Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Red Hat Enterprise Linux 10 — Vulnerabilities & Security Advisories 188

All 188 CVE vulnerabilities found in Red Hat Enterprise Linux 10, with AI-generated Chinese analysis, references, and POCs.

This page documents known vulnerabilities associated with Red Hat Enterprise Linux 10 under the Common Weakness Enumeration framework. It serves as a comprehensive resource for tracking security flaws identified in this specific enterprise operating system release, providing a structured view of potential risks. The content herein aggregates vulnerability data covering a broad historical timeline, capturing incidents from initial discovery through to resolution. It includes details on software flaws, configuration errors, and design weaknesses that have been reported against Red Hat Enterprise Linux 10 components. The data reflects the evolving threat landscape and the cumulative security posture of the product over time, ensuring that administrators and security analysts have access to a complete record of past and present issues. Users can utilize this resource to track vendor advisories issued by Red Hat, gaining insight into how specific weakness classes are addressed in enterprise environments. It enables security teams to understand the prevalence and impact of particular vulnerability types within this OS version. Additionally, the page allows for the lookup of a product’s vulnerability history, supporting risk assessment, patch prioritization, and long-term security planning. By consolidating this information, the page facilitates a deeper understanding of the security context surrounding Red Hat Enterprise Linux 10, helping stakeholders make informed decisions regarding system hardening and maintenance schedules without relying on fragmented data sources.

Vendor: Red Hat

CVE IDTitleCVSSSeverityPublished
CVE-2026-68563 Ansible-collection-redhat-leapp: ansible-collection-redhat-leapp: information disclosure of postgresql data via insecure backup permissions CWE-732 5.5 Medium2026-07-30
CVE-2026-68562 Ansible-collection-redhat-leapp: ansible-collection-redhat-leapp: information disclosure via leapp report tampering CWE-610 6.2 Medium2026-07-30
CVE-2026-58216 Samba: kpasswd service: kpasswd packet that contains malformed asn.1 might cause the server to access 6 bytes of unallocated memory leading server to crash CWE-125 5.3 Medium2026-07-30
CVE-2026-58222 Samba: samba ad ldap compare filter injection and trusted-request confusion disclose protected attributes CWE-90 8.8 High2026-07-30
CVE-2026-58218 Samba: dns signing dos via tkey name cache exhaustion CWE-410 5.3 Medium2026-07-30
CVE-2026-16531 Pcp: pcp: arbitrary file creation via path traversal in pmproxy logger servlet CWE-22 5.3 Medium2026-07-30
CVE-2026-16530 Pcp: pcp: remote denial of service and information leakage CWE-125 6.5 Medium2026-07-30
CVE-2026-16529 Pcp: pcp: denial of service due to signed integer overflow CWE-190 7.5 High2026-07-30
CVE-2026-16527 Pcp: pcp pmproxy: unauthenticated access to /store endpoint allows bypassing pmcd access rules 7.3 High2026-07-30
CVE-2026-16526 Pcp: pcp: privilege escalation to root via linux_sockets pmda vulnerability CWE-403 8.8 High2026-07-30
CVE-2026-16524 Pcp: pcp linux_sockets pmda: arbitrary command execution via command injection CWE-78 7.8 High2026-07-30
CVE-2026-18220 Binutils: binutils: out-of-bounds write in bfd dlx elf backend relocation processing CWE-787 7.8 High2026-07-29
CVE-2026-18107 Criu: criu: container escape via rseq critical section hijack during checkpoint/restore CWE-269 7.8 High2026-07-28
CVE-2026-16313 Sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export CWE-93 7.6 High2026-07-28
CVE-2026-17072 Gstreamer1-plugins-good: gst-plugins-good: 4-byte heap over-read in gst_matroska_parse_flac_stream_headers when parsing flac codec data in matroska containers CWE-125 3.3 Low2026-07-28
CVE-2026-17523 Kernel: can:bcm: arbitrary kernel code execution leading to escalate privileges CWE-825 7.8 High2026-07-27
CVE-2026-66338 Libsoup: libsoup: http request smuggling via permissive chunk-size parsing in soup_body_input_stream_read_chunked() CWE-444 5.4 Medium2026-07-24
CVE-2026-66337 Libsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_input_stream_read_until() CWE-125 6.5 Medium2026-07-24
CVE-2026-66339 Libsoup: libsoup: proxy credentials leak to destination server via proxy-authorization header in connect tunnels CWE-201 6.5 Medium2026-07-24
CVE-2026-16743 Accountsservice: accountsservice: arbitrary file read via seticonfile for systemd-homed users CWE-269 5.5 Medium2026-07-24
CVE-2026-16730 Dbus-broker: dbus-broker: session bus denial of service via emfile during peer setup CWE-755 5.5 Medium2026-07-24
CVE-2026-64611 Libcupsfilters: cups-filters: libcupsfilters: cpu exhaustion via infinite loop in cfieee1284normalizemakemodel() CWE-835 7.5 High2026-07-23
CVE-2026-6390 Nano: gnu nano: arbitrary memory writes, information disclosure, or denial of service via format string vulnerability in error handling. CWE-134 6.8 Medium2026-07-23
CVE-2026-16473 Sbc: sbc: heap out-of-bounds read via crafted sbc audio frame CWE-125 4.3 Medium2026-07-22
CVE-2026-12548 Libsoup: heap out-of-bounds read in libsoup due to integer truncation CWE-125 4.2 Medium2026-07-21
CVE-2026-12547 Libsoup: information disclosure in libsoup via soupauthmanager proxy credential leak on proxy switch CWE-201 3.4 Low2026-07-21
CVE-2026-16461 Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbdump() short-mode version-list formatting CWE-121 6.5 Medium2026-07-21
CVE-2026-15811 Kronosnet: kronosnet: encryption key exposure in memory after cryptographic configuration changes CWE-212 5.8 Medium2026-07-21
CVE-2026-15812 Kronosnet: kronosnet: access control list bypass via link id spoofing on unencrypted dynamic links CWE-290 4.8 Medium2026-07-21
CVE-2026-64612 Libcupsfilters: cups-filters: libcupsfilters: cups image filter process abort via malformed png CWE-248 7.5 High2026-07-20

All 188 known CVE vulnerabilities affecting Red Hat Enterprise Linux 10 with full Chinese analysis, references, and POCs where available.