Red hat openshift container platform 4
This hub aggregates every CVE we track for Red hat openshift container platform 4, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
248
CVEs tracked
4
Critical
75
High
0
In CISA KEV
Severity distribution
MEDIUM141HIGH75LOW28CRITICAL4
Monthly trend
1
5
6
3
7
15
12
2
6
8
12
4
4
4
6
4
6
7
13
21
15
24
32
14
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat openshift container platform 4.
- CVE-2026-15816Dracut: dracut: root code execution via unescaped error message written to sourced emergency hook script in die()7.5
- CVE-2026-18938P11-kit: integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems6.2
- CVE-2026-19079Policycoreutils: policycoreutils: toctou race condition in fixfiles allows arbitrary selinux label manipulation4.4
- CVE-2026-18839Popt-devel: popt-static: size_t underflow in singleoptionhelp2.2
- CVE-2026-49331Openshift/oauth-proxy: openshift/oauth-proxy: unauthenticated identity header injection on whitelisted paths6.5
- CVE-2026-71227Libkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return5.1
- CVE-2026-71226Libkcapi: memory corruption via uncanceled aio requests on error in libkcapi's one-shot aio path7.3
- CVE-2026-71225Libkcapi: iv reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries6.5
- CVE-2026-68743Sssd: sssd: pam responder out-of-bounds read via unchecked auth_token_length in protocol v15.5
- CVE-2026-18739Popt-devel: popt-static: off-by-one in poptstuffargs2.5
- CVE-2026-68744Sssd: sssd: nss responder uninitialized heap disclosure in initgroups reply3.3
- CVE-2026-18477Tar: tar: toctou in incremental dumpdir 'x' rename handling allows restore path escape4.4
- CVE-2026-18508Tar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwrite4.4
- CVE-2026-68742Sssd: sssd: nss responder out-of-bounds read via unchecked addrlen in gethostbyaddr5.5
- CVE-2026-58216Samba: kpasswd service: kpasswd packet that contains malformed asn.1 might cause the server to access 6 bytes of unallocated memory leading server to crash5.3
Product normalization is registry-driven with AI assist and human review. How it works