Where
-Infinity
0

redhat Enterprise Linux389-ds-base: 389-ds-base: non-constant-time comparison in pbkdf2-sha256 password verification

Risk 20
Severity
3.7
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: static initialization vector in aes-cbc/3des-cbc attribute encryption

Risk 26
Severity
4.4
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: heap-buffer-overflow in dn normalization via quoted multivalued rdn

Risk 27
Severity
5.3
First published (updated )

GIMP GIMPGimp: gimp: integer overflow in read_rle_channel()

Risk 68
Severity
7.8
First published (updated )

redhat Enterprise LinuxGimp: gimp: denial of service via integer overflow in playstation tim loader

Risk 31
Severity
5.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxGimp: gimp: stack buffer overflow in pnmscanner_gettoken()

Risk 68
Severity
7.8
First published (updated )

redhat Enterprise LinuxP11-kit: stack exhaustion via unbounded recursion in rpc attribute parsing

Risk 36
Severity
6.2
First published (updated )

redhat Enterprise LinuxYelp: yelp-xsl: overly permissive content security policy in yelp allows host file disclosure from flatpak applications

Risk 40
Severity
7.1
First published (updated )

redhat Enterprise LinuxUtil-linux: util-linux: heap use-after-free in libblkid nested partition probing

Risk 45
Severity
6.8
First published (updated )

redhat Enterprise LinuxSpice-vdagent: integer overflow in udscs_write() leading to heap buffer overflow

Risk 35
Severity
5.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxSpice-vdagent: path traversal in file transfer via unsanitized filename

Risk 26
Severity
4.4
First published (updated )

Linux Linux kernelmm/list_lru: drain before clearing xarray entry on reparent

Risk 69
Severity
7.8
First published (updated )

Linux Linux kerneldrm/gem: Try to fix change_handle ioctl, attempt 4

Risk 69
Severity
7.8
First published (updated )

redhat Enterprise LinuxGlib: integer underflow in gio/gdbusintrospection.c via "g_dbus_node_info_new_for_xml"

Risk 66
Severity
9.1
First published (updated )

redhat Enterprise LinuxGlib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxGlib: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list"

Risk 64
Severity
8.6
First published (updated )

redhat Enterprise LinuxGlib: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend"

Risk 54
Severity
8.2
First published (updated )

redhat Enterprise LinuxGlib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char()

Risk 54
Severity
8.2
First published (updated )

redhat Enterprise LinuxGlib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid gdatetime

Risk 43
Severity
7.5
First published (updated )

redhat Enterprise Linuxice: fix double-free of tx_buf skb

Risk 69
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Linux Linux kernelipv6: fix possible UAF in icmpv6_rcv()

Risk 86
Severity
9.8
First published (updated )

Linux Linux kernelnetfilter: conntrack: remove sprintf usage

Risk 86
Severity
9.8
First published (updated )

Linux Linux kernelnetfilter: nat: use kfree_rcu to release ops

Risk 69
Severity
7.8
First published (updated )

redhat Enterprise LinuxGlib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal()

Risk 54
Severity
8.2
First published (updated )

Dnsmasq DnsmasqDnsmasq: dnsmasq: out-of-bounds read in find_soa() due to missing extrabytes validation

Risk 27
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxGstreamer1-plugins-bad: gstreamer1-plugins-bad: 1-byte heap out-of-bounds read in h.264 nal extension slice parser

Risk 28
Severity
4.4
First published (updated )

redhat Enterprise LinuxGstreamer1-plugins-bad: gstreamer1-plugins-bad: global buffer overflow (oob read) in h.266/vvc vui parameter parser

Risk 22
Severity
4.3
First published (updated )

redhat Enterprise LinuxDnsmasq: dnsmasq: heap buffer overflow in log_query() when logging unsupported ds/dnskey replies

Risk 35
Severity
5.9
First published (updated )

redhat Enterprise LinuxSssd: use-after-free crash in sssd' 'sssd_pam' process

Risk 56
Severity
6.4
First published (updated )

redhat Enterprise LinuxLibsoup: incomplete fix for cve-2026-2443: range suffix overflow in libsoup soupserver

Risk 32
Severity
4.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203