Skip to content
VulniPulse

Complete feed

Recently updated

Advisories the vendor has revised

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

High7.0Vendor: MediumRed Hat

High [CVE-2026-68128] Linux kernel (ice): Denial of Service via out-of-range ptype in VIRTCHNL

Linux kernel (ice): Denial of Service via out-of-range ptype in VIRTCHNL. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux for NVIDIA 26; Red Hat package: kernel.

CVE-2026-68128
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68125] reject frames shorter than the authentication tag

reject frames shorter than the authentication tag. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-68125
Linux Kernel
Aug 10, 2026
High7.3Vendor: MediumRed Hat

High [CVE-2026-68121] Linux kernel: PPPoE memory corruption via stale pointer

Linux kernel: PPPoE memory corruption via stale pointer. Red Hat rates this moderate (CVSS 7.3). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-68121
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68118] challenge ACK for non-exact RST in SYN-RECEIVED

challenge ACK for non-exact RST in SYN-RECEIVED. Red Hat rates this moderate (CVSS 7). Weakness: CWE-358. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux for NVIDIA 26; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-68118
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68108] fix integer overflow in image size

fix integer overflow in image size. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-68108
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68100] validate num_subauth when copying ACE in set_ntacl_dacl

validate num_subauth when copying ACE in set_ntacl_dacl. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-68100
Linux Kernel
Aug 10, 2026
High7.0Red Hat

High [CVE-2026-68099] restore DACL size on check_add_overflow to avoid malformed ACL

restore DACL size on check_add_overflow() to avoid malformed ACL. Red Hat rates this important (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-68099
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68093] Bump asid_generation on CPU online to avoid ASID collision after hotplug

Bump asid_generation on CPU online to avoid ASID collision after hotplug. Red Hat rates this moderate (CVSS 7). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-68093
Linux Kernel
Aug 10, 2026
High7.1Red Hat

High [CVE-2026-72568] Denial of Service via Out-of-Bounds Read in Cluster Bus

Denial of Service via Out-of-Bounds Read in Cluster Bus. Red Hat rates this a security issue. Weakness: CWE-125. Red Hat lists fixing advisory RHSA-2026:43236 with package valkey-main-9.0.5-0.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images; and 2 more. Affected products named by the advisory: Red Hat package: valkey; Red Hat package: redis.

CVE-2026-72568
Red Hat Enterprise Linux
Aug 10, 2026
High7.5Apache

High [CVE-2026-61899] Vulnerability in tapestry-core in Apache Tapestry 5.5.0+ on all platforms allows attackers to download clsspath assets via specially crafted URLs

Vulnerability in tapestry-core in Apache Tapestry 5.5.0+ on all platforms allows attackers to download clsspath assets via specially crafted URLs. Users are recommended to upgrade to version 5.9.1, which fixes this issue.

CVE-2026-61899
Unclassified
Aug 10, 2026
High7.8Vendor: MediumRed Hat

High [CVE-2026-71393] integer overflow via a malicious font file

integer overflow via a malicious font file. Red Hat rates this moderate (CVSS 7.8). Weakness: CWE-190.

CVE-2026-71393
Unclassified
Aug 10, 2026
High7.5Apache

High [CVE-2026-55814] Missing Authentication in Apache Ranger Download APIs on versions <= 2.8.0

Missing Authentication in Apache Ranger Download APIs on versions <= 2.8.0. Users are recommended to upgrade to version 2.9.0, which fixes this issue.

CVE-2026-55814
Unclassified
Aug 10, 2026
High7.5Apache

High [CVE-2026-65942] TLS hostname verification issue in Apache Ranger Client Code in versions <= 2.8.0

TLS hostname verification issue in Apache Ranger Client Code in versions <= 2.8.0. Users are recommended to upgrade to version 2.9.0, which fixes this issue.

CVE-2026-65942
Unclassified
Aug 10, 2026
High7.3Apache

High [CVE-2026-65948] UnixAuth lacks brute-force protection in Apache Ranger versions <= 2.8.0

UnixAuth lacks brute-force protection in Apache Ranger versions <= 2.8.0. Note: UnixAuth is NOT a recommended option for production deployments. Users are recommended to upgrade to version 2.9.0, which fixes this issue.

CVE-2026-65948
Unclassified
Aug 10, 2026
High7.5Apache

High [CVE-2026-44630] Improper validation of length fields in the Apache IoTDB RPC service may allow a remote unauthenticated attacker to cause a denial of service

Improper validation of length fields in the Apache IoTDB RPC service may allow a remote unauthenticated attacker to cause a denial of service. By sending a crafted malformed Thrift frame, an attacker can cause IoTDB to allocate an excessive amount of memory and crash with an OutOfMemoryError. This issue affects Apache IoTDB: before 1.3.8, from 2.0.0 before 2.0.9. Users are recommended to upgrade to version 2.0.10, which fixes the issue.

CVE-2026-44630
Unclassified
Aug 10, 2026
High7.1Red Hat

High [CVE-2026-19389] integer overflow/underflow in asfdemux bounds checks leading to out-of-bounds read

integer overflow/underflow in asfdemux bounds checks leading to out-of-bounds read. Red Hat rates this important (CVSS 7.1). Weakness: CWE-190. Red Hat lists fixing advisory RHSA-2026:55865 with package gstreamer1-plugins-bad-free-0:1.22.12-7.el9_8.4, gstreamer1-plugins-ugly-free-0:1.22.12-6.el9_8.2, gstreamer1-plugins-ugly-free-0:1.26.7-2.el10_2.2. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10.

CVE-2026-19389
Unclassified
Aug 10, 2026
High7.6Red Hat

High [CVE-2026-19387] heap out-of-bounds write in adpcmdec IMA/DVI ADPCM decoder

heap out-of-bounds write in adpcmdec IMA/DVI ADPCM decoder. Red Hat rates this important (CVSS 7.6). Weakness: CWE-787. Red Hat lists fixing advisory RHSA-2026:55865 with package gstreamer1-plugins-bad-free-0:1.26.7-2.el10_2.7, gstreamer1-plugins-bad-free-0:1.22.12-7.el9_8.4, gstreamer1-plugins-ugly-free-0:1.22.12-6.el9_8.2, gstreamer1-plugins-bad-free-0:1.16.1-9.el8_10.2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8.

CVE-2026-19387
Unclassified
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68388] handle overlapping allocated ranges in fallocate

handle overlapping allocated ranges in fallocate. Red Hat rates this moderate (CVSS 7). Weakness: CWE-131. Red Hat lists fixing advisory RHSA-2026:57251 with package kernel-0:6.12.0-211.49.1.el10_2, kernel-0:5.14.0-687.41.1.el9_8, kernel-rt-0:4.18.0-553.157.1.rt7.498.el8_10, kernel-0:4.18.0-553.157.1.el8_10. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8.

CVE-2026-68388
Unclassified
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68315] validate stream count in sctp_process_strreset_inreq

validate stream count in sctp_process_strreset_inreq(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68315
Linux Kernel
Aug 10, 2026
High7.3Red Hat

High [CVE-2026-68426] fix stale skb->prev after async crypto steals a GSO segment

fix stale skb->prev after async crypto steals a GSO segment. Red Hat rates this important (CVSS 7.3). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68426
Linux Kernel
Aug 10, 2026