Red Hat / Red Hat Enterprise Linux 10
354 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-93834 | Qemu-kvm: 9pfs: use-after-free race in tlcreate/twalk allows vm guest escape | HIGH | 8.8 | Sep 25, 2026 |
| CVE-2026-95521 | Rpm: rpm: shell command injection via macro expansion of source/spec file basenames when installing a source rpm | HIGH | 7.8 | Sep 24, 2026 |
| CVE-2026-95519 | Rpm: code execution via macro expansion of manifest entries in `rpmgi` (`-q -p` / verify manifest flows) | HIGH | 7.8 | Sep 24, 2026 |
| CVE-2026-97185 | Gimp: gimp: out-of-bounds write in gimpressionist plugin via crafted preset file | HIGH | 7.8 | Sep 24, 2026 |
| CVE-2026-96889 | Librsvg: use-after-free when xml includes have duplicated entities | HIGH | 7.8 | Sep 23, 2026 |
| CVE-2026-96546 | Gimp: gimp: one-byte out-of-bounds heap read in the uncompressed dds loader | LOW | 2.5 | Sep 23, 2026 |
| CVE-2026-96545 | Gimp: gimp: out-of-bounds heap read in the 4bpp tim image loader | MEDIUM | 4.4 | Sep 23, 2026 |
| CVE-2026-96541 | Gnome-remote-desktop: gnome-remote-desktop: unauthenticated rdp sockets lack a handshake deadline | HIGH | 7.5 | Sep 23, 2026 |
| CVE-2026-96276 | Flatpak: flatpak: arbitrary write in host context via flatpak build-init | CRITICAL | 9.8 | Sep 23, 2026 |
| CVE-2026-96275 | Flatpak: flatpak: arbitrary write access as root via extra-data extraction | HIGH | 8.8 | Sep 23, 2026 |
| CVE-2026-96512 | Sudo: sudo: tz environment variable allows bypass of notbefore/notafter time-based authorization | HIGH | 7.8 | Sep 23, 2026 |
| CVE-2026-96442 | Emacs: emacs: arbitrary code execution in flymake mode | HIGH | 7.8 | Sep 23, 2026 |
| CVE-2026-13087 | Kernel: heap out-of-bounds write in the linux kernel rpc-over-rdma server reply path... | HIGH | 8.8 | Sep 22, 2026 |
| CVE-2026-90462 | Sssd: sssd: fail-open in ldap ppolicy access check allows continued authorization | MEDIUM | 5.4 | Sep 22, 2026 |
| CVE-2026-94640 | Rpcbind: unbounded memory allocation in rpcbind statistics tracking allows unauthenticated remote denial of service | HIGH | 7.5 | Sep 22, 2026 |
| CVE-2026-95508 | Libslirp: libslirp: heap buffer overflow in dhcpv6/tftp response builders on small interface mtu | HIGH | 7.4 | Sep 22, 2026 |
| CVE-2026-93433 | Libstoragemgmt: libstoragemgmt: denial of service via stack buffer overflow in scsi vpd page parsing | MEDIUM | 5.5 | Sep 21, 2026 |
| CVE-2026-92382 | Usbredir: usbredir: unbounded iso_packet_desc[] index in usbredirhost_iso_packet() leads to heap out-of-bounds write | MEDIUM | 4.1 | Sep 21, 2026 |
| CVE-2026-94184 | Fetchmail: fetchmail: stack-based buffer overflow in ntlm authentication (fetchmail-sa-2026-01) | HIGH | 8.1 | Sep 21, 2026 |
| CVE-2026-91202 | Cockpit-files: cockpit-files: arbitrary file ownership change via symlink following in privileged paste | MEDIUM | 6.1 | Sep 18, 2026 |
| CVE-2026-91203 | Cockpit-files: cockpit-files: arbitrary file ownership and permission modification via symlink race condition | MEDIUM | 6.0 | Sep 18, 2026 |
| CVE-2026-91205 | Cockpit-files: cockpit-files: local attacker can hijack file ownership via symlink race | MEDIUM | 6.0 | Sep 18, 2026 |
| CVE-2026-92768 | Cockpit-machines: cockpit-machines: sensitive data exposure via command-line arguments | MEDIUM | 5.5 | Sep 18, 2026 |
| CVE-2026-92747 | Cockpit-machines: cockpit-machines: sensitive data exposure of guest credentials via json argument in process list | MEDIUM | 5.0 | Sep 18, 2026 |
| CVE-2026-92745 | Cockpit-machines: cockpit-machines: information disclosure of rhsm offline token via process arguments | MEDIUM | 5.0 | Sep 18, 2026 |
Showing 26 to 50 of 354 CVEs