{"schema_version":1,"title":"Red Hat Enterprise Linux 8 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 132 vulnerabilities in Red Hat Enterprise Linux 8: 0 in the last 7 days and 60 in the last 90 days, 5 of them critical and 0 exploited in the wild. The most recent, CVE-2026-58216, was published on 30 July 2026.","url":"https://junglewise.ai/threats/technologies/enterprise-linux-8","json_url":"https://junglewise.ai/threats/technologies/enterprise-linux-8.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/enterprise-linux-8","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":52,"all_time":132,"critical":5,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":60,"last_365_days":119},"latest":[{"cve":"CVE-2026-58216","cvss":5.3,"slug":"cve-2026-58216-samba-kdc-out-of-bounds-read-in-kpasswd-service","title":"Samba KDC out-of-bounds read in kpasswd service","severity":"medium","exploited":false,"published_at":"2026-07-30T16:17:14.767+00:00","url":"https://junglewise.ai/threats/cve-2026-58216-samba-kdc-out-of-bounds-read-in-kpasswd-service"},{"cve":"CVE-2026-58218","cvss":5.3,"slug":"cve-2026-58218-samba-internal-dns-server-denial-of-service-via-tkey-cache","title":"Samba internal DNS server denial of service via TKEY cache exhaustion","severity":"medium","exploited":false,"published_at":"2026-07-30T14:17:00.307+00:00","url":"https://junglewise.ai/threats/cve-2026-58218-samba-internal-dns-server-denial-of-service-via-tkey-cache"},{"cve":"CVE-2026-16527","cvss":7.3,"slug":"cve-2026-16527-red-hat-pcp-auth-bypass-in-pmproxy-store-endpoint","title":"Red Hat PCP auth bypass in pmproxy /store endpoint","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:02.813+00:00","url":"https://junglewise.ai/threats/cve-2026-16527-red-hat-pcp-auth-bypass-in-pmproxy-store-endpoint"},{"cve":"CVE-2026-16526","cvss":8.8,"slug":"cve-2026-16526-red-hat-pcp-privilege-escalation-in-linux-sockets-pmda","title":"Red Hat PCP privilege escalation in linux_sockets PMDA","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:02.663+00:00","url":"https://junglewise.ai/threats/cve-2026-16526-red-hat-pcp-privilege-escalation-in-linux-sockets-pmda"},{"cve":"CVE-2026-16524","cvss":7.8,"slug":"cve-2026-16524-pcp-linux-sockets-pmda-command-injection-in-network-persocket","title":"PCP linux_sockets PMDA command injection in network.persocket.filter","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:02.46+00:00","url":"https://junglewise.ai/threats/cve-2026-16524-pcp-linux-sockets-pmda-command-injection-in-network-persocket"},{"cve":"CVE-2026-18107","cvss":7.8,"slug":"cve-2026-18107-criu-privilege-escalation-via-rseq-critical-section-hijack-during","title":"CRIU privilege escalation via rseq critical section hijack during checkpoint","severity":"high","exploited":false,"published_at":"2026-07-28T19:17:32.42+00:00","url":"https://junglewise.ai/threats/cve-2026-18107-criu-privilege-escalation-via-rseq-critical-section-hijack-during"},{"cve":"CVE-2026-16313","cvss":7.6,"slug":"cve-2026-16313-sg3-utils-command-injection-via-udev-property-injection-in-sg-inq","title":"sg3_utils command injection via udev property injection in sg_inq","severity":"high","exploited":false,"published_at":"2026-07-28T17:16:37.807+00:00","url":"https://junglewise.ai/threats/cve-2026-16313-sg3-utils-command-injection-via-udev-property-injection-in-sg-inq"},{"cve":"CVE-2026-17072","cvss":3.3,"slug":"cve-2026-17072-gstreamer-gst-plugins-good-heap-out-of-bounds-read-in-matroska","title":"GStreamer gst-plugins-good heap out-of-bounds read in Matroska demuxer","severity":"low","exploited":false,"published_at":"2026-07-28T11:17:02.433+00:00","url":"https://junglewise.ai/threats/cve-2026-17072-gstreamer-gst-plugins-good-heap-out-of-bounds-read-in-matroska"},{"cve":"CVE-2026-66757","cvss":5.5,"slug":"cve-2026-66757-gnome-gimp-integer-overflow-in-file-sgi-plugin","title":"GNOME GIMP integer overflow in file-sgi plugin","severity":"medium","exploited":false,"published_at":"2026-07-27T19:17:23.473+00:00","url":"https://junglewise.ai/threats/cve-2026-66757-gnome-gimp-integer-overflow-in-file-sgi-plugin"},{"cve":"CVE-2026-17523","cvss":7.8,"slug":"cve-2026-17523-linux-kernel-local-privilege-escalation-in-can-bcm","title":"Linux Kernel local privilege escalation in CAN BCM","severity":"high","exploited":false,"published_at":"2026-07-27T10:16:36.27+00:00","url":"https://junglewise.ai/threats/cve-2026-17523-linux-kernel-local-privilege-escalation-in-can-bcm"},{"cve":"CVE-2026-16743","cvss":5.5,"slug":"cve-2026-16743-freedesktop-org-accountsservice-arbitrary-file-read-in","title":"freedesktop.org accountsservice arbitrary file read in SetIconFile","severity":"medium","exploited":false,"published_at":"2026-07-24T13:17:27.173+00:00","url":"https://junglewise.ai/threats/cve-2026-16743-freedesktop-org-accountsservice-arbitrary-file-read-in"},{"cve":"CVE-2026-12353","cvss":5.3,"slug":"cve-2026-12353-red-hat-certificate-system-memory-leak-in-tls-endpoint","title":"Red Hat Certificate System memory leak in TLS endpoint","severity":"medium","exploited":false,"published_at":"2026-07-23T20:17:07.077+00:00","url":"https://junglewise.ai/threats/cve-2026-12353-red-hat-certificate-system-memory-leak-in-tls-endpoint"},{"cve":"CVE-2026-64611","cvss":7.5,"slug":"cve-2026-64611-openprinting-libcupsfilters-infinite-loop-in","title":"OpenPrinting libcupsfilters infinite loop in cfIEEE1284NormalizeMakeModel","severity":"high","exploited":false,"published_at":"2026-07-23T11:16:40.68+00:00","url":"https://junglewise.ai/threats/cve-2026-64611-openprinting-libcupsfilters-infinite-loop-in"},{"cve":"CVE-2026-6390","cvss":6.8,"slug":"cve-2026-6390-gnu-nano-format-string-vulnerability-in-multi-buffer-error","title":"GNU nano format string vulnerability in multi-buffer error handling","severity":"medium","exploited":false,"published_at":"2026-07-23T05:16:38.36+00:00","url":"https://junglewise.ai/threats/cve-2026-6390-gnu-nano-format-string-vulnerability-in-multi-buffer-error"},{"cve":"CVE-2026-16552","cvss":6.3,"slug":"cve-2026-16552-systemd-systemd-tmpfiles-symlink-redirected-arbitrary-file","title":"systemd systemd-tmpfiles symlink-redirected arbitrary file overwrite","severity":"medium","exploited":false,"published_at":"2026-07-22T16:17:16.653+00:00","url":"https://junglewise.ai/threats/cve-2026-16552-systemd-systemd-tmpfiles-symlink-redirected-arbitrary-file"},{"cve":"CVE-2026-16473","cvss":4.3,"slug":"cve-2026-16473-bluez-sbc-heap-out-of-bounds-read-in-sbc-frame-decoder","title":"BlueZ sbc heap out-of-bounds read in SBC frame decoder","severity":"medium","exploited":false,"published_at":"2026-07-22T11:16:50.097+00:00","url":"https://junglewise.ai/threats/cve-2026-16473-bluez-sbc-heap-out-of-bounds-read-in-sbc-frame-decoder"},{"cve":"CVE-2026-16517","cvss":2.9,"slug":"cve-2026-16517-libarchive-signed-integer-overflow-in-zip-writer","title":"libarchive signed integer overflow in ZIP writer","severity":"low","exploited":false,"published_at":"2026-07-21T23:17:00.587+00:00","url":"https://junglewise.ai/threats/cve-2026-16517-libarchive-signed-integer-overflow-in-zip-writer"},{"cve":"CVE-2026-16493","cvss":7.8,"slug":"cve-2026-16493-red-hat-ansible-core-argument-injection-in-ansible-galaxy","title":"Red Hat ansible-core argument injection in ansible-galaxy collection install","severity":"high","exploited":false,"published_at":"2026-07-21T18:16:57.03+00:00","url":"https://junglewise.ai/threats/cve-2026-16493-red-hat-ansible-core-argument-injection-in-ansible-galaxy"},{"cve":"CVE-2026-59850","cvss":4.3,"slug":"cve-2026-59850-libssh-use-after-free-in-channel-data-callbacks","title":"libssh use-after-free in channel data callbacks","severity":"medium","exploited":false,"published_at":"2026-07-21T15:16:37.773+00:00","url":"https://junglewise.ai/threats/cve-2026-59850-libssh-use-after-free-in-channel-data-callbacks"},{"cve":"CVE-2026-59848","cvss":5.3,"slug":"cve-2026-59848-libssh-denial-of-service-via-memory-exhaustion-in-sftp-client","title":"libssh denial of service via memory exhaustion in SFTP client","severity":"medium","exploited":false,"published_at":"2026-07-21T14:16:34.79+00:00","url":"https://junglewise.ai/threats/cve-2026-59848-libssh-denial-of-service-via-memory-exhaustion-in-sftp-client"},{"cve":"CVE-2026-59847","cvss":5.9,"slug":"cve-2026-59847-libssh-integrity-protection-bypass-in-openssl-aes-gcm-backend","title":"libssh integrity protection bypass in OpenSSL AES-GCM backend","severity":"medium","exploited":false,"published_at":"2026-07-21T14:16:34.657+00:00","url":"https://junglewise.ai/threats/cve-2026-59847-libssh-integrity-protection-bypass-in-openssl-aes-gcm-backend"},{"cve":"CVE-2026-59846","cvss":3.9,"slug":"cve-2026-59846-libssh-shell-metacharacter-injection-in-proxycommand-username","title":"libssh shell metacharacter injection in ProxyCommand username expansion","severity":"low","exploited":false,"published_at":"2026-07-21T13:17:18.143+00:00","url":"https://junglewise.ai/threats/cve-2026-59846-libssh-shell-metacharacter-injection-in-proxycommand-username"},{"cve":"CVE-2026-16445","cvss":7.5,"slug":"cve-2026-16445-red-hat-dracut-command-injection-via-dhcp-options","title":"Red Hat dracut command injection via DHCP options","severity":"high","exploited":false,"published_at":"2026-07-21T13:17:16.73+00:00","url":"https://junglewise.ai/threats/cve-2026-16445-red-hat-dracut-command-injection-via-dhcp-options"},{"cve":"CVE-2026-59845","cvss":5.3,"slug":"cve-2026-59845-libssh-denial-of-service-via-unchecked-fork-failure-in","title":"libssh denial of service via unchecked fork failure in ProxyCommand","severity":"medium","exploited":false,"published_at":"2026-07-21T12:18:58.103+00:00","url":"https://junglewise.ai/threats/cve-2026-59845-libssh-denial-of-service-via-unchecked-fork-failure-in"},{"cve":"CVE-2026-59844","cvss":6.5,"slug":"cve-2026-59844-libssh-denial-of-service-via-oversized-sftp-read-length","title":"libssh denial of service via oversized SFTP read length","severity":"medium","exploited":false,"published_at":"2026-07-21T12:18:57.973+00:00","url":"https://junglewise.ai/threats/cve-2026-59844-libssh-denial-of-service-via-oversized-sftp-read-length"}],"weekly":[{"week":"2026-06-29","critical":1,"exploited":0,"vulnerabilities":18},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":24},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":10},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Red Hat Enterprise Linux 9","slug":"enterprise-linux-9","vulnerabilities":146,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-9"},{"name":"Red Hat Enterprise Linux 10","slug":"enterprise-linux-10","vulnerabilities":140,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-10"},{"name":"Red Hat Enterprise Linux 7","slug":"enterprise-linux-7","vulnerabilities":67,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-7"},{"name":"Red Hat Enterprise Linux 6","slug":"enterprise-linux-6","vulnerabilities":55,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-6"},{"name":"Red Hat Build of Keycloak","slug":"red-hat-build-of-keycloak","vulnerabilities":54,"url":"https://junglewise.ai/threats/technologies/red-hat-build-of-keycloak"},{"name":"Red Hat Keycloak","slug":"build-of-keycloak","vulnerabilities":48,"url":"https://junglewise.ai/threats/technologies/build-of-keycloak"},{"name":"Red Hat Enterprise Linux AppStream","slug":"enterprise-linux-appstream","vulnerabilities":46,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-appstream"},{"name":"Red Hat OpenShift Container Platform 4","slug":"openshift-container-platform-4","vulnerabilities":36,"url":"https://junglewise.ai/threats/technologies/openshift-container-platform-4"},{"name":"Red Hat Developer Hub","slug":"developer-hub","vulnerabilities":28,"url":"https://junglewise.ai/threats/technologies/developer-hub"},{"name":"Red Hat Multicluster Global Hub","slug":"multicluster-global-hub","vulnerabilities":19,"url":"https://junglewise.ai/threats/technologies/multicluster-global-hub"},{"name":"Red Hat AI Inference Server","slug":"ai-inference-server","vulnerabilities":16,"url":"https://junglewise.ai/threats/technologies/ai-inference-server"},{"name":"Red Hat Enterprise Linux 9.0","slug":"enterprise-linux-9-0","vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-9-0"}],"technology":{"hub":true,"name":"Red Hat Enterprise Linux 8","slug":"enterprise-linux-8","vendor":{"name":"Red Hat","slug":"red-hat","url":"https://junglewise.ai/threats/vendors/red-hat"},"aliases":["red-hat-enterprise-linux-8"],"category":"operating-system","homepage":"https://www.redhat.com/en/technologies/linux-platforms/enterprise-linux","repo_url":"https://github.com/redhat-performance/el8-performance-guide","description":"An enterprise-grade Linux operating system developed by Red Hat.","url":"https://junglewise.ai/threats/technologies/enterprise-linux-8"},"most_severe":[{"cve":"CVE-2026-33937","cvss":9.8,"epss":0.0174,"slug":"cve-2026-33937-handlebars-js-remote-code-execution-via-ast-type-confusion-in","title":"Handlebars.js remote code execution via AST type confusion in compile","severity":"critical","exploited":false,"published_at":"2026-03-27T21:17:27.417+00:00","url":"https://junglewise.ai/threats/cve-2026-33937-handlebars-js-remote-code-execution-via-ast-type-confusion-in"},{"cve":"CVE-2026-43125","cvss":9.8,"epss":0.0054,"slug":"cve-2026-43125-linux-kernel-buffer-overflow-in-dlm-search-rsb-tree","title":"Linux Kernel buffer overflow in dlm_search_rsb_tree","severity":"critical","exploited":false,"published_at":"2026-05-06T12:16:29.45+00:00","url":"https://junglewise.ai/threats/cve-2026-43125-linux-kernel-buffer-overflow-in-dlm-search-rsb-tree"},{"cve":"CVE-2026-20889","cvss":9.8,"epss":0.005,"slug":"cve-2026-20889-libraw-heap-buffer-overflow-in-x3f-thumb-loader","title":"LibRaw heap buffer overflow in x3f_thumb_loader","severity":"critical","exploited":false,"published_at":"2026-04-07T15:17:35.3+00:00","url":"https://junglewise.ai/threats/cve-2026-20889-libraw-heap-buffer-overflow-in-x3f-thumb-loader"},{"cve":"CVE-2026-20911","cvss":9.8,"epss":0.0049,"slug":"cve-2026-20911-libraw-heap-buffer-overflow-in-hufftable-initval","title":"LibRaw heap buffer overflow in HuffTable::initval","severity":"critical","exploited":false,"published_at":"2026-04-07T15:17:35.467+00:00","url":"https://junglewise.ai/threats/cve-2026-20911-libraw-heap-buffer-overflow-in-hufftable-initval"},{"cve":"CVE-2026-14544","cvss":9.8,"slug":"cve-2026-14544-hp-hplip-integer-overflow-in-hpcups-processing-path","title":"HP HPLIP integer overflow in hpcups processing path","severity":"critical","exploited":false,"published_at":"2026-07-03T08:16:24.433+00:00","url":"https://junglewise.ai/threats/cve-2026-14544-hp-hplip-integer-overflow-in-hpcups-processing-path"},{"cve":"CVE-2025-9900","cvss":8.8,"epss":0.0074,"slug":"cve-2025-9900-libtiff-write-what-where-condition-in-tiff-image-processing","title":"Libtiff write-what-where condition in TIFF image processing","severity":"high","exploited":false,"published_at":"2025-09-23T17:15:38.357+00:00","url":"https://junglewise.ai/threats/cve-2025-9900-libtiff-write-what-where-condition-in-tiff-image-processing"},{"cve":"CVE-2025-66287","cvss":8.8,"epss":0.0039,"slug":"cve-2025-66287-webkitgtk-buffer-overflow-via-malicious-web-content","title":"WebKitGTK buffer overflow via malicious web content","severity":"high","exploited":false,"published_at":"2025-12-04T17:15:56.647+00:00","url":"https://junglewise.ai/threats/cve-2025-66287-webkitgtk-buffer-overflow-via-malicious-web-content"},{"cve":"CVE-2026-16526","cvss":8.8,"slug":"cve-2026-16526-red-hat-pcp-privilege-escalation-in-linux-sockets-pmda","title":"Red Hat PCP privilege escalation in linux_sockets PMDA","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:02.663+00:00","url":"https://junglewise.ai/threats/cve-2026-16526-red-hat-pcp-privilege-escalation-in-linux-sockets-pmda"},{"cve":"CVE-2025-8067","cvss":8.5,"epss":0.0065,"slug":"cve-2025-8067-storaged-project-udisks-privilege-escalation-in-d-bus-loop-device","title":"storaged-project udisks privilege escalation in D-BUS loop device handler","severity":"high","exploited":false,"published_at":"2025-08-28T15:16:03.6+00:00","url":"https://junglewise.ai/threats/cve-2025-8067-storaged-project-udisks-privilege-escalation-in-d-bus-loop-device"},{"cve":"CVE-2025-14523","cvss":8.2,"epss":0.005,"slug":"cve-2025-14523-gnome-libsoup-http-request-smuggling-via-duplicate-host-headers","title":"GNOME libsoup HTTP request smuggling via duplicate Host headers","severity":"high","exploited":false,"published_at":"2025-12-11T13:15:58.983+00:00","url":"https://junglewise.ai/threats/cve-2025-14523-gnome-libsoup-http-request-smuggling-via-duplicate-host-headers"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}