Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat — Vulnerabilities & Security Advisories 1426

Browse all 1426 CVE security advisories affecting Red Hat. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

CVE ID Title CVSS Severity Published
CVE-2026-61477 Libvirt: libvirt: newline injection in network xml dns txt/srv fields allows dnsmasq config directive injection — Red Hat Enterprise Linux 10 CWE-93 2.3 Low 2026-08-07
CVE-2026-15816 Dracut: dracut: root code execution via unescaped error message written to sourced emergency hook script in die() — Red Hat Enterprise Linux 10 CWE-78 7.5 High 2026-08-07
CVE-2026-18938 P11-kit: integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems — Red Hat Enterprise Linux 10 CWE-122 6.2 Medium 2026-08-07
CVE-2026-19079 Policycoreutils: policycoreutils: toctou race condition in fixfiles allows arbitrary selinux label manipulation — Red Hat Hardened Images CWE-367 4.4 Medium 2026-08-07
CVE-2026-18649 Gstreamer1-plugins-good: gst-plugins-good: unbounded memory growth in rtph264depay and rtph265depay rtp depayloaders — Red Hat Enterprise Linux 10 CWE-770 7.5 High 2026-08-06
CVE-2026-18967 Keycloak-services: keycloak-services: saml onetimeuse assertion replay in idp-initiated broker flow — Red Hat Build of Keycloak CWE-294 6.4 Medium 2026-08-06
CVE-2026-44605 Rpm: heap buffer overflow in ndb slot table parsing — Red Hat Hardened Images CWE-190 5.5 Medium 2026-08-05
CVE-2026-15572 Keycloak-services: keycloak-services: dcr protocol mapper type-swap policy bypass allows privilege escalation — Red Hat build of Keycloak 26.4 CWE-843 8.8 High 2026-08-05
CVE-2026-16442 Keycloak-services: keycloak-services: saml idp-initiated broker login bypasses link-only restriction — Red Hat build of Keycloak 26.4 CWE-346 7.4 High 2026-08-05
CVE-2026-49331 Openshift/oauth-proxy: openshift/oauth-proxy: unauthenticated identity header injection on whitelisted paths — Red Hat OpenShift Container Platform 4 CWE-345 6.5 Medium 2026-08-05
CVE-2026-16100 Keycloak-services: keycloak-services: unbounded metric cardinality in user event metrics via request-controlled error text — Red Hat build of Keycloak 26.6 CWE-770 6.5 Medium 2026-08-05
CVE-2026-16071 Keycloak-services: keycloak-services: ldap entry-dn user search bypasses configured users dn boundary — Red Hat build of Keycloak 26.4 CWE-90 5.4 Medium 2026-08-05
CVE-2026-16102 Keycloak-services: keycloak-services: default dcr policy allows role forgery via user property mappers — Red Hat build of Keycloak 26.4 CWE-551 8.1 High 2026-08-05
CVE-2026-15573 Keycloak-services: keycloak-services: authorization bypass via unnormalized uri matching in pathmatcher — Red Hat build of Keycloak 26.4 CWE-551 8.1 High 2026-08-05
CVE-2026-16443 Keycloak-services: keycloak-services: saml broker metadata import disables response signature validation — Red Hat build of Keycloak 26.4 CWE-347 7.4 High 2026-08-05
CVE-2026-10090 Multicluster-operators-subscription: multicluster-operators-subscription: namespace edit user can deploy cluster-scoped clusterrolebinding and become cluster-admin via application subscription — Red Hat Advanced Cluster Management for Kubernetes 2.11 CWE-267 9.0 Critical 2026-08-05
CVE-2026-10059 Cluster-curator-controller: cluster-curator-controller: namespace admin can escalate to cluster-wide curator authority via clustercurator serviceaccount token — multicluster engine for Kubernetes 2.1 CWE-266 9.1 Critical 2026-08-05
CVE-2026-18103 Dhcp-server: dhcp-server: persistent denial of service due to buffer overflow via omapi — Red Hat Enterprise Linux 6 CWE-120 4.9 Medium 2026-08-04
CVE-2026-68743 Sssd: sssd: pam responder out-of-bounds read via unchecked auth_token_length in protocol v1 — Red Hat Enterprise Linux 10 CWE-125 5.5 Medium 2026-08-04
CVE-2026-68744 Sssd: sssd: nss responder uninitialized heap disclosure in initgroups reply — Red Hat Enterprise Linux 10 CWE-908 3.3 Low 2026-08-04
CVE-2026-18569 Keycloak-services: keycloak-services: oidc backchannel logout accepts unsigned forged logout tokens — Red Hat Build of Keycloak CWE-347 3.7 Low 2026-08-04
CVE-2026-42169 Gimp: gimp apng loader heap-buffer-overflow when fctl width exceeds ihdr width (file-png.c) — Red Hat Enterprise Linux 9 CWE-131 7.3 High 2026-08-04
CVE-2026-17614 Wildfly-core: path traversal on wildfly domain controller — Red Hat JBoss Enterprise Application Platform 7 CWE-22 4.4 Medium 2026-08-04
CVE-2026-18477 Tar: tar: toctou in incremental dumpdir 'x' rename handling allows restore path escape — Red Hat Enterprise Linux 10 CWE-367 4.4 Medium 2026-08-03
CVE-2026-18651 389-ds-base: 389-ds-base: sasl plain bind installs connection credentials before account-lock check, allowing continued access as a locked account — Red Hat Directory Server 11 CWE-287 5.4 Medium 2026-08-03
CVE-2026-18508 Tar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwrite — Red Hat Enterprise Linux 10 CWE-59 4.4 Medium 2026-08-03
CVE-2026-68742 Sssd: sssd: nss responder out-of-bounds read via unchecked addrlen in gethostbyaddr — Red Hat Enterprise Linux 10 CWE-125 5.5 Medium 2026-08-03
CVE-2026-6695 Gimp: gimp: remote code execution via crafted paa file — Red Hat Enterprise Linux 6 CWE-805 5.5 Medium 2026-08-03
CVE-2026-6694 Gimp: gimp file-png plugin: denial of service via oversized apng trns chunk — Red Hat Enterprise Linux 6 CWE-120 5.5 Medium 2026-08-03
CVE-2026-18573 Keycloak-services: keycloak-services: client access-type policy condition bypass during client update — Red Hat build of Keycloak 26.6 CWE-862 6.5 Medium 2026-08-02

This page lists every published CVE security advisory associated with Red Hat. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.