Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat — Vulnerabilities & Security Advisories 1426

Browse all 1426 CVE security advisories affecting Red Hat. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

CVE ID Title CVSS Severity Published
CVE-2026-78234 Hawtio-operator: hawtio-operator: service-ca signing oracle allows arbitrary-cn certificate issuance to namespace edit users — Red Hat build of Apache Camel - HawtIO 4 CWE-295 9.9 Critical 2026-09-08
CVE-2026-77968 Hawtio-operator: hawtio-operator: cluster-wide secrets read/write granted to operator serviceaccount — Red Hat build of Apache Camel - HawtIO 4 CWE-269 8.2 High 2026-09-08
CVE-2026-74860 Libxml2: double-free/uaf in libxml2 python bindings — Red Hat Enterprise Linux 10 CWE-763 8.5 High 2026-09-08
CVE-2026-74859 Gnome-tweaks: path traversal in theme installer — Red Hat Enterprise Linux 8 CWE-22 6.8 Medium 2026-09-08
CVE-2026-76561 Pki-core: dogtag/pki: certprofile-import allows code execution via unsanitized profile content (externalprocessconstraint) — Red Hat Enterprise Linux 10 CWE-78 7.2 High 2026-09-08
CVE-2026-86469 Glib2: toctou symlink race in `g_file_create_replace_destination` fallback path — Red Hat Enterprise Linux 10 CWE-59 5.3 Medium 2026-09-07
CVE-2026-19843 389-ds-base: 389-ds-base: command injection via unescaped ldap dn in cockpit 389 console ldap editor — Red Hat Directory Server 11.7 E4S for RHEL 8 CWE-78 8.4 High 2026-09-07
CVE-2026-18922 389-ds-base: 389-ds-base: sasl plain authentication allows privilege escalation to directory manager via stale identity in cyrus sasl auxiliary property — Red Hat Directory Server 11.7 E4S for RHEL 8 CWE-287 9.8 Critical 2026-09-07
CVE-2026-18453 389-ds-base: 389-ds-base: pre-authentication null pointer dereference via paged results and use_one_backend control in op_shared_search — Red Hat Directory Server 11.7 E4S for RHEL 8 CWE-476 7.5 High 2026-09-07
CVE-2026-18355 389-ds-base: 389-ds-base: heap buffer overflow via sasl wrapped-record length lower-bound underflow in sasl_io_start_packet() — Red Hat Directory Server 11.7 E4S for RHEL 8 CWE-191 7.5 High 2026-09-07
CVE-2026-76560 389-ds-base: 389-ds: anonymous ldap client can defeat selfdn aci bind-rule checks via empty bind dn — Red Hat Directory Server 11.7 E4S for RHEL 8 CWE-863 7.5 High 2026-09-07
CVE-2026-79678 Freeipa: idm: freeipa: idp-add eval() reachable before authorization check allows environment disclosure and denial of service — Red Hat Enterprise Linux 10 CWE-95 8.1 High 2026-09-07
CVE-2026-76578 Ipa: freeipa: freeipa: unauthenticated ldap client can obtain administrator credentials via the self-managed-token aci — Red Hat Enterprise Linux 10 CWE-306 9.8 Critical 2026-09-07
CVE-2026-86404 Artemis-server: artemis-jms-client: artemis-core-client: undertow-core: wildfly-messaging-activemq-subsystem: artemis messaging handlers in red hat eap permit deserialization by default — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-502 8.8 High 2026-09-07
CVE-2026-86332 Odh-dashboard: odh-dashboard: nim credential secret readable by any authenticated user — Red Hat OpenShift AI (RHOAI) CWE-862 6.5 Medium 2026-09-07
CVE-2026-76925 Flatpak: flatpak: toctou race condition allows symlink redirection — Red Hat Enterprise Linux 10 CWE-367 5.8 Medium 2026-09-04
CVE-2026-85769 Libtpms: libtpms: heap out-of-bounds read in tpm2 state unmarshalling via unchecked block_skip_read() blocksize — Red Hat Enterprise Linux 10 CWE-125 6.5 Medium 2026-09-04
CVE-2026-85534 Libsoup: libsoup: http/2 client crash in on_data_source_read_callback when settings initial_window_size shrinks during deferred body read — Red Hat Enterprise Linux 10 CWE-617 5.9 Medium 2026-09-04
CVE-2026-81666 Corosync: corosync: integer overflow in check_memb_commit_token_sanity may bypass message length validation on 32-bit systems — Red Hat Enterprise Linux 10 CWE-190 6.5 Medium 2026-09-04
CVE-2026-81665 Corosync: corosync: heap-based buffer overflow in totempg assembly buffer during fragmented message reassembly — Red Hat Enterprise Linux 10 CWE-122 7.5 High 2026-09-04
CVE-2026-85197 Libsoup: libsoup: heap use-after-free in libsoup http/2 client on_data_read() via goaway during body upload — Red Hat Enterprise Linux 10 CWE-416 7.6 High 2026-09-04
CVE-2026-84185 Jwcrypto: jwcrypto: general json jws kid binding bypass during jwkset verification — Red Hat Ansible Automation Platform 2 CWE-347 5.9 Medium 2026-09-03
CVE-2026-71224 Gfs2-utils: gfs2-utils: stack overflow via alloca(i_height) in metadata walk — Red Hat Enterprise Linux 7 CWE-770 4.7 Medium 2026-09-03
CVE-2026-71222 Gfs2-utils: gfs2-utils: heap out-of-bounds read via unchecked ea_num_ptrs in extended attribute processing — Red Hat Enterprise Linux 7 CWE-125 5.3 Medium 2026-09-03
CVE-2026-71221 Gfs2-utils: gfs2-utils: stack out-of-bounds write via unchecked height in savemeta — Red Hat Enterprise Linux 7 CWE-787 7.0 High 2026-09-03
CVE-2026-71220 Gfs2-utils: gfs2-utils: stack out-of-bounds write via unchecked di_height in gfs2_edit — Red Hat Enterprise Linux 7 CWE-787 7.0 High 2026-09-03
CVE-2026-71219 Gfs2-utils: gfs2-utils: stack overflow via alloca(1<<di_depth) in hash table traversal — Red Hat Enterprise Linux 7 CWE-770 4.7 Medium 2026-09-03
CVE-2026-85150 Gstreamer1-plugins-base: gstreamer: null/invalid-pointer dereference in gst_rtsp_message_parse_auth_credentials() when parsing a crafted digest authorization/www-authenticate header — Red Hat Enterprise Linux 10 CWE-476 7.5 High 2026-09-03
CVE-2026-66786 Submariner: submariner: ipsec.conf stanza injection via remote-supplied cablename and subnets — Red Hat Advanced Cluster Management for Kubernetes 2.17 CWE-94 9.1 Critical 2026-09-02
CVE-2026-84838 Rpm: command injection in rpmuncompress via unescaped filenames passed to popen() — Red Hat Enterprise Linux 10 CWE-78 7.8 High 2026-09-02

This page lists every published CVE security advisory associated with Red Hat. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.