VendorsRed Hatenterprise_linux9.0
Vulnerabilities

Red Hat Enterprise Linux 9.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

601CVEs
CVE-2026-57966
Spice-vdagent: path traversal in file transfer via unsanitized filename
Published 2026-06-29 · Analyzed
4.4EPSS 0.002
CVE-2026-12892
Gstreamer1-plugins-bad: gstreamer1-plugins-bad: 1-byte heap out-of-bounds read in h.264 nal extension slice parser
Published 2026-06-23 · Analyzed
4.4EPSS 0.002
CVE-2026-13002
Dnsmasq: infinite loop dos in dnssec nsec/nsec3 type bitmap parsing
Published 2026-08-14 · Analyzed
4.4EPSS 0.001
CVE-2026-18508
Tar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwrite
Published 2026-08-03 · Modified
4.4EPSS 0.001
CVE-2026-14969
389-ds-base: 389-ds-base: static initialization vector in aes-cbc/3des-cbc attribute encryption
Published 2026-07-07 · Analyzed
4.4EPSS 0.001
CVE-2026-18477
Tar: tar: toctou in incremental dumpdir 'x' rename handling allows restore path escape
Published 2026-08-03 · Modified
4.4EPSS 0.001
CVE-2023-5868
Postgresql: memory disclosure in aggregate function calls
Published 2023-12-10 · Modified
4.3EPSS 0.028
CVE-2023-6121
Kernel: nvme: info leak due to out-of-bounds read in nvmet_ctrl_find_get
Published 2023-11-16 · Modified
4.3EPSS 0.017
CVE-2023-39418
Postgresql: merge fails to enforce update or select row security policies
Published 2023-08-11 · Modified
4.3EPSS 0.011
CVE-2023-39327
Openjpeg: malicious files can cause the program to enter a large loop
Published 2024-07-13 · Modified
4.3EPSS 0.006
CVE-2026-12891
Gstreamer1-plugins-bad: gstreamer1-plugins-bad: global buffer overflow (oob read) in h.266/vvc vui parameter parser
Published 2026-06-23 · Analyzed
4.3EPSS 0.004
CVE-2026-5138
Foreman: foreman: information disclosure via improper validation of nested request parameters
Published 2026-07-01 · Analyzed
4.3EPSS 0.004
CVE-2024-45619
Libopensc: incorrect handling length of buffers or files in libopensc
Published 2024-09-03 · Modified
4.3EPSS 0.003
CVE-2026-11785
389-ds-base: 389-ds-base: partial stack address information leak via ber_printf type confusion in sso token handler
Published 2026-06-09 · Modified
4.3EPSS 0.002
CVE-2024-45615
Libopensc: pkcs15init: usage of uninitialized values in libopensc and pkcs15init
Published 2024-09-03 · Modified
3.9EPSS 0.004
CVE-2024-45616
Libopensc: uninitialized values after incorrect check or usage of apdu response values in libopensc
Published 2024-09-03 · Modified
3.9EPSS 0.004
CVE-2024-45617
Libopensc: uninitialized values after incorrect or missing checking return values of functions in libopensc
Published 2024-09-03 · Modified
3.9EPSS 0.003
CVE-2024-45620
Libopensc: incorrect handling of the length of buffers or files in pkcs15init
Published 2024-09-03 · Modified
3.9EPSS 0.003
CVE-2024-45618
Libopensc: uninitialized values after incorrect or missing checking return values of functions in pkcs15init
Published 2024-09-03 · Modified
3.9EPSS 0.003
CVE-2026-59846
Libssh: libssh: information disclosure via proxycommand %r username expansion
Published 2026-07-21 · Modified
3.9EPSS 0.002
CVE-2026-3832
Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response
Published 2026-04-30 · Modified
3.7EPSS 0.009
CVE-2026-55654
Openssh: heap out-of-bounds read in red hat enterprise linux versions of openssh gssapi indicator cleanup due to missing null sentinel termination
Published 2026-06-23 · Modified
3.7EPSS 0.007
CVE-2026-0989
Libxml2: unbounded relaxng include recursion leading to stack overflow
Published 2026-01-15 · Analyzed
3.7EPSS 0.005
CVE-2026-15041
389-ds-base: 389-ds-base: non-constant-time comparison in pbkdf2-sha256 password verification
Published 2026-07-08 · Analyzed
3.7EPSS 0.004
CVE-2025-8283
Netavark: podman: netavark may resolve hostnames to unexpected hosts
Published 2025-07-28 · Modified
3.7EPSS 0.003
CVE-2024-1454
Opensc: memory use after free in authentic driver when updating token info
Published 2024-02-12 · Modified
3.4EPSS 0.004
CVE-2021-4217
A flaw was found in unzip. The vulnerability occurs due to improper handling of Unicode strings, which can lead to a null pointer dereference. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.
Published 2022-08-24 · Modified
3.3EPSS 0.006
CVE-2023-2602
A vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicious actor to use cause __real_pthread_create() to return an error, which can exhaust the process memory.
Published 2023-06-06 · Modified
3.3EPSS 0.004
CVE-2024-1048
Grub2: grub2-set-bootflag can be abused by local (pseudo-)users
Published 2024-02-06 · Modified
3.3EPSS 0.003
CVE-2022-0987
A flaw was found in PackageKit in the way some of the methods exposed by the Transaction interface examines files. This issue allows a local user to measure the time the methods take to execute and know whether a file owned by root or other users exists.
Published 2022-06-28 · Modified
3.3EPSS 0.003
CVE-2023-1513
A flaw was found in KVM. When calling the KVM_GET_DEBUGREGS ioctl, on 32-bit systems, there might be some uninitialized portions of the kvm_debugregs structure that could be copied to userspace, causing an information leak.
Published 2023-03-23 · Modified
3.3EPSS 0.002
CVE-2024-0217
Packagekitd: use-after-free in idle function callback
Published 2024-01-03 · Modified
3.3EPSS 0.002
CVE-2025-6199
Gdk-pixbuf: uninitialized memory disclosure in gdkpixbuf gif lzw decoder
Published 2025-06-17 · Modified
3.3EPSS 0.002
CVE-2026-0965
Libssh: libssh: denial of service via improper configuration file handling
Published 2026-03-26 · Modified
3.3EPSS 0.002
CVE-2026-68744
Sssd: sssd: nss responder uninitialized heap disclosure in initgroups reply
Published 2026-08-04 · Analyzed
3.3EPSS 0.001
CVE-2020-14394
An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of service.
Published 2022-08-17 · Modified
3.2EPSS 0.004
CVE-2026-0968
Libssh: libssh: denial of service due to malformed sftp message
Published 2026-03-26 · Modified
3.1EPSS 0.004
CVE-2026-0992
Libxml2: libxml2: denial of service via crafted xml catalogs
Published 2026-01-15 · Analyzed
2.9EPSS 0.005
CVE-2024-8443
Libopensc: heap buffer overflow in openpgp driver when generating key
Published 2024-09-10 · Modified
2.9EPSS 0.003
CVE-2025-6170
Libxml2: stack buffer overflow in xmllint interactive shell command handling
Published 2025-06-16 · Modified
2.5EPSS 0.003
← Prev15 / 16Next →