVE-2026-62146 Cri-o: cri-o: sandbox state poisoning via pod annotations may expose runtime socket — Red Hat OpenShift Container Platform 4 CWE-501 7.8 High 2026-09-30
CVE-2026-102560 Libsoup: libsoup: heap buffer overflow during outgoing permessage-deflate buffer growth — Red Hat Enterprise Linux 10 CWE-125 8.6 High 2026-09-29
CVE-2026-102559 Libsoup: libsoup: heap buffer overflow during websocket client-frame masking — Red Hat Enterprise Linux 10 CWE-125 8.6 High 2026-09-29
CVE-2026-102558 Libsoup: libsoup: heap buffer overflow during websocket receive-buffer growth — Red Hat Enterprise Linux 10 CWE-125 8.6 High 2026-09-29
CVE-2026-102555 Libsoup: libsoup: heap buffer overflow via uninitialized length in data-uri base64 decoding — Red Hat Enterprise Linux 10 CWE-125 8.2 High 2026-09-29
CVE-2026-102623 Kubevirt: kubevirt: virt-controller nil-pointer dereference via malformed ephemeral volume — Red Hat OpenShift Virtualization 4 CWE-476 6.5 Medium 2026-09-29
CVE-2026-102557 Libsoup: libsoup: heap buffer overflow during websocket message reassembly — Red Hat Enterprise Linux 10 CWE-125 8.6 High 2026-09-29
CVE-2026-102556 Libsoup: libsoup: heap buffer overflow from websocket pong signal type confusion — Red Hat Enterprise Linux 10 CWE-843 8.6 High 2026-09-29
CVE-2026-95520 Rpm: rpm: integer overflow in iterreadarchivenext() leads to heap-based buffer overflow when parsing untrusted rpm packages — Red Hat Enterprise Linux 10 CWE-787 7.1 High 2026-09-29
CVE-2026-102474 Dash: dash: heap out-of-bounds write in conv_escape via undersized unicode escape reservation — Red Hat Enterprise Linux 6 CWE-787 4.0 Medium 2026-09-29
CVE-2026-102473 Dash: dash: super-polynomial backtracking in pmatch when libc fnmatch is disabled — Red Hat Enterprise Linux 6 CWE-1333 5.5 Medium 2026-09-29
CVE-2026-97029 Flatpak: flatpak: sandboxed app can signal unsandboxed processes in the same process group — Red Hat Enterprise Linux 10 CWE-653 5.7 Medium 2026-09-29
CVE-2026-97024 Flatpak: flatpak: arbitrary write in root context via path traversal in deploy directory files/etc — Red Hat Enterprise Linux 10 CWE-61 7.1 High 2026-09-29
CVE-2026-97027 Flatpak: flatpak: denial of service via unsanitized keys in exported desktop entry / d-bus service files — Red Hat Enterprise Linux 10 CWE-20 3.6 Low 2026-09-28
CVE-2026-97026 Flatpak: flatpak: world-writable temporary child repositories in system-helper cache path — Red Hat Enterprise Linux 10 CWE-378 3.9 Low 2026-09-28
CVE-2026-97025 Flatpak: flatpak: world-readable oci authentication token in system-helper cache path — Red Hat Enterprise Linux 10 CWE-378 3.2 Low 2026-09-28
CVE-2026-102010 Gcc-toolset-15-gcc: gcc: gcc-toolset-16: gcc: denial of service via use-after-free in binary heap erase_if — Red Hat Hardened Images CWE-825 7.0 High 2026-09-28
CVE-2026-97023 Flatpak: flatpak: arbitrary file deletion in root context via path traversal in deploy directory export/bin — Red Hat Enterprise Linux 10 CWE-61 7.1 High 2026-09-28
CVE-2026-96740 Streamshub/console: console-operator: streams for apache kafka console: unfiltered kafka client properties → sa-token exfiltration via config.providers — StreamsHub Console for Apache Kafka® CWE-470 6.5 Medium 2026-09-28
CVE-2026-87114 Kube-compare: container:// reference extraction runs the image entrypoint and silently escalates to sudo — Pen Drive Powered by Red Hat Lightspeed CWE-829 7.1 High 2026-09-28
CVE-2026-101333 Keycloak-services: keycloak-services: unbounded metric series creation via idp tag on broker login endpoint — Red Hat Build of Keycloak CWE-770 3.7 Low 2026-09-28
CVE-2026-101292 Artemis-core-client: unsafe reflection in apache activemq artemis federation message deserialization — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-470 8.2 High 2026-09-28
CVE-2026-86330 Noobaa-core: noobaa-core: os command injection in cluster_internal_api.set_hostname_internal — Red Hat Openshift Data Foundation 4 CWE-78 7.2 High 2026-09-28
CVE-2026-96284 Flatpak: flatpak: arbitrary read-access to files in the system-helper context via oci symlink following — Red Hat Enterprise Linux 10 CWE-59 2.5 Low 2026-09-27
CVE-2026-96282 Flatpak: flatpak: extension metadata path traversal file existence oracle — Red Hat Enterprise Linux 10 CWE-59 3.1 Low 2026-09-27
CVE-2026-96283 Flatpak: flatpak: flatpak-system-helper cross-user cancelpull orphans another user's ongoing pull — Red Hat Enterprise Linux 10 CWE-862 3.3 Low 2026-09-27

This page lists every published CVE security advisory associated with Red Hat. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.