Red Hat RHEM
10 known vulnerabilities in Red Hat RHEM, 6 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-46595 CVSS 10.0 critical Previously, CVE-2024-45337 fixed an authorization bypass for misused ssh server configurations; if any other type of callback is passed…
- CVE-2026-42508 CVSS 9.1 critical Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and…
- CVE-2026-39835 CVSS 5.3 medium SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by…
- CVE-2026-39832 CVSS 9.1 critical When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request…
- CVE-2026-39830 CVSS 9.1 critical A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection's read loop. The…
- CVE-2026-39829 CVSS 7.5 high The RSA and DSA public key parsers did not enforce size limits on key parameters. A crafted public key with an excessively large modulus…
- CVE-2026-39828 CVSS 6.3 medium When an SSH server authentication callback returned PartialSuccessError with non-nil Permissions, those permissions were silently…
- CVE-2026-33816 CVSS 9.8 critical Memory-safety vulnerability in github.com/jackc/pgx/v5.
- CVE-2026-33815 CVSS 9.8 critical Memory-safety vulnerability in github.com/jackc/pgx/v5.
- CVE-2026-27137 CVSS 7.5 high When verifying a certificate chain which contains a certificate containing multiple email address constraints which share common local…