Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat — Vulnerabilities & Security Advisories 1426

Browse all 1426 CVE security advisories affecting Red Hat. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

CVE ID Title CVSS Severity Published
CVE-2026-90462 Sssd: sssd: fail-open in ldap ppolicy access check allows continued authorization — Red Hat Enterprise Linux 10 CWE-280 5.4 Medium 2026-09-22
CVE-2026-94640 Rpcbind: unbounded memory allocation in rpcbind statistics tracking allows unauthenticated remote denial of service — Red Hat Enterprise Linux 10 CWE-400 7.5 High 2026-09-22
CVE-2026-95619 Gcc: libstdc++ integer overflow in `new` operator — Red Hat Hardened Images CWE-190 7.7 High 2026-09-22
CVE-2026-95508 Libslirp: libslirp: heap buffer overflow in dhcpv6/tftp response builders on small interface mtu — Red Hat Enterprise Linux 10 CWE-787 7.4 High 2026-09-22
CVE-2026-95503 Keycloak-services: keycloak-services: potential kdc spoofing bypass when kerberos password authentication is enabled — Red Hat Build of Keycloak CWE-347 6.8 Medium 2026-09-22
CVE-2026-93433 Libstoragemgmt: libstoragemgmt: denial of service via stack buffer overflow in scsi vpd page parsing — Red Hat Enterprise Linux 10 CWE-121 5.5 Medium 2026-09-21
CVE-2026-92382 Usbredir: usbredir: unbounded iso_packet_desc[] index in usbredirhost_iso_packet() leads to heap out-of-bounds write — Red Hat Enterprise Linux 10 CWE-787 4.1 Medium 2026-09-21
CVE-2026-94449 Quarkus-smallrye-fault-tolerance: quarkus-smallrye-fault-tolerance: memory leak in @applyguard leads to denial of service — Exploit Intelligence CWE-400 7.5 High 2026-09-21
CVE-2026-94184 Fetchmail: fetchmail: stack-based buffer overflow in ntlm authentication (fetchmail-sa-2026-01) — Red Hat Enterprise Linux 10 CWE-121 8.1 High 2026-09-21
CVE-2026-80110 Pki-core: dogtag pki v2 rest acl filter's reverse-lexicographic tie-break lets a ca agent invoke the admin-only raw profile creation endpoint — Red Hat Enterprise Linux 10 CWE-863 8.1 High 2026-09-21
CVE-2026-75939 Openshift/oc-mirror: release signature verification: openpgp signatureerror checked before signed body is consumed — Red Hat OpenShift Container Platform 4 CWE-347 7.4 High 2026-09-21
CVE-2026-94368 Noobaa-core: noobaa-core: presigned put url escalation to copyobject via unsigned x-amz-copy-source header — Red Hat Openshift Data Foundation 4 CWE-347 7.1 High 2026-09-21
CVE-2026-92574 Cri-o: cri-o checkpoint restore bypasses destination security context — Confidential Compute Attestation CWE-250 8.8 High 2026-09-21
CVE-2026-15801 Cri-o: cri-o: insufficient validation during container checkpoint restore — Red Hat OpenShift Container Platform 4 CWE-22 8.0 High 2026-09-21
CVE-2026-94218 Keycloak-services: keycloak-services: 2fa setup enforcement bypass via authentication session restart endpoint — Red Hat Build of Keycloak CWE-862 3.1 Low 2026-09-21
CVE-2026-94217 Keycloak-services: keycloak-services: uma scope merge across resource owners via resource name collision — Red Hat Build of Keycloak CWE-862 3.5 Low 2026-09-21
CVE-2026-94215 Keycloak-services: keycloak-services: cross-realm client read/write via request-level cache missing realm ownership check — Red Hat Build of Keycloak CWE-862 5.5 Medium 2026-09-21
CVE-2026-94213 Keycloak-services: keycloak-services: authorization services policy evaluation endpoint leaks user identity — Red Hat Build of Keycloak CWE-862 4.9 Medium 2026-09-21
CVE-2026-94001 Keycloak-services: keycloak-services: admin credential delete bypasses denied reset-password permission — Red Hat Build of Keycloak CWE-862 6.5 Medium 2026-09-19
CVE-2026-94000 Keycloak-services: keycloak-services: delegated admin with manage-users can escalate to realm-admin via group membership — Red Hat Build of Keycloak CWE-862 6.6 Medium 2026-09-19
CVE-2026-93999 Keycloak-services: keycloak-services: token refresh continues issuing tokens for disabled audience clients — Red Hat Build of Keycloak CWE-862 4.2 Medium 2026-09-19
CVE-2026-75885 Openshift/console: openshift/console: unauthenticated ssrf and resource exhaustion via devfile parser endpoint — Red Hat OpenShift Container Platform 4.19 CWE-918 9.3 Critical 2026-09-18
CVE-2026-93562 Io.netty/netty-codec-http: netty: incomplete validation of malformed transfer-encoding allows http request smuggling — Red Hat AMQ Broker 7 CWE-1035 6.5 Medium 2026-09-18
CVE-2026-93574 Io.netty/netty-codec-http: netty: http request smuggling via post-digit whitespace in chunk-size parsing — Red Hat AMQ Broker 7 CWE-444 6.5 Medium 2026-09-18
CVE-2026-91202 Cockpit-files: cockpit-files: arbitrary file ownership change via symlink following in privileged paste — Red Hat Enterprise Linux 10 CWE-61 6.1 Medium 2026-09-18
CVE-2026-91203 Cockpit-files: cockpit-files: arbitrary file ownership and permission modification via symlink race condition — Red Hat Enterprise Linux 10 CWE-363 6.0 Medium 2026-09-18
CVE-2026-91205 Cockpit-files: cockpit-files: local attacker can hijack file ownership via symlink race — Red Hat Enterprise Linux 10 CWE-363 6.0 Medium 2026-09-18
CVE-2026-92768 Cockpit-machines: cockpit-machines: sensitive data exposure via command-line arguments — Red Hat Enterprise Linux 10 CWE-214 5.5 Medium 2026-09-18
CVE-2026-92747 Cockpit-machines: cockpit-machines: sensitive data exposure of guest credentials via json argument in process list — Red Hat Enterprise Linux 10 CWE-214 5.0 Medium 2026-09-18
CVE-2026-92745 Cockpit-machines: cockpit-machines: information disclosure of rhsm offline token via process arguments — Red Hat Enterprise Linux 10 CWE-214 5.0 Medium 2026-09-18

This page lists every published CVE security advisory associated with Red Hat. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.