Where
AND
-Infinity
0

redhat Enterprise Linux389-ds-base: 389-ds-base: static initialization vector in aes-cbc/3des-cbc attribute encryption

Risk 26
Severity
4.4
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: heap-buffer-overflow in dn normalization via quoted multivalued rdn

Risk 27
Severity
5.3
First published (updated )

redhat Enterprise LinuxGimp: gimp: denial of service via integer overflow in playstation tim loader

Risk 31
Severity
5.5
First published (updated )

redhat Enterprise LinuxP11-kit: stack exhaustion via unbounded recursion in rpc attribute parsing

Risk 36
Severity
6.2
First published (updated )

redhat Enterprise LinuxUtil-linux: util-linux: heap use-after-free in libblkid nested partition probing

Risk 45
Severity
6.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxSpice-vdagent: integer overflow in udscs_write() leading to heap buffer overflow

Risk 35
Severity
5.1
First published (updated )

redhat Enterprise LinuxSpice-vdagent: path traversal in file transfer via unsanitized filename

Risk 26
Severity
4.4
First published (updated )

Dnsmasq DnsmasqDnsmasq: dnsmasq: out-of-bounds read in find_soa() due to missing extrabytes validation

Risk 27
Severity
5.3
First published (updated )

redhat Enterprise LinuxGstreamer1-plugins-bad: gstreamer1-plugins-bad: 1-byte heap out-of-bounds read in h.264 nal extension slice parser

Risk 28
Severity
4.4
First published (updated )

redhat Enterprise LinuxGstreamer1-plugins-bad: gstreamer1-plugins-bad: global buffer overflow (oob read) in h.266/vvc vui parameter parser

Risk 22
Severity
4.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxDnsmasq: dnsmasq: heap buffer overflow in log_query() when logging unsupported ds/dnskey replies

Risk 35
Severity
5.9
First published (updated )

redhat Enterprise LinuxSssd: use-after-free crash in sssd' 'sssd_pam' process

Risk 56
Severity
6.4
First published (updated )

redhat Enterprise LinuxLibsoup: incomplete fix for cve-2026-2443: range suffix overflow in libsoup soupserver

Risk 32
Severity
4.8
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: heap-buffer-overflows in __aclp__normalize_acltxt()

Risk 34
Severity
5.4
First published (updated )

redhat Enterprise LinuxCommunity.general: community.general nexmo — api credentials exposed in get url query string[security] community.general nexmo — api credentials exposed in get url query string

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

MariaDB MariaDBMariaDB: mysql_real_escape_string() incorrectly handled big5

Risk 66
Severity
6.9
First published (updated )

ansible/community/generalCommunity.general: community.general keyring_info — os keyring passphrase returned in plaintext

Risk 32
Severity
5.5
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: content sync plugin unbounded queue growth and race conditions

Risk 38
Severity
6.5
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: heap out-of-bounds read in ldif parser str2entry_state_information_from_type()

Risk 38
Severity
6.5
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: heap buffer over-read in ldap_utf8prev() via str2simple filter parsing

Risk 46
Severity
6.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise Linux389-ds-base: 389-ds-base: smd5 password storage plugin salt length integer underflow crash

Risk 38
Severity
6.5
First published (updated )

redhat Directory Server389-ds-base: 389-ds-base: partial stack address information leak via ber_printf type confusion in sso token handler

Risk 22
Severity
4.3
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: pbkdf2 password storage plugin unbounded iteration count denial of service

Risk 30
Severity
4.9
First published (updated )

redhat Enterprise Linux389-ds-base: 389-ds-base: use-after-free in schema reload via attr_syntax_swap_ht()

Risk 35
Severity
5
First published (updated )

redhat Enterprise LinuxXorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow()

Risk 34
Severity
5.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxXorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributes

Risk 34
Severity
5.5
First published (updated )

redhat Enterprise LinuxOpenssh: double free in red hat enterprise linux versions of openssh dh-gex client path during fips known-group validation leads to client-side denial of service

Risk 37
Severity
6.5
First published (updated )

redhat Enterprise LinuxOpenssh: local mitm of x11 forwarding via abstract unix socket pre-binding in red hat enterprise linux openssh client versions

Risk 41
Severity
6.1
First published (updated )

redhat Enterprise LinuxLibsolv: heap buffer overflow in libsolv repo_add_solv via negative maxsize from crafted .solv file

Risk 27
Severity
6.5
EPSS
0.29%
First published (updated )

redhat Enterprise LinuxLibsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums

Risk 27
Severity
6.5
EPSS
0.40%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203