Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'cve-2026-4438'

View all threats tagged with 'cve-2026-4438'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-4438

Threats Tagged 'cve-2026-4438'

Click on any threat for detailed analysis and mitigation recommendations

Red Hat Security Advisory: Red Hat Update Infrastructure 5.2 security updateCVE-2026-3832
0

Red Hat Update Infrastructure (RHUI) container images are based on the latest RHUI RPM packages and the ubi9 or ubi9-init base images. This release updates to the latest version.

Join the discussion
Red Hat Security Advisory: Insights proxy Container ImageCVE-2025-14087
0

The Red Hat Insights proxy Container Image serves as an intermediary for routing Red Hat Insights traffic in disconnected or air-gapped environments. A security advisory identifies vulnerabilities including CVE-2025-14087 affecting this container image. The advisory notes no fixes have been released yet. The vulnerability has a high severity rating based on CVSS vector data. The container image is used by the Red Hat Insights proxy product RPM to provide privacy and security for disconnected customer systems.

Join the discussion
CVE-2025-14087: Integer Overflow or Wraparound in GNOME glibCVE-2025-14087
0

A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings.

Join the discussion
GNU libc: Mehrere Schwachstellen ermöglichen Manipulation von DNS AntwortenCVE-2026-4437
0

The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix(es): * glibc: glibc: Incorrect DNS response parsing via crafted DNS server response (CVE-2026-4437) * glibc: glibc: Invalid DNS hostname returned via gethostbyaddr functions (CVE-2026-4438) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Join the discussion
Red Hat Security Advisory: glibc security updateCVE-2026-4046
0

The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix(es): * glibc: glibc: Incorrect DNS response parsing via crafted DNS server response (CVE-2026-4437) * glibc: glibc: Invalid DNS hostname returned via gethostbyaddr functions (CVE-2026-4438) * glibc: glibc: Denial of Service via iconv() function with specific character sets (CVE-2026-4046) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Join the discussion
Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement updateCVE-2025-15281
0

This update includes the following RPMs:

Join the discussion
CVE-2026-4438: CWE-20 Improper input validation in The GNU C Library glibcCVE-2026-4438
0

Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C library version 2.34 to version 2.43 could result in an invalid DNS hostname being returned to the caller in violation of the DNS specification.

Join the discussion

Showing 1 to 7 of 7 results

Filters:Tag: cve-2026-4438
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses