Red Hat / Red Hat Enterprise Linux 9
458 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-86345 | 389-ds-base: 389-ds-base: starttls plaintext-buffer retention allows on-path attacker to forge an ldap client's authentication result | CRITICAL | 9.0 | Oct 1, 2026 |
| CVE-2026-86344 | 389-ds-base: 389-ds-base: unauthenticated worker-thread-pool exhaustion via completed-operation-then-incomplete-pdu connection requeue | HIGH | 7.5 | Oct 1, 2026 |
| CVE-2026-103641 | Gegl: gegl04: gegl: out-of-bounds read in the radiance hdr uncompressed scanline decoder | MEDIUM | 5.5 | Oct 1, 2026 |
| CVE-2026-103399 | Libsoup: soupserver: http/1 request smuggling via undrained expect: 100-continue body | MEDIUM | 5.3 | Sep 30, 2026 |
| CVE-2026-103242 | Rpm: heap-based buffer overflow write in hex2binv() via a mistyped rpmtag_filesignatures header tag | HIGH | 7.1 | Sep 30, 2026 |
| CVE-2026-102560 | Libsoup: libsoup: heap buffer overflow during outgoing permessage-deflate buffer growth | HIGH | 8.6 | Sep 29, 2026 |
| CVE-2026-102559 | Libsoup: libsoup: heap buffer overflow during websocket client-frame masking | HIGH | 8.6 | Sep 29, 2026 |
| CVE-2026-102558 | Libsoup: libsoup: heap buffer overflow during websocket receive-buffer growth | HIGH | 8.6 | Sep 29, 2026 |
| CVE-2026-102555 | Libsoup: libsoup: heap buffer overflow via uninitialized length in data-uri base64 decoding | HIGH | 8.2 | Sep 29, 2026 |
| CVE-2026-102557 | Libsoup: libsoup: heap buffer overflow during websocket message reassembly | HIGH | 8.6 | Sep 29, 2026 |
| CVE-2026-102556 | Libsoup: libsoup: heap buffer overflow from websocket pong signal type confusion | HIGH | 8.6 | Sep 29, 2026 |
| CVE-2026-95520 | Rpm: rpm: integer overflow in iterreadarchivenext() leads to heap-based buffer overflow when parsing untrusted rpm packages | HIGH | 7.1 | Sep 29, 2026 |
| CVE-2026-97029 | Flatpak: flatpak: sandboxed app can signal unsandboxed processes in the same process group | MEDIUM | 5.7 | Sep 29, 2026 |
| CVE-2026-97024 | Flatpak: flatpak: arbitrary write in root context via path traversal in deploy directory files/etc | HIGH | 7.1 | Sep 29, 2026 |
| CVE-2026-97027 | Flatpak: flatpak: denial of service via unsanitized keys in exported desktop entry / d-bus service files | LOW | 3.6 | Sep 28, 2026 |
| CVE-2026-97026 | Flatpak: flatpak: world-writable temporary child repositories in system-helper cache path | LOW | 3.9 | Sep 28, 2026 |
| CVE-2026-97025 | Flatpak: flatpak: world-readable oci authentication token in system-helper cache path | LOW | 3.2 | Sep 28, 2026 |
| CVE-2026-102010 | Gcc-toolset-15-gcc: gcc: gcc-toolset-16: gcc: denial of service via use-after-free in binary heap erase_if | HIGH | 7.0 | Sep 28, 2026 |
| CVE-2026-97023 | Flatpak: flatpak: arbitrary file deletion in root context via path traversal in deploy directory export/bin | HIGH | 7.1 | Sep 28, 2026 |
| CVE-2026-96284 | Flatpak: flatpak: arbitrary read-access to files in the system-helper context via oci symlink following | LOW | 2.5 | Sep 27, 2026 |
| CVE-2026-96282 | Flatpak: flatpak: extension metadata path traversal file existence oracle | LOW | 3.1 | Sep 27, 2026 |
| CVE-2026-96283 | Flatpak: flatpak: flatpak-system-helper cross-user cancelpull orphans another user's ongoing pull | LOW | 3.3 | Sep 27, 2026 |
| CVE-2026-96281 | Flatpak: flatpak: unprivileged active user can bypass anti-downgrade checks for system apps/runtimes | MEDIUM | 6.2 | Sep 27, 2026 |
| CVE-2026-96280 | Flatpak: flatpak: buffer overflow in oci delta stream path names on 32-bit systems | HIGH | 7.5 | Sep 27, 2026 |
| CVE-2026-93834 | Qemu-kvm: 9pfs: use-after-free race in tlcreate/twalk allows vm guest escape | HIGH | 8.8 | Sep 25, 2026 |
Showing 1 to 25 of 458 CVEs