Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat — Vulnerabilities & Security Advisories 1440

Browse all 1440 CVE security advisories affecting Red Hat. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

Found 323 results / 1440 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-88914 Gstreamer1-plugins-good: gstreamer: integer overflow and out-of-bounds read in qtdemux cea-608 closed-caption parser — Red Hat Enterprise Linux 10 CWE-190 4.4 Medium 2026-09-11
CVE-2026-84828 Pcs: pcs: non-root haclient users can read arbitrary files via pcs host auth --token — Red Hat Enterprise Linux 10 CWE-732 6.5 Medium 2026-09-10
CVE-2026-88265 Crun: crun: /dev/null symlink follow during stdio reopen allows host bind-mount write and chown — Red Hat Enterprise Linux 10 CWE-59 5.6 Medium 2026-09-10
CVE-2026-84042 Crun: crun: rootful krun with passt executes container payload as host root — Red Hat Enterprise Linux 10 CWE-269 7.8 High 2026-09-10
CVE-2026-18147 Freeipa: ipa: freeipa/idm: cross-site scripting vulnerability allows arbitrary code execution via crafted url — Red Hat Enterprise Linux 10 CWE-79 8.1 High 2026-09-09
CVE-2026-87853 Sssd: sssd: idp authentication prefix comparison allows cross-user impersonation — Red Hat Enterprise Linux 10 CWE-187 7.5 High 2026-09-09
CVE-2026-87766 Bubblewrap: bubblewrap: symlink traversal via /oldroot allows writing files outside sandbox during setup — Red Hat Enterprise Linux 10 CWE-59 8.8 High 2026-09-09
CVE-2026-18090 Gdk-pixbuf: gdk-pixbuf: heap out-of-bounds read in uncompress() via crafted icns rle block — Red Hat Enterprise Linux 10 CWE-125 6.1 Medium 2026-09-08
CVE-2026-74860 Libxml2: double-free/uaf in libxml2 python bindings — Red Hat Enterprise Linux 10 CWE-763 8.5 High 2026-09-08
CVE-2026-76561 Pki-core: dogtag/pki: certprofile-import allows code execution via unsanitized profile content (externalprocessconstraint) — Red Hat Enterprise Linux 10 CWE-78 7.2 High 2026-09-08
CVE-2026-86469 Glib2: toctou symlink race in `g_file_create_replace_destination` fallback path — Red Hat Enterprise Linux 10 CWE-59 5.3 Medium 2026-09-07
CVE-2026-79678 Freeipa: idm: freeipa: idp-add eval() reachable before authorization check allows environment disclosure and denial of service — Red Hat Enterprise Linux 10 CWE-95 8.1 High 2026-09-07
CVE-2026-76578 Ipa: freeipa: freeipa: unauthenticated ldap client can obtain administrator credentials via the self-managed-token aci — Red Hat Enterprise Linux 10 CWE-306 9.8 Critical 2026-09-07
CVE-2026-76925 Flatpak: flatpak: toctou race condition allows symlink redirection — Red Hat Enterprise Linux 10 CWE-367 5.8 Medium 2026-09-04
CVE-2026-85769 Libtpms: libtpms: heap out-of-bounds read in tpm2 state unmarshalling via unchecked block_skip_read() blocksize — Red Hat Enterprise Linux 10 CWE-125 6.5 Medium 2026-09-04
CVE-2026-85534 Libsoup: libsoup: http/2 client crash in on_data_source_read_callback when settings initial_window_size shrinks during deferred body read — Red Hat Enterprise Linux 10 CWE-617 5.9 Medium 2026-09-04
CVE-2026-81666 Corosync: corosync: integer overflow in check_memb_commit_token_sanity may bypass message length validation on 32-bit systems — Red Hat Enterprise Linux 10 CWE-190 6.5 Medium 2026-09-04
CVE-2026-81665 Corosync: corosync: heap-based buffer overflow in totempg assembly buffer during fragmented message reassembly — Red Hat Enterprise Linux 10 CWE-122 7.5 High 2026-09-04
CVE-2026-85197 Libsoup: libsoup: heap use-after-free in libsoup http/2 client on_data_read() via goaway during body upload — Red Hat Enterprise Linux 10 CWE-416 7.6 High 2026-09-04
CVE-2026-85150 Gstreamer1-plugins-base: gstreamer: null/invalid-pointer dereference in gst_rtsp_message_parse_auth_credentials() when parsing a crafted digest authorization/www-authenticate header — Red Hat Enterprise Linux 10 CWE-476 7.5 High 2026-09-03
CVE-2026-84838 Rpm: command injection in rpmuncompress via unescaped filenames passed to popen() — Red Hat Enterprise Linux 10 CWE-78 7.8 High 2026-09-02
CVE-2026-84837 Rpm: command injection in `rpmbuild -t*` (`gettarspec`) via unescaped tarball path — Red Hat Enterprise Linux 10 CWE-78 7.8 High 2026-09-02
CVE-2026-53683 Freeipa: idm: idm/freeipa web ui - client-side open redirect in reset_password.html — Red Hat Enterprise Linux 10 CWE-601 4.3 Medium 2026-09-02
CVE-2026-84233 Rpm: command execution via macro expansion in `rpmuncompress -x` for crafted `.gem` filenames — Red Hat Enterprise Linux 10 CWE-78 7.0 High 2026-09-01
CVE-2026-13732 Gdb: gdb: out-of-bounds write in stabs parser read_member_functions() via crafted elf — Red Hat Enterprise Linux 10 CWE-787 7.0 High 2026-08-31
CVE-2026-82327 Libsolv: libsolv: out-of-bounds write in repo_write() via unvalidated directory id from vertical/paged .solv filelist data — Red Hat Enterprise Linux 10 CWE-129 5.5 Medium 2026-08-28
CVE-2026-81893 Gdk-pixbuf: gdk-pixbuf: invalid write in jpeg icc profile parser on error recovery — Red Hat Enterprise Linux 10 CWE-787 4.7 Medium 2026-08-27
CVE-2026-78002 Rsyslog: rsyslog: denial of service via heap buffer overflow in rainerscript replace() function — Red Hat Enterprise Linux 10 CWE-131 7.5 High 2026-08-27
CVE-2026-80186 Bluez: stack overflow in name2utf8 causes dos and potential code execution — Red Hat Enterprise Linux 10 CWE-120 7.6 High 2026-08-25
CVE-2026-80185 Bluez: sdp-xml: bluez 5.86: unprivileged-local and adjacent-le-peer leads to arbitrary code execution as root — Red Hat Enterprise Linux 10 CWE-843 5.7 Medium 2026-08-25

This page lists every published CVE security advisory associated with Red Hat. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.