8.9
HIGH CVSS 4.0
CVE-2026-21441
urllib3 vulnerable to decompression-bomb safeguard bypass when following HTTP redirects (streaming API)
Description

urllib3 is an HTTP client library for Python. urllib3's streaming API is designed for the efficient handling of large HTTP responses by reading the content in chunks, rather than loading the entire response body into memory at once. urllib3 can perform decoding or decompression based on the HTTP `Content-Encoding` header (e.g., `gzip`, `deflate`, `br`, or `zstd`). When using the streaming API, the library decompresses only the necessary bytes, enabling partial content consumption. Starting in version 1.22 and prior to version 2.6.3, for HTTP redirect responses, the library would read the entire response body to drain the connection and decompress the content unnecessarily. This decompression occurred even before any read methods were called, and configured read limits did not restrict the amount of decompressed data. As a result, there was no safeguard against decompression bombs. A malicious server could exploit this to trigger excessive resource consumption on the client. Applications and libraries are affected when they stream content from untrusted sources by setting `preload_content=False` when they do not disable redirects. Users should upgrade to at least urllib3 v2.6.3, in which the library does not decode content of redirect responses when `preload_content=False`. If upgrading is not immediately possible, disable redirects by setting `redirect=False` for requests to untrusted source.

INFO

Published Date :

Jan. 7, 2026, 10:15 p.m.

Last Modified :

July 3, 2026, 1:16 p.m.

Remotely Exploit :

Yes !
Affected Products

The following products are affected by CVE-2026-21441 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Python urllib3
CVSS Scores
The Common Vulnerability Scoring System is a standardized framework for assessing the severity of vulnerabilities in software and systems. We collect and displays CVSS scores from various sources for each CVE.
Score Version Severity Vector Exploitability Score Impact Score Source
CVSS 134c704f-9b21-4f2e-91b3-4a467353bcc0
CVSS 3.1 HIGH [email protected]
CVSS 3.1 HIGH 0b0ca135-0b70-47e7-9f44-1890c2a1c46c
CVSS 4.0 HIGH [email protected]
Solution
Upgrade urllib3 to v2.6.3 or disable redirects for untrusted sources.
  • Upgrade to urllib3 version 2.6.3 or later.
  • Disable redirects if upgrading is not possible.
  • Avoid streaming content from untrusted sources.
Public PoC/Exploit Available at Github

CVE-2026-21441 has a 23 public PoC/Exploit available at Github. Go to the Public Exploits tab to see the list.

References to Advisories, Solutions, and Tools

Here, you will find a curated list of external links that provide in-depth information, practical solutions, and valuable tools related to CVE-2026-21441.

URL Resource
https://github.com/urllib3/urllib3/commit/8864ac407bba8607950025e0979c4c69bc7abc7b Patch
https://github.com/urllib3/urllib3/security/advisories/GHSA-38jv-5279-wg99 Vendor Advisory
https://lists.debian.org/debian-lts-announce/2026/01/msg00017.html
https://access.redhat.com/errata/RHSA-2026:0981
https://access.redhat.com/errata/RHSA-2026:0990
https://access.redhat.com/errata/RHSA-2026:10184
https://access.redhat.com/errata/RHSA-2026:1038
https://access.redhat.com/errata/RHSA-2026:1041
https://access.redhat.com/errata/RHSA-2026:1042
https://access.redhat.com/errata/RHSA-2026:1086
https://access.redhat.com/errata/RHSA-2026:1087
https://access.redhat.com/errata/RHSA-2026:1088
https://access.redhat.com/errata/RHSA-2026:1089
https://access.redhat.com/errata/RHSA-2026:1166
https://access.redhat.com/errata/RHSA-2026:1168
https://access.redhat.com/errata/RHSA-2026:1176
https://access.redhat.com/errata/RHSA-2026:1224
https://access.redhat.com/errata/RHSA-2026:1226
https://access.redhat.com/errata/RHSA-2026:1239
https://access.redhat.com/errata/RHSA-2026:1240
https://access.redhat.com/errata/RHSA-2026:1241
https://access.redhat.com/errata/RHSA-2026:1254
https://access.redhat.com/errata/RHSA-2026:1485
https://access.redhat.com/errata/RHSA-2026:14877
https://access.redhat.com/errata/RHSA-2026:1504
https://access.redhat.com/errata/RHSA-2026:1546
https://access.redhat.com/errata/RHSA-2026:1596
https://access.redhat.com/errata/RHSA-2026:1599
https://access.redhat.com/errata/RHSA-2026:1609
https://access.redhat.com/errata/RHSA-2026:1618
https://access.redhat.com/errata/RHSA-2026:1619
https://access.redhat.com/errata/RHSA-2026:1652
https://access.redhat.com/errata/RHSA-2026:1674
https://access.redhat.com/errata/RHSA-2026:1676
https://access.redhat.com/errata/RHSA-2026:1693
https://access.redhat.com/errata/RHSA-2026:1704
https://access.redhat.com/errata/RHSA-2026:1706
https://access.redhat.com/errata/RHSA-2026:1712
https://access.redhat.com/errata/RHSA-2026:1717
https://access.redhat.com/errata/RHSA-2026:1726
https://access.redhat.com/errata/RHSA-2026:1729
https://access.redhat.com/errata/RHSA-2026:1730
https://access.redhat.com/errata/RHSA-2026:1734
https://access.redhat.com/errata/RHSA-2026:1735
https://access.redhat.com/errata/RHSA-2026:1736
https://access.redhat.com/errata/RHSA-2026:17456
https://access.redhat.com/errata/RHSA-2026:17457
https://access.redhat.com/errata/RHSA-2026:17460
https://access.redhat.com/errata/RHSA-2026:17461
https://access.redhat.com/errata/RHSA-2026:17462
https://access.redhat.com/errata/RHSA-2026:17463
https://access.redhat.com/errata/RHSA-2026:1791
https://access.redhat.com/errata/RHSA-2026:1792
https://access.redhat.com/errata/RHSA-2026:1793
https://access.redhat.com/errata/RHSA-2026:1794
https://access.redhat.com/errata/RHSA-2026:1803
https://access.redhat.com/errata/RHSA-2026:1805
https://access.redhat.com/errata/RHSA-2026:1942
https://access.redhat.com/errata/RHSA-2026:1957
https://access.redhat.com/errata/RHSA-2026:19712
https://access.redhat.com/errata/RHSA-2026:2106
https://access.redhat.com/errata/RHSA-2026:2126
https://access.redhat.com/errata/RHSA-2026:2137
https://access.redhat.com/errata/RHSA-2026:2139
https://access.redhat.com/errata/RHSA-2026:2144
https://access.redhat.com/errata/RHSA-2026:2256
https://access.redhat.com/errata/RHSA-2026:2456
https://access.redhat.com/errata/RHSA-2026:2500
https://access.redhat.com/errata/RHSA-2026:25127
https://access.redhat.com/errata/RHSA-2026:2563
https://access.redhat.com/errata/RHSA-2026:2681
https://access.redhat.com/errata/RHSA-2026:2695
https://access.redhat.com/errata/RHSA-2026:2717
https://access.redhat.com/errata/RHSA-2026:2718
https://access.redhat.com/errata/RHSA-2026:2723
https://access.redhat.com/errata/RHSA-2026:2728
https://access.redhat.com/errata/RHSA-2026:2760
https://access.redhat.com/errata/RHSA-2026:2762
https://access.redhat.com/errata/RHSA-2026:2764
https://access.redhat.com/errata/RHSA-2026:2765
https://access.redhat.com/errata/RHSA-2026:28043
https://access.redhat.com/errata/RHSA-2026:28441
https://access.redhat.com/errata/RHSA-2026:2900
https://access.redhat.com/errata/RHSA-2026:2911
https://access.redhat.com/errata/RHSA-2026:2919
https://access.redhat.com/errata/RHSA-2026:2924
https://access.redhat.com/errata/RHSA-2026:2925
https://access.redhat.com/errata/RHSA-2026:2926
https://access.redhat.com/errata/RHSA-2026:3296
https://access.redhat.com/errata/RHSA-2026:33154
https://access.redhat.com/errata/RHSA-2026:3406
https://access.redhat.com/errata/RHSA-2026:3444
https://access.redhat.com/errata/RHSA-2026:3461
https://access.redhat.com/errata/RHSA-2026:3462
https://access.redhat.com/errata/RHSA-2026:3713
https://access.redhat.com/errata/RHSA-2026:3782
https://access.redhat.com/errata/RHSA-2026:3869
https://access.redhat.com/errata/RHSA-2026:3874
https://access.redhat.com/errata/RHSA-2026:3884
https://access.redhat.com/errata/RHSA-2026:3960
https://access.redhat.com/errata/RHSA-2026:4185
https://access.redhat.com/errata/RHSA-2026:4215
https://access.redhat.com/errata/RHSA-2026:4271
https://access.redhat.com/errata/RHSA-2026:4466
https://access.redhat.com/errata/RHSA-2026:4467
https://access.redhat.com/errata/RHSA-2026:5459
https://access.redhat.com/errata/RHSA-2026:6287
https://access.redhat.com/errata/RHSA-2026:6292
https://access.redhat.com/errata/RHSA-2026:8151
https://access.redhat.com/errata/RHSA-2026:8500
https://access.redhat.com/errata/RHSA-2026:8501
https://access.redhat.com/security/cve/CVE-2026-21441
https://bugzilla.redhat.com/show_bug.cgi?id=2427726
https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-21441.json
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2026-21441 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

Common Attack Pattern Enumeration and Classification (CAPEC) stores attack patterns, which are descriptions of the common attributes and approaches employed by adversaries to exploit the CVE-2026-21441 weaknesses.

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

None

JavaScript HTML CSS Python

Updated: 1 week, 3 days ago
0 stars 0 fork 0 watcher
Born at : June 7, 2026, 11:01 p.m. This repo has been linked 18 different CVEs too.

Event-driven CVE remediation automation using Devin API

Dockerfile Python Shell

Updated: 1 month, 2 weeks ago
0 stars 0 fork 0 watcher
Born at : May 20, 2026, 2:16 p.m. This repo has been linked 1 different CVEs too.

None

Python Shell

Updated: 1 month, 2 weeks ago
0 stars 0 fork 0 watcher
Born at : May 5, 2026, 11:34 p.m. This repo has been linked 8 different CVEs too.

None

Dockerfile Python

Updated: 2 months, 1 week ago
0 stars 0 fork 0 watcher
Born at : April 27, 2026, 3:21 a.m. This repo has been linked 10 different CVEs too.

None

Makefile Python Shell

Updated: 1 week, 3 days ago
0 stars 0 fork 0 watcher
Born at : April 24, 2026, 10:05 a.m. This repo has been linked 81 different CVEs too.

Production-ready Azure bootstrap library for App Configuration, Key Vault, and Application Insights integration in Azure Functions applications.

app-configuration application-insights azure azure-functions bootstrap key-vault opentelemetry python

PowerShell Shell Python

Updated: 5 days, 13 hours ago
0 stars 0 fork 0 watcher
Born at : April 9, 2026, 5:23 p.m. This repo has been linked 4 different CVEs too.

Docker-based all-in-one AI agent platform — OpenWebUI + Twilio Voice Bot + Telegram + Browser Agent

ai-agent browser-automation docker multi-agent openwebui rag telegram-bot twilio

Shell

Updated: 1 week, 2 days ago
0 stars 0 fork 0 watcher
Born at : March 26, 2026, 9:50 a.m. This repo has been linked 2 different CVEs too.

None

Open Policy Agent Python HCL

Updated: 3 weeks ago
0 stars 0 fork 0 watcher
Born at : March 15, 2026, 3:31 p.m. This repo has been linked 5 different CVEs too.

None

Shell Python

Updated: 3 months, 2 weeks ago
0 stars 0 fork 0 watcher
Born at : March 13, 2026, 4:40 p.m. This repo has been linked 8 different CVEs too.

None

PHP JavaScript CSS Blade Python

Updated: 3 months, 3 weeks ago
0 stars 0 fork 0 watcher
Born at : March 13, 2026, 3:42 p.m. This repo has been linked 10 different CVEs too.

Elasticsearch Curator container build with CVE-free security scanning via Trivy

Shell Dockerfile Makefile

Updated: 3 months, 1 week ago
0 stars 0 fork 0 watcher
Born at : March 10, 2026, 9 a.m. This repo has been linked 10 different CVEs too.

Deploying NVIDIA's Blueprint for ingesting massive volumes of live or archived videos and extracting insights for summarization and interactive Q&A on OpenShift.

Jupyter Notebook Python Shell Makefile Svelte JavaScript TypeScript Dockerfile HTML CSS

Updated: 3 months, 3 weeks ago
0 stars 1 fork 1 watcher
Born at : March 4, 2026, 4:03 p.m. This repo has been linked 5 different CVEs too.

An actively maintained fork of Paperless-AI. Integrating community bug fixes, security patches, and performance improvements for Paperless-ngx users while the upstream project remains inactive.

Dockerfile JavaScript Python CSS Shell EJS

Updated: 4 months, 1 week ago
0 stars 0 fork 0 watcher
Born at : Feb. 27, 2026, 6:08 p.m. This repo has been linked 1 different CVEs too.

None

Shell Python

Updated: 3 months, 2 weeks ago
0 stars 0 fork 0 watcher
Born at : Feb. 23, 2026, 12:51 a.m. This repo has been linked 6 different CVEs too.

None

Dockerfile Python Shell HTML

Updated: 4 months, 2 weeks ago
0 stars 0 fork 0 watcher
Born at : Feb. 16, 2026, 11:02 p.m. This repo has been linked 16 different CVEs too.

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2026-21441 vulnerability anywhere in the article.

The following table lists the changes that have been made to the CVE-2026-21441 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • CVE Modified by 0b0ca135-0b70-47e7-9f44-1890c2a1c46c

    Jul. 03, 2026

    Action Type Old Value New Value
    Changed Affected [{'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server HighAvailability (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server ResilientStorage (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openstack:17.1', 'cpe:/a:redhat:openstack:17.1::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 17.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:4::el8'], 'vendor': 'Red Hat', 'product': 'RHUI 4 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el8', 'cpe:/a:redhat:satellite_capsule:6.16::el8', 'cpe:/a:redhat:satellite_utils:6.16::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el9', 'cpe:/a:redhat:satellite_capsule:6.16::el9', 'cpe:/a:redhat:satellite_utils:6.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.17::el9', 'cpe:/a:redhat:satellite_capsule:6.17::el9', 'cpe:/a:redhat:satellite_utils:6.17::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.17 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9', 'cpe:/a:redhat:satellite_capsule:6.18::el9', 'cpe:/a:redhat:satellite_maintenance:6.18::el9', 'cpe:/a:redhat:satellite_utils:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:9::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux_eus:10.0'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v. 10.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10.1'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 10)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v. 8.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus_long_life:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.0::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.4::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.4.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.5::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.5.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:network_observ_optr:1.11::el9'], 'vendor': 'Red Hat', 'product': 'Network Observability (NETOBSERV) 1.11.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1.3::el9'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server 3.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.14::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.15::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.8::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.9::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.4::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.5::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.6::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:7.1::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 7.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:8::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:9::el10'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:discovery:2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Discovery 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:2.25::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 2.25', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:3.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 3.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3.26::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces (RHOSDS) 3.26', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.17::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.17', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.18::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.19::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.19', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.10::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.10', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.12::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.12', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.13::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.13', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.14::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.15::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.16', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:5::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Update Infrastructure 5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:1.0::el9'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:cert_manager:1.18::el9'], 'vendor': 'Red Hat', 'product': 'cert-manager operator for Red Hat OpenShift 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:mirror_registry:2.0::el8'], 'vendor': 'Red Hat', 'product': 'mirror registry for Red Hat OpenShift 2.0', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:1'], 'vendor': 'Red Hat', 'product': 'External Secrets Operator for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:logging:5'], 'vendor': 'Red Hat', 'product': 'Logging Subsystem for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhmt:1'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Containers', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:migration_toolkit_virtualization:2'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Virtualization', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multiarch_tuning_operator'], 'vendor': 'Red Hat', 'product': 'Multiarch Tuning Operator', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_engine'], 'vendor': 'Red Hat', 'product': 'Multicluster Engine for Kubernetes', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ocp_tools'], 'vendor': 'Red Hat', 'product': 'OpenShift Developer Tools and Services', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_lightspeed'], 'vendor': 'Red Hat', 'product': 'OpenShift Lightspeed', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_pipelines:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Pipelines', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:serverless:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Serverless', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_core:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform Ansible Core 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quarkus:3'], 'vendor': 'Red Hat', 'product': 'Red Hat build of Quarkus Native builder', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:certifications:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Certification Program for Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:connectivity_link:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Connectivity Link 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhdh:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Developer Hub', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:edge_manager:0'], 'vendor': 'Red Hat', 'product': 'Red Hat Edge Manager preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 10', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux_ai:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AI (RHEL AI) 3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:offline_knowledge_portal:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Offline Knowledge Portal', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI (RHOAI)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift:4'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Container Platform 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_data_foundation:4'], 'vendor': 'Red Hat', 'product': 'Red Hat Openshift Data Foundation 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:0'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager - Tech Preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:assisted_installer:2'], 'vendor': 'Red Hat', 'product': 'Assisted Installer for Red Hat OpenShift Container Platform 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:confidential_compute_attestation:1'], 'vendor': 'Red Hat', 'product': 'Confidential Compute Attestation', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:dynamic_accelerator_slicer:1'], 'vendor': 'Red Hat', 'product': 'Dynamic Accelerator Slicer Operator for Red Hat OpenShift', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:0'], 'vendor': 'Red Hat', 'product': 'external secrets operator for Red Hat OpenShift - Tech Preview', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_far:0'], 'vendor': 'Red Hat', 'product': 'Fence Agents Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_nhc:0'], 'vendor': 'Red Hat', 'product': 'Node HealthCheck Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:2'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:3'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:acm:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 6', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 7', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_update_service:5'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Update Service', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:13'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 13 (Queens)', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:16.2'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 16.2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:18.0'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 18.0', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:quay:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_snr:0'], 'vendor': 'Red Hat', 'product': 'Self Node Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:stf:1.5'], 'vendor': 'Red Hat', 'product': 'Service Telemetry Framework 1.5', 'defaultStatus': 'unaffected'}] [{'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server HighAvailability (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server ResilientStorage (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openstack:17.1', 'cpe:/a:redhat:openstack:17.1::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 17.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:4::el8'], 'vendor': 'Red Hat', 'product': 'RHUI 4 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el8', 'cpe:/a:redhat:satellite_capsule:6.16::el8', 'cpe:/a:redhat:satellite_utils:6.16::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el9', 'cpe:/a:redhat:satellite_capsule:6.16::el9', 'cpe:/a:redhat:satellite_utils:6.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.17::el9', 'cpe:/a:redhat:satellite_capsule:6.17::el9', 'cpe:/a:redhat:satellite_utils:6.17::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.17 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9', 'cpe:/a:redhat:satellite_capsule:6.18::el9', 'cpe:/a:redhat:satellite_maintenance:6.18::el9', 'cpe:/a:redhat:satellite_utils:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:9::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux_eus:10.0'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v. 10.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10.1'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 10)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v. 8.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus_long_life:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.0::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.4::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.4.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.5::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.5.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:network_observ_optr:1.11::el9'], 'vendor': 'Red Hat', 'product': 'Network Observability (NETOBSERV) 1.11.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1.3::el9'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server 3.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.14::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.15::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.8::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.9::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.4::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.5::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.6::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:7.1::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 7.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:8::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:9::el10'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:discovery:2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Discovery 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:2.25::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 2.25', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:3.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 3.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3.26::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces (RHOSDS) 3.26', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.17::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.17', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.18::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.19::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.19', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.10::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.10', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.12::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.12', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.13::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.13', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.14::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.15::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.16', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:5::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Update Infrastructure 5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:1.0::el9'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:cert_manager:1.18::el9'], 'vendor': 'Red Hat', 'product': 'cert-manager operator for Red Hat OpenShift 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:mirror_registry:2.0::el8'], 'vendor': 'Red Hat', 'product': 'mirror registry for Red Hat OpenShift 2.0', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:1'], 'vendor': 'Red Hat', 'product': 'External Secrets Operator for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:logging:5'], 'vendor': 'Red Hat', 'product': 'Logging Subsystem for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhmt:1'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Containers', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:migration_toolkit_virtualization:2'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Virtualization', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multiarch_tuning_operator'], 'vendor': 'Red Hat', 'product': 'Multiarch Tuning Operator', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_engine'], 'vendor': 'Red Hat', 'product': 'Multicluster Engine for Kubernetes', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ocp_tools'], 'vendor': 'Red Hat', 'product': 'OpenShift Developer Tools and Services', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_lightspeed'], 'vendor': 'Red Hat', 'product': 'OpenShift Lightspeed', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_pipelines:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Pipelines', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:serverless:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Serverless', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_core:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform Ansible Core 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:certifications:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Certification Program for Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:connectivity_link:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Connectivity Link 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhdh:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Developer Hub', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:edge_manager:0'], 'vendor': 'Red Hat', 'product': 'Red Hat Edge Manager preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 10', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux_ai:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AI (RHEL AI) 3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:offline_knowledge_portal:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Offline Knowledge Portal', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI (RHOAI)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift:4'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Container Platform 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_data_foundation:4'], 'vendor': 'Red Hat', 'product': 'Red Hat Openshift Data Foundation 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:0'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager - Tech Preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:assisted_installer:2'], 'vendor': 'Red Hat', 'product': 'Assisted Installer for Red Hat OpenShift Container Platform 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:confidential_compute_attestation:1'], 'vendor': 'Red Hat', 'product': 'Confidential Compute Attestation', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:dynamic_accelerator_slicer:1'], 'vendor': 'Red Hat', 'product': 'Dynamic Accelerator Slicer Operator for Red Hat OpenShift', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:0'], 'vendor': 'Red Hat', 'product': 'external secrets operator for Red Hat OpenShift - Tech Preview', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_far:0'], 'vendor': 'Red Hat', 'product': 'Fence Agents Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_nhc:0'], 'vendor': 'Red Hat', 'product': 'Node HealthCheck Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:2'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:3'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:acm:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:quarkus:3'], 'vendor': 'Red Hat', 'product': 'Red Hat build of Quarkus Native builder', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 6', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 7', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_update_service:5'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Update Service', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:13'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 13 (Queens)', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:16.2'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 16.2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:18.0'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 18.0', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:quay:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_snr:0'], 'vendor': 'Red Hat', 'product': 'Self Node Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:stf:1.5'], 'vendor': 'Red Hat', 'product': 'Service Telemetry Framework 1.5', 'defaultStatus': 'unaffected'}]
  • CVE Modified by 0b0ca135-0b70-47e7-9f44-1890c2a1c46c

    Jul. 01, 2026

    Action Type Old Value New Value
    Changed Affected [{'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server HighAvailability (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server ResilientStorage (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openstack:17.1', 'cpe:/a:redhat:openstack:17.1::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 17.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:4::el8'], 'vendor': 'Red Hat', 'product': 'RHUI 4 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el8', 'cpe:/a:redhat:satellite_capsule:6.16::el8', 'cpe:/a:redhat:satellite_utils:6.16::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el9', 'cpe:/a:redhat:satellite_capsule:6.16::el9', 'cpe:/a:redhat:satellite_utils:6.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.17::el9', 'cpe:/a:redhat:satellite_capsule:6.17::el9', 'cpe:/a:redhat:satellite_utils:6.17::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.17 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9', 'cpe:/a:redhat:satellite_capsule:6.18::el9', 'cpe:/a:redhat:satellite_maintenance:6.18::el9', 'cpe:/a:redhat:satellite_utils:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:9::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux_eus:10.0'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v. 10.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10.1'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 10)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v. 8.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus_long_life:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.0::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.4::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.4.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.5::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.5.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:network_observ_optr:1.11::el9'], 'vendor': 'Red Hat', 'product': 'Network Observability (NETOBSERV) 1.11.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1.3::el9'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server 3.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.14::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.15::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.8::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.9::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.4::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.5::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.6::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:7.1::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 7.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:8::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:9::el10'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:discovery:2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Discovery 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:2.25::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 2.25', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:3.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 3.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3.26::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces (RHOSDS) 3.26', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.17::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.17', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.18::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.19::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.19', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.12::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.12', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.13::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.13', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.14::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.15::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.16', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.10::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:5::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Update Infrastructure 5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:1.0::el9'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:cert_manager:1.18::el9'], 'vendor': 'Red Hat', 'product': 'cert-manager operator for Red Hat OpenShift 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:mirror_registry:2.0::el8'], 'vendor': 'Red Hat', 'product': 'mirror registry for Red Hat OpenShift 2.0', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:1'], 'vendor': 'Red Hat', 'product': 'External Secrets Operator for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:logging:5'], 'vendor': 'Red Hat', 'product': 'Logging Subsystem for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhmt:1'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Containers', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:migration_toolkit_virtualization:2'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Virtualization', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multiarch_tuning_operator'], 'vendor': 'Red Hat', 'product': 'Multiarch Tuning Operator', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_engine'], 'vendor': 'Red Hat', 'product': 'Multicluster Engine for Kubernetes', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ocp_tools'], 'vendor': 'Red Hat', 'product': 'OpenShift Developer Tools and Services', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_lightspeed'], 'vendor': 'Red Hat', 'product': 'OpenShift Lightspeed', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_pipelines:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Pipelines', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:serverless:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Serverless', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_core:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform Ansible Core 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quarkus:3'], 'vendor': 'Red Hat', 'product': 'Red Hat build of Quarkus Native builder', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:certifications:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Certification Program for Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:connectivity_link:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Connectivity Link 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhdh:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Developer Hub', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:edge_manager:0'], 'vendor': 'Red Hat', 'product': 'Red Hat Edge Manager preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 10', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux_ai:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AI (RHEL AI) 3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:offline_knowledge_portal:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Offline Knowledge Portal', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI (RHOAI)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift:4'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Container Platform 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_data_foundation:4'], 'vendor': 'Red Hat', 'product': 'Red Hat Openshift Data Foundation 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:0'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager - Tech Preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:assisted_installer:2'], 'vendor': 'Red Hat', 'product': 'Assisted Installer for Red Hat OpenShift Container Platform 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:confidential_compute_attestation:1'], 'vendor': 'Red Hat', 'product': 'Confidential Compute Attestation', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:dynamic_accelerator_slicer:1'], 'vendor': 'Red Hat', 'product': 'Dynamic Accelerator Slicer Operator for Red Hat OpenShift', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:0'], 'vendor': 'Red Hat', 'product': 'external secrets operator for Red Hat OpenShift - Tech Preview', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_far:0'], 'vendor': 'Red Hat', 'product': 'Fence Agents Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_nhc:0'], 'vendor': 'Red Hat', 'product': 'Node HealthCheck Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:2'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:3'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:acm:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 6', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 7', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_update_service:5'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Update Service', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:13'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 13 (Queens)', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:16.2'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 16.2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:18.0'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 18.0', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:quay:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_snr:0'], 'vendor': 'Red Hat', 'product': 'Self Node Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:stf:1.5'], 'vendor': 'Red Hat', 'product': 'Service Telemetry Framework 1.5', 'defaultStatus': 'unaffected'}] [{'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server HighAvailability (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server ResilientStorage (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openstack:17.1', 'cpe:/a:redhat:openstack:17.1::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 17.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:4::el8'], 'vendor': 'Red Hat', 'product': 'RHUI 4 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el8', 'cpe:/a:redhat:satellite_capsule:6.16::el8', 'cpe:/a:redhat:satellite_utils:6.16::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el9', 'cpe:/a:redhat:satellite_capsule:6.16::el9', 'cpe:/a:redhat:satellite_utils:6.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.17::el9', 'cpe:/a:redhat:satellite_capsule:6.17::el9', 'cpe:/a:redhat:satellite_utils:6.17::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.17 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9', 'cpe:/a:redhat:satellite_capsule:6.18::el9', 'cpe:/a:redhat:satellite_maintenance:6.18::el9', 'cpe:/a:redhat:satellite_utils:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:9::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux_eus:10.0'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v. 10.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10.1'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 10)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v. 8.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus_long_life:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.0::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.4::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.4.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.5::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.5.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:network_observ_optr:1.11::el9'], 'vendor': 'Red Hat', 'product': 'Network Observability (NETOBSERV) 1.11.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1.3::el9'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server 3.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.14::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.15::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.8::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.9::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.4::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.5::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.6::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:7.1::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 7.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:8::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:9::el10'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:discovery:2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Discovery 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:2.25::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 2.25', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:3.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 3.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3.26::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces (RHOSDS) 3.26', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.17::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.17', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.18::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.19::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.19', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.10::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.10', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.12::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.12', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.13::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.13', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.14::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.15::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.16', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:5::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Update Infrastructure 5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:1.0::el9'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:cert_manager:1.18::el9'], 'vendor': 'Red Hat', 'product': 'cert-manager operator for Red Hat OpenShift 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:mirror_registry:2.0::el8'], 'vendor': 'Red Hat', 'product': 'mirror registry for Red Hat OpenShift 2.0', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:1'], 'vendor': 'Red Hat', 'product': 'External Secrets Operator for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:logging:5'], 'vendor': 'Red Hat', 'product': 'Logging Subsystem for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhmt:1'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Containers', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:migration_toolkit_virtualization:2'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Virtualization', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multiarch_tuning_operator'], 'vendor': 'Red Hat', 'product': 'Multiarch Tuning Operator', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_engine'], 'vendor': 'Red Hat', 'product': 'Multicluster Engine for Kubernetes', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ocp_tools'], 'vendor': 'Red Hat', 'product': 'OpenShift Developer Tools and Services', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_lightspeed'], 'vendor': 'Red Hat', 'product': 'OpenShift Lightspeed', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_pipelines:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Pipelines', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:serverless:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Serverless', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_core:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform Ansible Core 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quarkus:3'], 'vendor': 'Red Hat', 'product': 'Red Hat build of Quarkus Native builder', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:certifications:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Certification Program for Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:connectivity_link:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Connectivity Link 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhdh:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Developer Hub', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:edge_manager:0'], 'vendor': 'Red Hat', 'product': 'Red Hat Edge Manager preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 10', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux_ai:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AI (RHEL AI) 3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:offline_knowledge_portal:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Offline Knowledge Portal', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI (RHOAI)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift:4'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Container Platform 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_data_foundation:4'], 'vendor': 'Red Hat', 'product': 'Red Hat Openshift Data Foundation 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:0'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager - Tech Preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:assisted_installer:2'], 'vendor': 'Red Hat', 'product': 'Assisted Installer for Red Hat OpenShift Container Platform 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:confidential_compute_attestation:1'], 'vendor': 'Red Hat', 'product': 'Confidential Compute Attestation', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:dynamic_accelerator_slicer:1'], 'vendor': 'Red Hat', 'product': 'Dynamic Accelerator Slicer Operator for Red Hat OpenShift', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:0'], 'vendor': 'Red Hat', 'product': 'external secrets operator for Red Hat OpenShift - Tech Preview', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_far:0'], 'vendor': 'Red Hat', 'product': 'Fence Agents Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_nhc:0'], 'vendor': 'Red Hat', 'product': 'Node HealthCheck Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:2'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:3'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:acm:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 6', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 7', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_update_service:5'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Update Service', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:13'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 13 (Queens)', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:16.2'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 16.2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:18.0'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 18.0', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:quay:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_snr:0'], 'vendor': 'Red Hat', 'product': 'Self Node Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:stf:1.5'], 'vendor': 'Red Hat', 'product': 'Service Telemetry Framework 1.5', 'defaultStatus': 'unaffected'}]
  • CVE Modified by 0b0ca135-0b70-47e7-9f44-1890c2a1c46c

    Jun. 30, 2026

    Action Type Old Value New Value
    Added Affected [{'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server HighAvailability (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7::server'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Server ResilientStorage (v. 7 ELS)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openstack:17.1', 'cpe:/a:redhat:openstack:17.1::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 17.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:4::el8'], 'vendor': 'Red Hat', 'product': 'RHUI 4 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el8', 'cpe:/a:redhat:satellite_capsule:6.16::el8', 'cpe:/a:redhat:satellite_utils:6.16::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.16::el9', 'cpe:/a:redhat:satellite_capsule:6.16::el9', 'cpe:/a:redhat:satellite_utils:6.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.16 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.17::el9', 'cpe:/a:redhat:satellite_capsule:6.17::el9', 'cpe:/a:redhat:satellite_utils:6.17::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.17 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9', 'cpe:/a:redhat:satellite_capsule:6.18::el9', 'cpe:/a:redhat:satellite_maintenance:6.18::el9', 'cpe:/a:redhat:satellite_utils:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18 for RHEL 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.6::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:9::appstream'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AppStream (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux_eus:10.0'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v. 10.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10.1'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 10)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v. 8.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus_long_life:8.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_aus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS AUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_tus:8.8::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.0::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_e4s:9.2::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.4::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:rhel_eus:9.6::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS EUS (v.9.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9::baseos'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux BaseOS (v. 9)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_aus:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability AUS (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus_long_life:8.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux HighAvailability EUS EXTENSION (v.8.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.6::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.6)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_tus:8.8::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability TUS (v.8.8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::highavailability'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux High Availability EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.4::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.4.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_globalhub:1.5::el9'], 'vendor': 'Red Hat', 'product': 'Multicluster Global Hub 1.5.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:network_observ_optr:1.11::el9'], 'vendor': 'Red Hat', 'product': 'Network Observability (NETOBSERV) 1.11.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1.3::el9'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server 3.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.14::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:acm:2.15::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.8::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:advanced_cluster_security:4.9::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Security for Kubernetes 4.9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.4::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.5::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2.6::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2.6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:7.1::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 7.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:8::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ceph_storage:9::el10'], 'vendor': 'Red Hat', 'product': 'Red Hat Ceph Storage 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:discovery:2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Discovery 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:2.25::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 2.25', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai:3.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI 3.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3.26::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces (RHOSDS) 3.26', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.17::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.17', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.18::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1.19::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps 1.19', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.12::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.12', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.13::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.13', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.14::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.14', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.15::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.15', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.16::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.16', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quay:3.10::el8'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3.1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6.18::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.2::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:trusted_artifact_signer:1.3::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Trusted Artifact Signer 1.3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhui:5::el9'], 'vendor': 'Red Hat', 'product': 'Red Hat Update Infrastructure 5', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux:8::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage (v. 8)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.0::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux ResilientStorage E4S (v.9.0)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_e4s:9.2::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage E4S (v.9.2)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhel_eus:9.4::resilientstorage'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux Resilient Storage EUS (v.9.4)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:1.0::el9'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:cert_manager:1.18::el9'], 'vendor': 'Red Hat', 'product': 'cert-manager operator for Red Hat OpenShift 1.18', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:mirror_registry:2.0::el8'], 'vendor': 'Red Hat', 'product': 'mirror registry for Red Hat OpenShift 2.0', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:1'], 'vendor': 'Red Hat', 'product': 'External Secrets Operator for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:logging:5'], 'vendor': 'Red Hat', 'product': 'Logging Subsystem for Red Hat OpenShift', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhmt:1'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Containers', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:migration_toolkit_virtualization:2'], 'vendor': 'Red Hat', 'product': 'Migration Toolkit for Virtualization', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multiarch_tuning_operator'], 'vendor': 'Red Hat', 'product': 'Multiarch Tuning Operator', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:multicluster_engine'], 'vendor': 'Red Hat', 'product': 'Multicluster Engine for Kubernetes', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ocp_tools'], 'vendor': 'Red Hat', 'product': 'OpenShift Developer Tools and Services', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_lightspeed'], 'vendor': 'Red Hat', 'product': 'OpenShift Lightspeed', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_pipelines:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Pipelines', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:serverless:1'], 'vendor': 'Red Hat', 'product': 'OpenShift Serverless', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ai_inference_server:3'], 'vendor': 'Red Hat', 'product': 'Red Hat AI Inference Server', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_automation_platform:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:ansible_core:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Ansible Automation Platform Ansible Core 2', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:quarkus:3'], 'vendor': 'Red Hat', 'product': 'Red Hat build of Quarkus Native builder', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:certifications:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Certification Program for Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:connectivity_link:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Connectivity Link 1', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:rhdh:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Developer Hub', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:edge_manager:0'], 'vendor': 'Red Hat', 'product': 'Red Hat Edge Manager preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:10'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 10', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:8'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 8', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:9'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 9', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:enterprise_linux_ai:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux AI (RHEL AI) 3', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:offline_knowledge_portal:1'], 'vendor': 'Red Hat', 'product': 'Red Hat Offline Knowledge Portal', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_ai'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift AI (RHOAI)', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift:4'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Container Platform 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_data_foundation:4'], 'vendor': 'Red Hat', 'product': 'Red Hat Openshift Data Foundation 4', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:openshift_devspaces:3'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Dev Spaces', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:satellite:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Satellite 6', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:zero_trust_workload_identity_manager:0'], 'vendor': 'Red Hat', 'product': 'Zero Trust Workload Identity Manager - Tech Preview', 'defaultStatus': 'affected'}, {'cpes': ['cpe:/a:redhat:assisted_installer:2'], 'vendor': 'Red Hat', 'product': 'Assisted Installer for Red Hat OpenShift Container Platform 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:confidential_compute_attestation:1'], 'vendor': 'Red Hat', 'product': 'Confidential Compute Attestation', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:dynamic_accelerator_slicer:1'], 'vendor': 'Red Hat', 'product': 'Dynamic Accelerator Slicer Operator for Red Hat OpenShift', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:external_secrets_operator:0'], 'vendor': 'Red Hat', 'product': 'external secrets operator for Red Hat OpenShift - Tech Preview', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_far:0'], 'vendor': 'Red Hat', 'product': 'Fence Agents Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_nhc:0'], 'vendor': 'Red Hat', 'product': 'Node HealthCheck Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_api_data_protection:1'], 'vendor': 'Red Hat', 'product': 'OpenShift API for Data Protection', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:2'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:service_mesh:3'], 'vendor': 'Red Hat', 'product': 'OpenShift Service Mesh 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:acm:2'], 'vendor': 'Red Hat', 'product': 'Red Hat Advanced Cluster Management for Kubernetes 2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:6'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 6', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/o:redhat:enterprise_linux:7'], 'vendor': 'Red Hat', 'product': 'Red Hat Enterprise Linux 7', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_gitops:1'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift GitOps', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openshift_update_service:5'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenShift Update Service', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:13'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 13 (Queens)', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:16.2'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 16.2', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:openstack:18.0'], 'vendor': 'Red Hat', 'product': 'Red Hat OpenStack Platform 18.0', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:quay:3'], 'vendor': 'Red Hat', 'product': 'Red Hat Quay 3', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:workload_availability_snr:0'], 'vendor': 'Red Hat', 'product': 'Self Node Remediation Operator', 'defaultStatus': 'unaffected'}, {'cpes': ['cpe:/a:redhat:stf:1.5'], 'vendor': 'Red Hat', 'product': 'Service Telemetry Framework 1.5', 'defaultStatus': 'unaffected'}]
    Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
    Added CWE CWE-409
    Added Reference https://access.redhat.com/errata/RHSA-2026:0981
    Added Reference https://access.redhat.com/errata/RHSA-2026:0990
    Added Reference https://access.redhat.com/errata/RHSA-2026:10184
    Added Reference https://access.redhat.com/errata/RHSA-2026:1038
    Added Reference https://access.redhat.com/errata/RHSA-2026:1041
    Added Reference https://access.redhat.com/errata/RHSA-2026:1042
    Added Reference https://access.redhat.com/errata/RHSA-2026:1086
    Added Reference https://access.redhat.com/errata/RHSA-2026:1087
    Added Reference https://access.redhat.com/errata/RHSA-2026:1088
    Added Reference https://access.redhat.com/errata/RHSA-2026:1089
    Added Reference https://access.redhat.com/errata/RHSA-2026:1166
    Added Reference https://access.redhat.com/errata/RHSA-2026:1168
    Added Reference https://access.redhat.com/errata/RHSA-2026:1176
    Added Reference https://access.redhat.com/errata/RHSA-2026:1224
    Added Reference https://access.redhat.com/errata/RHSA-2026:1226
    Added Reference https://access.redhat.com/errata/RHSA-2026:1239
    Added Reference https://access.redhat.com/errata/RHSA-2026:1240
    Added Reference https://access.redhat.com/errata/RHSA-2026:1241
    Added Reference https://access.redhat.com/errata/RHSA-2026:1254
    Added Reference https://access.redhat.com/errata/RHSA-2026:1485
    Added Reference https://access.redhat.com/errata/RHSA-2026:14877
    Added Reference https://access.redhat.com/errata/RHSA-2026:1504
    Added Reference https://access.redhat.com/errata/RHSA-2026:1546
    Added Reference https://access.redhat.com/errata/RHSA-2026:1596
    Added Reference https://access.redhat.com/errata/RHSA-2026:1599
    Added Reference https://access.redhat.com/errata/RHSA-2026:1609
    Added Reference https://access.redhat.com/errata/RHSA-2026:1618
    Added Reference https://access.redhat.com/errata/RHSA-2026:1619
    Added Reference https://access.redhat.com/errata/RHSA-2026:1652
    Added Reference https://access.redhat.com/errata/RHSA-2026:1674
    Added Reference https://access.redhat.com/errata/RHSA-2026:1676
    Added Reference https://access.redhat.com/errata/RHSA-2026:1693
    Added Reference https://access.redhat.com/errata/RHSA-2026:1704
    Added Reference https://access.redhat.com/errata/RHSA-2026:1706
    Added Reference https://access.redhat.com/errata/RHSA-2026:1712
    Added Reference https://access.redhat.com/errata/RHSA-2026:1717
    Added Reference https://access.redhat.com/errata/RHSA-2026:1726
    Added Reference https://access.redhat.com/errata/RHSA-2026:1729
    Added Reference https://access.redhat.com/errata/RHSA-2026:1730
    Added Reference https://access.redhat.com/errata/RHSA-2026:1734
    Added Reference https://access.redhat.com/errata/RHSA-2026:1735
    Added Reference https://access.redhat.com/errata/RHSA-2026:1736
    Added Reference https://access.redhat.com/errata/RHSA-2026:17456
    Added Reference https://access.redhat.com/errata/RHSA-2026:17457
    Added Reference https://access.redhat.com/errata/RHSA-2026:17460
    Added Reference https://access.redhat.com/errata/RHSA-2026:17461
    Added Reference https://access.redhat.com/errata/RHSA-2026:17462
    Added Reference https://access.redhat.com/errata/RHSA-2026:17463
    Added Reference https://access.redhat.com/errata/RHSA-2026:1791
    Added Reference https://access.redhat.com/errata/RHSA-2026:1792
    Added Reference https://access.redhat.com/errata/RHSA-2026:1793
    Added Reference https://access.redhat.com/errata/RHSA-2026:1794
    Added Reference https://access.redhat.com/errata/RHSA-2026:1803
    Added Reference https://access.redhat.com/errata/RHSA-2026:1805
    Added Reference https://access.redhat.com/errata/RHSA-2026:1942
    Added Reference https://access.redhat.com/errata/RHSA-2026:1957
    Added Reference https://access.redhat.com/errata/RHSA-2026:19712
    Added Reference https://access.redhat.com/errata/RHSA-2026:2106
    Added Reference https://access.redhat.com/errata/RHSA-2026:2126
    Added Reference https://access.redhat.com/errata/RHSA-2026:2137
    Added Reference https://access.redhat.com/errata/RHSA-2026:2139
    Added Reference https://access.redhat.com/errata/RHSA-2026:2144
    Added Reference https://access.redhat.com/errata/RHSA-2026:2256
    Added Reference https://access.redhat.com/errata/RHSA-2026:2456
    Added Reference https://access.redhat.com/errata/RHSA-2026:2500
    Added Reference https://access.redhat.com/errata/RHSA-2026:25127
    Added Reference https://access.redhat.com/errata/RHSA-2026:2563
    Added Reference https://access.redhat.com/errata/RHSA-2026:2681
    Added Reference https://access.redhat.com/errata/RHSA-2026:2695
    Added Reference https://access.redhat.com/errata/RHSA-2026:2717
    Added Reference https://access.redhat.com/errata/RHSA-2026:2718
    Added Reference https://access.redhat.com/errata/RHSA-2026:2723
    Added Reference https://access.redhat.com/errata/RHSA-2026:2728
    Added Reference https://access.redhat.com/errata/RHSA-2026:2760
    Added Reference https://access.redhat.com/errata/RHSA-2026:2762
    Added Reference https://access.redhat.com/errata/RHSA-2026:2764
    Added Reference https://access.redhat.com/errata/RHSA-2026:2765
    Added Reference https://access.redhat.com/errata/RHSA-2026:28043
    Added Reference https://access.redhat.com/errata/RHSA-2026:28441
    Added Reference https://access.redhat.com/errata/RHSA-2026:2900
    Added Reference https://access.redhat.com/errata/RHSA-2026:2911
    Added Reference https://access.redhat.com/errata/RHSA-2026:2919
    Added Reference https://access.redhat.com/errata/RHSA-2026:2924
    Added Reference https://access.redhat.com/errata/RHSA-2026:2925
    Added Reference https://access.redhat.com/errata/RHSA-2026:2926
    Added Reference https://access.redhat.com/errata/RHSA-2026:3296
    Added Reference https://access.redhat.com/errata/RHSA-2026:33154
    Added Reference https://access.redhat.com/errata/RHSA-2026:3406
    Added Reference https://access.redhat.com/errata/RHSA-2026:3444
    Added Reference https://access.redhat.com/errata/RHSA-2026:3461
    Added Reference https://access.redhat.com/errata/RHSA-2026:3462
    Added Reference https://access.redhat.com/errata/RHSA-2026:3713
    Added Reference https://access.redhat.com/errata/RHSA-2026:3782
    Added Reference https://access.redhat.com/errata/RHSA-2026:3869
    Added Reference https://access.redhat.com/errata/RHSA-2026:3874
    Added Reference https://access.redhat.com/errata/RHSA-2026:3884
    Added Reference https://access.redhat.com/errata/RHSA-2026:3960
    Added Reference https://access.redhat.com/errata/RHSA-2026:4185
    Added Reference https://access.redhat.com/errata/RHSA-2026:4215
    Added Reference https://access.redhat.com/errata/RHSA-2026:4271
    Added Reference https://access.redhat.com/errata/RHSA-2026:4466
    Added Reference https://access.redhat.com/errata/RHSA-2026:4467
    Added Reference https://access.redhat.com/errata/RHSA-2026:5459
    Added Reference https://access.redhat.com/errata/RHSA-2026:6287
    Added Reference https://access.redhat.com/errata/RHSA-2026:6292
    Added Reference https://access.redhat.com/errata/RHSA-2026:8151
    Added Reference https://access.redhat.com/errata/RHSA-2026:8500
    Added Reference https://access.redhat.com/errata/RHSA-2026:8501
    Added Reference https://access.redhat.com/security/cve/CVE-2026-21441
    Added Reference https://bugzilla.redhat.com/show_bug.cgi?id=2427726
    Added Reference https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-21441.json
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Jun. 17, 2026

    Action Type Old Value New Value
    Added SSVC {'id': 'CVE-2026-21441', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'none'}, {'automatable': 'yes'}, {'technicalImpact': 'partial'}], 'version': '2.0.3', 'timestamp': '2026-01-08T20:08:04.959214Z'}
  • CVE Modified by [email protected]

    Jun. 17, 2026

    Action Type Old Value New Value
    Added Affected [{'vendor': 'urllib3', 'product': 'urllib3', 'versions': [{'status': 'affected', 'version': '>= 1.22, < 2.6.3'}]}]
  • CVE Modified by af854a3a-2127-422b-91ae-364da2661108

    Jan. 23, 2026

    Action Type Old Value New Value
    Added Reference https://lists.debian.org/debian-lts-announce/2026/01/msg00017.html
  • Initial Analysis by [email protected]

    Jan. 15, 2026

    Action Type Old Value New Value
    Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
    Added CPE Configuration OR *cpe:2.3:a:python:urllib3:*:*:*:*:*:*:*:* versions from (including) 1.22 up to (excluding) 2.6.3
    Added Reference Type GitHub, Inc.: https://github.com/urllib3/urllib3/commit/8864ac407bba8607950025e0979c4c69bc7abc7b Types: Patch
    Added Reference Type GitHub, Inc.: https://github.com/urllib3/urllib3/security/advisories/GHSA-38jv-5279-wg99 Types: Vendor Advisory
  • New CVE Received by [email protected]

    Jan. 07, 2026

    Action Type Old Value New Value
    Added Description urllib3 is an HTTP client library for Python. urllib3's streaming API is designed for the efficient handling of large HTTP responses by reading the content in chunks, rather than loading the entire response body into memory at once. urllib3 can perform decoding or decompression based on the HTTP `Content-Encoding` header (e.g., `gzip`, `deflate`, `br`, or `zstd`). When using the streaming API, the library decompresses only the necessary bytes, enabling partial content consumption. Starting in version 1.22 and prior to version 2.6.3, for HTTP redirect responses, the library would read the entire response body to drain the connection and decompress the content unnecessarily. This decompression occurred even before any read methods were called, and configured read limits did not restrict the amount of decompressed data. As a result, there was no safeguard against decompression bombs. A malicious server could exploit this to trigger excessive resource consumption on the client. Applications and libraries are affected when they stream content from untrusted sources by setting `preload_content=False` when they do not disable redirects. Users should upgrade to at least urllib3 v2.6.3, in which the library does not decode content of redirect responses when `preload_content=False`. If upgrading is not immediately possible, disable redirects by setting `redirect=False` for requests to untrusted source.
    Added CVSS V4.0 AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
    Added CWE CWE-409
    Added Reference https://github.com/urllib3/urllib3/commit/8864ac407bba8607950025e0979c4c69bc7abc7b
    Added Reference https://github.com/urllib3/urllib3/security/advisories/GHSA-38jv-5279-wg99
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.