VendorsRed Hatenterprise_linux10.0
Vulnerabilities

Red Hat Enterprise Linux 10.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

200CVEs
CVE-2026-41082
In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.
Published 2026-04-16 · Analyzed
7.8EPSS 0.002
CVE-2026-50256
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfont2 name length mismatch
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50264
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds heap write in dri2 drigetbuffers/drigetbufferswithformat
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50257
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence()
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50261
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in syncchangecounter()
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50260
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in freecounter()
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-6846
Binutils: binutils: arbitrary code execution via malformed xcoff object file processing
Published 2026-04-22 · Modified
7.8EPSS 0.002
CVE-2026-53009
ice: fix double-free of tx_buf skb
Published 2026-06-24 · Modified
7.8EPSS 0.002
CVE-2026-53000
netfilter: nat: use kfree_rcu to release ops
Published 2026-06-24 · Modified
7.8EPSS 0.002
CVE-2026-5165
Virtio-win: virtio-win: memory corruption via use-after-free in virtio blk device reset
Published 2026-03-30 · Analyzed
7.8EPSS 0.002
CVE-2026-53145
drm/gem: Try to fix change_handle ioctl, attempt 4
Published 2026-06-25 · Analyzed
7.8EPSS 0.001
CVE-2026-53153
mm/list_lru: drain before clearing xarray entry on reparent
Published 2026-06-25 · Modified
7.8EPSS 0.001
CVE-2026-21710
A flaw in Node.js HTTP request handling causes an uncaught `TypeError` when a request is received with a header named `__proto__` and the application accesses `req.headersDistinct`. When this occurs, `dest["__proto__"]` resolves to `Object.prototype` rather than `undefined`, causing `.push()` to be called on a non-array. This exception is thrown synchronously inside a property getter and cannot be intercepted by `error` event listeners, meaning it cannot be handled without wrapping every `req.headersDistinct` access in a `try/catch`. * This vulnerability affects all Node.js HTTP servers on **20.x, 22.x, 24.x, and v25.x**
Published 2026-03-30 · Analyzed
7.5EPSS 0.250
CVE-2026-34486
Apache Tomcat: Fix for CVE-2026-29146 allowed bypass of EncryptInterceptor
Published 2026-04-09 · Analyzed
7.5KEVEPSS 0.066
CVE-2024-12088
Rsync: --safe-links option bypass leads to path traversal
Published 2025-01-14 · Modified
7.5EPSS 0.047
CVE-2025-6021
Libxml2: integer overflow in xmlbuildqname() leads to stack buffer overflow in libxml2
Published 2025-06-12 · Modified
7.5EPSS 0.014
CVE-2026-4271
Libsoup: libsoup: denial of service via use-after-free in http/2 server
Published 2026-03-17 · Modified
7.5EPSS 0.013
CVE-2026-35092
Corosync: corosync: denial of service via integer overflow in join message validation
Published 2026-04-01 · Modified
7.5EPSS 0.013
CVE-2025-7424
Libxslt: type confusion in xmlnode.psvi between stylesheet and source nodes
Published 2025-07-10 · Modified
7.5EPSS 0.012
CVE-2026-5201
Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image
Published 2026-03-31 · Modified
7.5EPSS 0.012
CVE-2026-2100
P11-kit: null dereference via c_derivekey with specific null parameters
Published 2026-03-26 · Modified
7.5EPSS 0.012
CVE-2026-42009
Gnutls: gnutls: denial of service via dtls packet reordering vulnerability
Published 2026-05-18 · Modified
7.5EPSS 0.011
CVE-2026-9064
389-ds-base: 389-ds-base: unbounded ldap controls count in get_ldapmessage_controls_ext() causes cpu and heap amplification (remote dos)
Published 2026-05-20 · Modified
7.5EPSS 0.011
CVE-2026-4424
Libarchive: libarchive: information disclosure via heap out-of-bounds read in rar archive processing
Published 2026-03-19 · Modified
7.5EPSS 0.011
CVE-2026-46625
JavaScript Cookie: Per-instance prototype hijack in assign() enables cookie-attribute injection
Published 2026-06-10 · Modified
7.5EPSS 0.010
CVE-2026-6732
Libxml2: libxml2: denial of service via crafted xsd-validated document
Published 2026-04-23 · Analyzed
7.5EPSS 0.009
CVE-2026-58015
Glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive
Published 2026-06-30 · Modified
7.5EPSS 0.009
CVE-2026-15722
389-ds-base: 389-ds-base: pre-authentication stack buffer overflow in get_ruvelement_from_berval() via unbounded replica id parsing
Published 2026-07-31 · Modified
7.5EPSS 0.008
CVE-2026-58011
Glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid gdatetime
Published 2026-06-30 · Modified
7.5EPSS 0.008
CVE-2026-59850
Libssh: libssh: use-after-free via data callbacks on closed channels
Published 2026-07-21 · Modified
7.5EPSS 0.006
CVE-2026-59847
Libssh: libssh: integrity downgrade via openssl aes-gcm tag verification
Published 2026-07-21 · Analyzed
7.5EPSS 0.006
CVE-2026-11788
389-ds-base: 389-ds-base: null pointer dereference in deref control plugin ber parser
Published 2026-06-09 · Modified
7.5EPSS 0.006
CVE-2026-11770
389-ds-base: 389-ds-base: pre-auth ldap filter injection in cleanallruv status check
Published 2026-07-31 · Modified
7.5EPSS 0.005
CVE-2026-19654
Rsyslog: a configuration-dependent issue in rsyslog's optional imptcp input module can allow an unauthenticated remote peer to crash rsyslogd
Published 2026-08-12 · Modified
7.5EPSS 0.005
CVE-2026-59849
Libssh: libssh: denial of service via automatic certificate authentication loop
Published 2026-07-21 · Analyzed
7.5EPSS 0.004
CVE-2026-73198
Ipa: freeipa: unauthenticated dos in `/ipa/i18n_messages` via unbounded request body read
Published 2026-08-20 · Modified
7.5EPSS 0.004
CVE-2026-73197
Ipa: freeipa: unauthenticated dos in `/ipa/migration/migration.py` via unbounded request body read
Published 2026-08-20 · Modified
7.5EPSS 0.004
CVE-2026-1940
Gstreamer: incomplete fix of cve-2026-1940
Published 2026-03-23 · Analyzed
7.5EPSS 0.002
CVE-2026-3833
Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison
Published 2026-04-30 · Modified
7.4EPSS 0.009
CVE-2026-3099
Libsoup: libsoup: authentication bypass via digest authentication replay attack
Published 2026-03-12 · Analyzed
7.3EPSS 0.005
← Prev2 / 5Next →