Red hat hardened images
This hub aggregates every CVE we track for Red hat hardened images, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
211
CVEs tracked
4
Critical
79
High
0
In CISA KEV
Severity distribution
MEDIUM104HIGH79LOW24CRITICAL4
Monthly trend
0
0
0
0
0
0
0
0
5
5
0
6
1
1
8
12
5
24
31
13
27
19
20
34
2024-102026-09
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat hardened images.
- CVE-2026-88840Busybox: busybox: tls ssl_server reads one byte out of bounds when parsing truncated clienthello5.3
- CVE-2026-88839Busybox: busybox: passwd/group parser writes heap pointers out of bounds due to stale tokenize() endpoint6.7
- CVE-2026-88837Busybox: busybox: httpd misidentifies yescrypt password hashes as plaintext, inverting authentication6.5
- CVE-2026-88835Busybox: busybox: dpkg read_package_field() steps past nul terminator, causing out-of-bounds read on malformed .deb packages6.1
- CVE-2026-88831Busybox: busybox: httpd silently fails open when ip deny rules contain invalid cidr prefix lengths5.3
- CVE-2026-88832Busybox: busybox: romfs volume id parsing performs unbounded memcpy into fixed-size label buffer, causing heap overflow7.3
- CVE-2026-88830Busybox: busybox: tls montgomery reduction allocates bytes instead of digits, causing a pre-auth heap buffer overflow7.5
- CVE-2026-96512Sudo: sudo: tz environment variable allows bypass of notbefore/notafter time-based authorization7.8
- CVE-2026-95619Gcc: libstdc++ integer overflow in `new` operator7.7
- CVE-2026-93653Poppler: poppler: unbounded cpu loop in splashoutputdev::tilingpatternfill via unvalidated tiling-pattern repeat count (denial of service)5.5
- CVE-2026-76781Libxml2: libxml2: null pointer dereference parsing nextcatalog without catalog attribute5.5
- CVE-2026-92925Redis: redis: out-of-bounds read via crafted cluster bus packets7.1
- CVE-2026-42784Sequoia-openpgp: sequoia-openpgp: cryptographic integrity compromise via key flag confusion7.4
- CVE-2025-11395Podman: arbitrary file write when importing oci archive5.5
- CVE-2026-85234Tftp: tftp-hpa: denial of service due to out-of-bounds read/write in remap engine7.5
Product normalization is registry-driven with AI assist and human review. How it works