Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat — Vulnerabilities & Security Advisories 1428

Browse all 1428 CVE security advisories affecting Red Hat. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

Found 47 results / 1428 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-102474 Dash: dash: heap out-of-bounds write in conv_escape via undersized unicode escape reservation — Red Hat Enterprise Linux 6 CWE-787 4.0 Medium 2026-09-29
CVE-2026-102473 Dash: dash: super-polynomial backtracking in pmatch when libc fnmatch is disabled — Red Hat Enterprise Linux 6 CWE-1333 5.5 Medium 2026-09-29
CVE-2026-90947 Gimp: gimp: out-of-bounds write in lighting effects plugin via crafted preset file — Red Hat Enterprise Linux 6 CWE-787 7.8 High 2026-09-14
CVE-2026-90949 Gimp: gimp: heap-based buffer overflow in psp loader due to selection-channel geometry mismatch — Red Hat Enterprise Linux 6 CWE-787 7.8 High 2026-09-14
CVE-2026-90948 Gimp: gimp: heap-based buffer overflow in ico loader via integer overflow in embedded png dimensions — Red Hat Enterprise Linux 6 CWE-787 7.8 High 2026-09-14
CVE-2026-88859 Evolution: evolution: javascript execution via spoofed vcard control bypasses mail script-markup restriction — Red Hat Enterprise Linux 6 CWE-84 6.3 Medium 2026-09-10
CVE-2026-78322 File-roller: file-roller: stack buffer overflow in parse_progress_line for 7z and rar handlers — Red Hat Enterprise Linux 6 CWE-120 6.5 Medium 2026-08-25
CVE-2026-42170 Gimp: gimp dds plug-in heap-based buffer overflow via bpp mismatch in load_layer() (ddsread.c) — Red Hat Enterprise Linux 6 CWE-131 7.8 High 2026-08-08
CVE-2026-18103 Dhcp-server: dhcp-server: persistent denial of service due to buffer overflow via omapi — Red Hat Enterprise Linux 6 CWE-120 4.9 Medium 2026-08-04
CVE-2026-6695 Gimp: gimp: remote code execution via crafted paa file — Red Hat Enterprise Linux 6 CWE-805 5.5 Medium 2026-08-03
CVE-2026-6694 Gimp: gimp file-png plugin: denial of service via oversized apng trns chunk — Red Hat Enterprise Linux 6 CWE-120 5.5 Medium 2026-08-03
CVE-2026-58381 Gimp: gimp: double-free in read_layer_block() — Red Hat Enterprise Linux 6 CWE-415 6.1 Medium 2026-07-02
CVE-2025-66286 Webkitgtk: authorization bypass through webpage::send-request signal handler — Red Hat Enterprise Linux 6 CWE-639 4.7 Medium 2026-04-23
CVE-2026-6384 Gimp: gimp: arbitrary code execution or denial of service via buffer overflow in gif image processing — Red Hat Enterprise Linux 6 CWE-120 7.3 High 2026-04-15
CVE-2026-40919 Gimp: gimp: denial of service via specially crafted seattle filmworks file — Red Hat Enterprise Linux 6 CWE-787 6.1 Medium 2026-04-15
CVE-2026-40918 Gimp: gimp: denial of service via crafted pvr image file — Red Hat Enterprise Linux 6 CWE-131 5.5 Medium 2026-04-15
CVE-2026-40917 Gimp: gimp: application crashes or information disclosure via crafted icns image files — Red Hat Enterprise Linux 6 CWE-125 5.0 Medium 2026-04-15
CVE-2026-40916 Gimp: gimp: denial of service due to stack buffer overflow in tim image loader — Red Hat Enterprise Linux 6 CWE-787 5.0 Medium 2026-04-15
CVE-2026-40915 Gimp: gimp: heap buffer overflow due to integer overflow in fits image loader — Red Hat Enterprise Linux 6 CWE-190 5.5 Medium 2026-04-15
CVE-2026-2272 Gimp: gimp: memory corruption due to integer overflow in ico file handling — Red Hat Enterprise Linux 6 CWE-190 4.3 Medium 2026-03-26
CVE-2026-2271 Gimp: gimp: denial of service via crafted psp image file — Red Hat Enterprise Linux 6 CWE-190 3.3 Low 2026-03-26
CVE-2024-43168 Unbound: heap-buffer-overflow in unbound — Red Hat Enterprise Linux 6 CWE-122 4.8 Medium 2024-08-08
CVE-2024-43167 Unbound: null pointer dereference in unbound — Red Hat Enterprise Linux 6 CWE-476 2.8 Low 2024-08-08
CVE-2024-1013 Unixodbc: out of bounds stack write due to pointer-to-integer types conversion — Red Hat Enterprise Linux 6 CWE-823 7.8 High 2024-03-18
CVE-2023-7216 Cpio: extraction allows symlinks which enables remote command execution — Red Hat Enterprise Linux 6 CWE-59 5.3 Medium 2024-02-05
CVE-2023-39197 Kernel: dccp: conntrack out-of-bounds read in nf_conntrack_dccp_packet() — Red Hat Enterprise Linux 6 CWE-125 4.0 Medium 2024-01-23
CVE-2023-6270 Kernel: aoe: improper reference count leads to use-after-free vulnerability — Red Hat Enterprise Linux 6 CWE-416 7.0 High 2024-01-04
CVE-2023-7042 Kernel: null pointer dereference in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() — Red Hat Enterprise Linux 6 CWE-476 4.4 Medium 2023-12-21
CVE-2023-6277 Libtiff: out-of-memory in tiffopen via a craft file — Red Hat Enterprise Linux 6 CWE-400 6.5 Medium 2023-11-24
CVE-2023-5341 Imagemagick: heap use-after-free in coders/bmp.c — Red Hat Enterprise Linux 6 CWE-416 6.2 Medium 2023-11-19

This page lists every published CVE security advisory associated with Red Hat. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.