Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Red Hat Hardened Images — Vulnerabilities & Security Advisories 18

All 18 CVE vulnerabilities found in Red Hat Hardened Images, with AI-generated Chinese analysis, references, and POCs.

Vendor: Red Hat

CVE IDTitleCVSSSeverityPublished
CVE-2026-33846 Gnutls: gnutls: denial of service via heap buffer overflow in dtls handshake fragment reassembly CWE-130 7.5 High2026-05-04
CVE-2026-6732 Libxml2: libxml2: denial of service via crafted xsd-validated document CWE-843 6.5 Medium2026-04-23
CVE-2026-1584 Gnutls: gnutls: remote denial of service via crafted clienthello with invalid psk binder CWE-476 7.5 High2026-04-09
CVE-2025-14821 Libssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windows CWE-427 7.8 High2026-04-07
CVE-2026-5745 Libarchive: a null pointer dereference vulnerability exists in the acl parser of libarchive CWE-476 5.5 Medium2026-04-07
CVE-2026-3184 Util-linux: util-linux: access control bypass due to improper hostname canonicalization CWE-289 3.7 Low2026-04-03
CVE-2026-2625 Rust-rpm-sequoia: rust-rpm-sequoia: denial of service via crafted rpm file during signature verification CWE-347 4.0 Medium2026-04-03
CVE-2026-0966 Libssh: buffer underflow in ssh_get_hexa() on invalid input CWE-124 7.5AIHighAI2026-03-26
CVE-2026-2100 P11-kit: null dereference via c_derivekey with specific null parameters CWE-824 5.3 Medium2026-03-26
CVE-2026-4426 Libarchive: libarchive: denial of service via malformed iso file processing CWE-1335 6.5 Medium2026-03-19
CVE-2026-4105 Systemd: systemd: privilege escalation via improper access control in registermachine d-bus method CWE-284 6.7 Medium2026-03-13
CVE-2026-26158 Busybox: busybox: arbitrary file modification and privilege escalation via unvalidated tar archive entries CWE-73 7.0 High2026-02-11
CVE-2026-26157 Busybox: busybox: arbitrary file overwrite and potential code execution via incomplete path sanitization CWE-73 7.0 High2026-02-11
CVE-2026-1757 Libxml2: memory leak leading to local denial of service in xmllint interactive shell CWE-401 6.2 Medium2026-02-02
CVE-2026-0988 Glib: glib: denial of service via integer overflow in g_buffered_input_stream_peek() CWE-190 3.7 Low2026-01-21
CVE-2026-0992 Libxml2: libxml2: denial of service via crafted xml catalogs CWE-400 2.9 Low2026-01-15
CVE-2026-0989 Libxml2: unbounded relaxng include recursion leading to stack overflow CWE-674 3.7 Low2026-01-15
CVE-2026-0990 Libxml2: libxml2: denial of service via uncontrolled recursion in xml catalog processing CWE-674 5.9 Medium2026-01-15

All 18 known CVE vulnerabilities affecting Red Hat Hardened Images with full Chinese analysis, references, and POCs where available.