VendorsRed Hatenterprise_linux10.0
Vulnerabilities

Red Hat Enterprise Linux 10.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

200CVEs
CVE-2024-12084
Rsync: heap buffer overflow in rsync due to improper checksum length handling
Published 2025-01-15 · Modified
9.8EPSS 0.721
CVE-2026-1709
Keylime: keylime: authentication bypass allows unauthorized administrative operations due to missing client-side tls authentication
Published 2026-02-06 · Modified
9.8EPSS 0.055
CVE-2026-4480
Samba: samba: remote code execution in printing subsystem via unescaped job description
Published 2026-05-26 · Modified
9.8EPSS 0.043
CVE-2026-5121
Libarchive: libarchive: arbitrary code execution via integer overflow in iso9660 image processing
Published 2026-03-30 · Modified
9.8EPSS 0.014
CVE-2026-42010
Gnutls: gnutls: authentication bypass via nul character in username
Published 2026-05-07 · Modified
9.8EPSS 0.009
CVE-2025-14087
Glib: glib: buffer underflow in gvariant parser leads to heap corruption
Published 2025-12-10 · Modified
9.8EPSS 0.008
CVE-2026-53002
netfilter: conntrack: remove sprintf usage
Published 2026-06-24 · Modified
9.8EPSS 0.005
CVE-2026-53006
ipv6: fix possible UAF in icmpv6_rcv()
Published 2026-06-24 · Modified
9.8EPSS 0.005
CVE-2026-11861
Freeipa: idm: ipa: freeipa: obtaining tgs with impersonating cname through trust relationships
Published 2026-08-20 · Modified
9.6EPSS 0.002
CVE-2025-32463
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.
Published 2025-06-30 · Analyzed
9.3KEV1 PoCEPSS 0.610
CVE-2026-9256
NGINX ngx_http_rewrite_module vulnerability
Published 2026-05-22 · Modified
9.2EPSS 0.027
CVE-2026-42055
NGINX ngx_http_proxy_v2_module and ngx_http_grpc_module vulnerability
Published 2026-06-17 · Modified
9.2EPSS 0.024
CVE-2026-58016
Glib: integer underflow in gio/gdbusintrospection.c via "g_dbus_node_info_new_for_xml"
Published 2026-06-30 · Modified
9.1EPSS 0.010
CVE-2026-33845
Gnutls: gnutls: denial of service via dtls zero-length fragment
Published 2026-04-30 · Modified
9.1EPSS 0.009
CVE-2026-44172
MariaDB: mysql_real_escape_string() incorrectly handled big5
Published 2026-06-12 · Modified
9.1EPSS 0.007
CVE-2026-34000
Xwayland: xorg: x.org x server: information disclosure and denial of service via out-of-bounds read in xkb geometry processing.
Published 2026-05-05 · Modified
9.1EPSS 0.005
CVE-2026-34002
Xorg: xwayland: x.org x server: information disclosure or denial of service via out-of-bounds read in xkb modifier map handling
Published 2026-05-05 · Modified
9.1EPSS 0.005
CVE-2026-59851
Libssh: libssh: authentication bypass via missing gssapi principal check
Published 2026-07-21 · Modified
8.8EPSS 0.005
CVE-2025-5372
Libssh: incorrect return code handling in ssh_kdf() in libssh
Published 2025-07-04 · Modified
8.8EPSS 0.005
CVE-2026-13097
Ipa: privilege escalation via krbcanonicalname manipulation due to realm-unaware uniqueness enforcement in freeipa ldap datastore
Published 2026-08-20 · Modified
8.7EPSS 0.004
CVE-2026-58014
Glib: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list"
Published 2026-06-30 · Modified
8.6EPSS 0.007
CVE-2025-32988
Gnutls: vulnerability in gnutls othername san export
Published 2025-07-10 · Modified
8.2EPSS 0.013
CVE-2026-3497
Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH upstream project itself. The usage of sshpkt_disconnect() on an error, which does not terminate the process, allows an attacker to send an unexpected GSSAPI message type during the GSSAPI key exchange to the server, which will call the underlying function and continue the execution of the program without setting the related connection variables. As the variables are not initialized to NULL the code later accesses those uninitialized variables, accessing random memory, which could lead to undefined behavior. The recommended workaround is to use ssh_packet_disconnect() instead, which does terminate the process. The impact of the vulnerability depends heavily on the compiler flag hardening configuration.
Published 2026-03-12 · Modified
8.2EPSS 0.013
CVE-2026-35091
Corosync: corosync: denial of service and information disclosure via crafted udp packet
Published 2026-04-01 · Modified
8.2EPSS 0.011
CVE-2026-58012
Glib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char()
Published 2026-06-30 · Modified
8.2EPSS 0.009
CVE-2026-58010
Glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal()
Published 2026-06-30 · Modified
8.2EPSS 0.009
CVE-2026-58013
Glib: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend"
Published 2026-06-30 · Modified
8.2EPSS 0.009
CVE-2025-32990
Gnutls: vulnerability in gnutls certtool template parsing
Published 2025-07-10 · Modified
8.2EPSS 0.008
CVE-2026-0966
Libssh: libssh: denial of service via zero-length input in ssh_get_hexa()
Published 2026-03-26 · Modified
8.2EPSS 0.006
CVE-2026-2436
Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake
Published 2026-03-26 · Analyzed
8.2EPSS 0.004
CVE-2026-5119
Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment
Published 2026-03-30 · Modified
8.2EPSS 0.003
CVE-2026-19550
Freeipa: ipa: freeipa: trust-fetch-domains uses trust-read aci to gate a privileged ad trust refresh, allowing unauthorized ldap writes
Published 2026-08-11 · Modified
8.2EPSS 0.003
CVE-2025-5318
Libssh: out-of-bounds read in sftp_handle()
Published 2025-06-24 · Modified
8.1EPSS 0.018
CVE-2026-1767
Localsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leading to denial of service or information disclosure via malformed mp3 id3 tags
Published 2026-06-16 · Analyzed
8.1EPSS 0.002
CVE-2026-31431
crypto: algif_aead - Revert to operating out-of-place
Published 2026-04-22 · Analyzed
7.8KEVEPSS 0.034
CVE-2025-5914
Libarchive: double free at archive_read_format_rar_seek_data() in archive_read_support_format_rar.c
Published 2025-06-09 · Modified
7.8EPSS 0.004
CVE-2026-4775
Libtiff: libtiff: arbitrary code execution or denial of service via signed integer overflow in tiff file processing
Published 2026-03-24 · Modified
7.8EPSS 0.004
CVE-2026-48864
Libsolv: heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data
Published 2026-05-26 · Modified
7.8EPSS 0.003
CVE-2026-50258
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shift levels
Published 2026-06-05 · Modified
7.8EPSS 0.002
CVE-2026-50259
Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths indexing
Published 2026-06-05 · Modified
7.8EPSS 0.002
1 / 5Next →