Red hat satellite 6
This hub aggregates every CVE we track for Red hat satellite 6, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
38
CVEs tracked
0
Critical
18
High
0
In CISA KEV
Severity distribution
MEDIUM19HIGH18LOW1
Monthly trend
0
1
2
0
0
1
1
0
3
0
0
0
0
0
2
0
1
3
2
0
3
3
6
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat satellite 6.
- CVE-2026-16493Ansible-core: argument injection in ansible-galaxy collection install via git clone (incomplete fix for cve-2026-11332)7.8
- CVE-2026-48863Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verification allows denial of service7.5
- CVE-2026-5138Foreman: foreman: information disclosure via improper validation of nested request parameters4.3
- CVE-2026-5135Foreman: foreman: unauthorized modification of host configurations via broken access control6.5
- CVE-2026-5142Foreman: foreman: cross-tenant private ssh key disclosure via taxonomy scoping bypass6.5
- CVE-2026-5136Foreman: foreman: privilege escalation to administrator-level access via usergroup role assignment manipulation8.8
- CVE-2026-13316Foreman: ssrf to cloud metada service through unvalidated test_url parameters in foreman config4.4
- CVE-2026-12515Katello: missing repository authorization in content_uploads exposes cross-product content existence4.3
- CVE-2026-11332Ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution7.8
- CVE-2026-44604Rpm: command injection in rpmuncompress dountar() via unescaped archive top-level directory name in popen() shell command7.0
- CVE-2026-9149Libsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file6.5
- CVE-2026-9150Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums6.5
- CVE-2026-1961Forman: foreman: remote code execution via command injection in websocket proxy8.0
- CVE-2026-4324Rubygem-katello: katello: denial of service and potential information disclosure via sql injection5.4
- CVE-2026-0980Rubyipmi: red hat satellite: remote code execution in rubyipmi via malicious bmc username8.3
Product normalization is registry-driven with AI assist and human review. How it works