Red hat enterprise linux 9.6 extended update support
This hub aggregates every CVE we track for Red hat enterprise linux 9.6 extended update support, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
46
CVEs tracked
3
Critical
30
High
0
In CISA KEV
Severity distribution
HIGH30MEDIUM13CRITICAL3
Monthly trend
0
0
0
0
0
0
1
0
0
1
0
0
1
0
0
1
6
5
2
3
8
7
9
1
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat enterprise linux 9.6 extended update support.
- CVE-2026-10118Poppler: integer overflow in poppler splashoutputdev::tilingpatternfill leads to heap buffer overflow via unchecked dimension multiplication7.8
- CVE-2026-4408Samba: remote code execution in samr9.0
- CVE-2026-1933Samba: missing access check on reparse point operations7.1
- CVE-2026-2340Samba: vfs_worm does not block directory modification6.5
- CVE-2026-3012Samba: group policy certificate enrollment uses http:// without validation8.0
- CVE-2026-4480Samba: samba: remote code execution in printing subsystem via unescaped job description9.0
- CVE-2026-9064389-ds-base: 389-ds-base: unbounded ldap controls count in get_ldapmessage_controls_ext() causes cpu and heap amplification (remote dos)7.5
- CVE-2026-4802Cockpit: cockpit: arbitrary command execution via crafted links in system logs ui8.0
- CVE-2026-34002Xorg: xwayland: x.org x server: information disclosure or denial of service via out-of-bounds read in xkb modifier map handling6.1
- CVE-2026-34000Xwayland: xorg: x.org x server: information disclosure and denial of service via out-of-bounds read in xkb geometry processing.6.1
- CVE-2026-34003Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access7.8
- CVE-2026-34001Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption7.8
- CVE-2026-33999Xorg: xwayland: x.org x server: denial of service via integer underflow in xkb compatibility map handling7.8
- CVE-2026-4878Libcap: libcap: privilege escalation via toctou race condition in cap_set_file()6.7
- CVE-2026-4631Cockpit: cockpit: unauthenticated remote code execution due to ssh command-line argument injection9.8
Product normalization is registry-driven with AI assist and human review. How it works