Red hat hardened images
This hub aggregates every CVE we track for Red hat hardened images, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
165
CVEs tracked
4
Critical
57
High
0
In CISA KEV
Severity distribution
MEDIUM82HIGH57LOW22CRITICAL4
Monthly trend
0
0
0
0
0
0
0
0
0
5
5
0
6
1
1
8
12
5
23
30
13
26
19
11
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat hardened images.
- CVE-2026-15816Dracut: dracut: root code execution via unescaped error message written to sourced emergency hook script in die()7.5
- CVE-2026-18938P11-kit: integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems6.2
- CVE-2026-19079Policycoreutils: policycoreutils: toctou race condition in fixfiles allows arbitrary selinux label manipulation4.4
- CVE-2026-18839Popt-devel: popt-static: size_t underflow in singleoptionhelp2.2
- CVE-2026-44605Rpm: heap buffer overflow in ndb slot table parsing5.5
- CVE-2026-71227Libkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return5.1
- CVE-2026-71226Libkcapi: memory corruption via uncanceled aio requests on error in libkcapi's one-shot aio path7.3
- CVE-2026-71225Libkcapi: iv reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries6.5
- CVE-2026-18739Popt-devel: popt-static: off-by-one in poptstuffargs2.5
- CVE-2026-18477Tar: tar: toctou in incremental dumpdir 'x' rename handling allows restore path escape4.4
- CVE-2026-18508Tar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwrite4.4
- CVE-2026-18220Binutils: binutils: out-of-bounds write in bfd dlx elf backend relocation processing7.8
- CVE-2026-15003Binutils: gnu binutils: heap-buffer-overflow in linker leads to information disclosure and denial of service5.6
- CVE-2026-16730Dbus-broker: dbus-broker: session bus denial of service via emfile during peer setup5.5
- CVE-2026-16517Libarchive: libarchive: signed integer overflow in archive_write_zip_header2.9
Product normalization is registry-driven with AI assist and human review. How it works