Threats Tagged 'cve-2026-4438'
View all threats tagged with 'cve-2026-4438'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-4438'
Click on any threat for detailed analysis and mitigation recommendations
Red Hat Security Advisory: Red Hat Update Infrastructure 5.2 security updateCVE-2026-3832 0 Red Hat Update Infrastructure (RHUI) container images are based on the latest RHUI RPM packages and the ubi9 or ubi9-init base images. This release updates to the latest version. Join the discussion | GCVE Database | 06/16/2026, 12:37:48 UTC Added: 06/01/2026, 21:15:10 UTC |
Red Hat Security Advisory: Insights proxy Container ImageCVE-2025-14087 0 The Red Hat Insights proxy Container Image serves as an intermediary for routing Red Hat Insights traffic in disconnected or air-gapped environments. A security advisory identifies vulnerabilities including CVE-2025-14087 affecting this container image. The advisory notes no fixes have been released yet. The vulnerability has a high severity rating based on CVSS vector data. The container image is used by the Red Hat Insights proxy product RPM to provide privacy and security for disconnected customer systems. Join the discussion | GCVE Database | 06/02/2026, 18:37:55 UTC Added: 05/26/2026, 20:58:38 UTC |
CVE-2025-14087: Integer Overflow or Wraparound in GNOME glibCVE-2025-14087 0 A flaw was found in GLib (Gnome Lib). This vulnerability allows a remote attacker to cause heap corruption, leading to a denial of service or potential code execution via a buffer-underflow in the GVariant parser when processing maliciously crafted input strings. Join the discussion | GCVE Database | 05/20/2026, 10:08:49 UTC Added: 05/26/2026, 20:58:36 UTC |
GNU libc: Mehrere Schwachstellen ermöglichen Manipulation von DNS AntwortenCVE-2026-4437 0 The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix(es): * glibc: glibc: Incorrect DNS response parsing via crafted DNS server response (CVE-2026-4437) * glibc: glibc: Invalid DNS hostname returned via gethostbyaddr functions (CVE-2026-4438) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 05/19/2026, 14:41:51 UTC Added: 05/26/2026, 20:58:31 UTC |
Red Hat Security Advisory: glibc security updateCVE-2026-4046 0 The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix(es): * glibc: glibc: Incorrect DNS response parsing via crafted DNS server response (CVE-2026-4437) * glibc: glibc: Invalid DNS hostname returned via gethostbyaddr functions (CVE-2026-4438) * glibc: glibc: Denial of Service via iconv() function with specific character sets (CVE-2026-4046) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 05/26/2026, 10:23:46 UTC Added: 05/26/2026, 20:58:30 UTC |
Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement updateCVE-2025-15281 0 This update includes the following RPMs: Join the discussion | GCVE Database | 04/09/2026, 14:13:59 UTC Added: 05/26/2026, 20:58:30 UTC |
CVE-2026-4438: CWE-20 Improper input validation in The GNU C Library glibcCVE-2026-4438 0 Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C library version 2.34 to version 2.43 could result in an invalid DNS hostname being returned to the caller in violation of the DNS specification. Join the discussion | CVE Database V5 | 03/20/2026, 19:59:06 UTC Added: 03/20/2026, 20:09:24 UTC |
Showing 1 to 7 of 7 results