Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Red Hat Enterprise Linux 9 — Vulnerabilities & Security Advisories 25

All 25 CVE vulnerabilities found in Red Hat Enterprise Linux 9, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of Common Weakness Enumerations (CWEs) associated with Red Hat Enterprise Linux 9, sourced directly from Red Hat as the vendor. It systematically collects security vulnerabilities affecting this specific operating system release, covering the period from its initial public release through to the present day, including any retrospective updates for previously untracked issues. Users can leverage this resource to track Red Hat’s security advisories and errata notices, gaining insight into how specific weakness classes are mitigated or exploited within the RHEL 9 environment. Additionally, the page offers a detailed history of vulnerabilities linked to this product, allowing administrators and security analysts to understand the patching cadence and the evolution of security practices over time. By centralizing these data points, the page serves as a reference for assessing risk exposure and verifying compliance with internal security policies. It does not provide real-time monitoring but rather historical and current static data for audit and review purposes. The information is structured to facilitate quick lookup of known flaws, their severity ratings, and the corresponding fixed versions. This approach ensures that stakeholders have a clear view of the security posture of Red Hat Enterprise Linux 9 without needing to navigate multiple disparate sources. All data is derived from official vendor channels to ensure accuracy and reliability for enterprise decision-making.

Vendor: Red Hat

CVE IDTitleCVSSSeverityPublished
CVE-2026-58384 Gimp: gimp: integer overflow in read_rle_channel() CWE-190 7.3 High2026-07-07
CVE-2026-58380 Gimp: gimp: stack buffer overflow in pnmscanner_gettoken() CWE-193 7.3 High2026-07-06
CVE-2026-58379 Gimp: gimp: heap buffer overflow in read_channel_data() CWE-122 7.3 High2026-07-03
CVE-2026-53704 Gstreamer1-plugins-ugly-free: gstreamer: out-of-bounds read in realmedia demuxer fileinfo metadata parser CWE-125 7.1 High2026-06-15
CVE-2023-6917 Pcp: unsafe use of directories allows pcp to root privilege escalation CWE-367 6.0 Medium2024-02-28
CVE-2024-1151 Kernel: stack overflow problem in open vswitch kernel module leading to dos CWE-121 5.5 Medium2024-02-11
CVE-2023-6531 Kernel: gc's deletion of an skb races with unix_stream_read_generic() leading to uaf CWE-362 7.0 High2024-01-21
CVE-2023-4001 Grub2: bypass the grub password protection feature CWE-290 6.8 Medium2024-01-15
CVE-2023-6679 Kernel: null pointer dereference in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c CWE-476 5.5 Medium2023-12-11
CVE-2023-5871 Libnbd: malicious nbd server may crash libnbd CWE-617 5.3 Medium2023-11-27
CVE-2023-4535 Opensc: out-of-bounds read in myeid driver handling encryption using symmetric keys CWE-125 4.5 Medium2023-11-06
CVE-2023-5574 Xorg-x11-server: use-after-free bug in damagedestroy CWE-416 7.0 High2023-10-25
CVE-2023-39191 Kernel: ebpf: insufficient stack type checks in dynptr CWE-20 8.2 High2023-10-04
CVE-2023-3576 Libtiff: memory leak in tiffcrop.c CWE-119 5.5 Medium2023-10-04
CVE-2023-42756 Kernel: netfilter: race condition between ipset_cmd_add and ipset_cmd_swap CWE-362 4.4 Medium2023-09-28
CVE-2023-5215 Libnbd: crash or misbehaviour when nbd server returns an unexpected block size CWE-241 5.3 Medium2023-09-28
CVE-2023-38201 Keylime: challenge-response protocol bypass during agent registration CWE-639 6.5 Medium2023-08-25
CVE-2023-4273 Kernel: exfat: stack overflow in exfat_get_uniname_from_ext_entry CWE-121 6.0 Medium2023-08-09
CVE-2023-4147 Kernel: netfilter: nf_tables_newrule when adding a rule with nfta_rule_chain_id leads to use-after-free CWE-416 7.8 High2023-08-07
CVE-2023-4194 Kernel: tap: tap_open(): correctly initialize socket uid next fix of i_uid to current_fsuid CWE-843 5.5 Medium2023-08-07
CVE-2023-3773 Kernel: xfrm: out-of-bounds read of xfrma_mtimer_thresh nlattr CWE-125 5.5 Medium2023-07-25
CVE-2023-3640 Kernel: x86/mm: a per-cpu entry area leak was identified through the init_cea_offsets function when prefetchnta and prefetcht2 instructions being used for the per-cpu entry area mapping to the user space CWE-385 7.0 High2023-07-24
CVE-2023-3750 Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service CWE-667 6.5 Medium2023-07-24
CVE-2023-38200 Keylime: registrar is subject to a dos against ssl connections CWE-400 7.5 High2023-07-24
CVE-2023-3674 Keylime: attestation failure when the quote's signature does not validate CWE-1283 2.3 Low2023-07-19

All 25 known CVE vulnerabilities affecting Red Hat Enterprise Linux 9 with full Chinese analysis, references, and POCs where available.