RHSA-2025:21994HighCVSS 8.8

Red Hat Security Advisory: A Subscription Management tool for finding and reporting Red Hat product usage

Published
November 24, 2025
Last Modified
July 21, 2026

🔗 CVE IDs covered (12)

📋 Description

CVE-2023-52355 — libtiff: TIFFRasterScanlineSize64 produce too-big size and could cause OOM CVE-2023-52356 — libtiff: Segment fault in libtiff in TIFFReadRGBATileExt() leading to denial of service CVE-2024-56433 — shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise CVE-2025-6965 — sqlite: Integer Truncation in SQLite CVE-2025-8176 — libtiff: LibTIFF Use-After-Free Vulnerability CVE-2025-8677 — bind: Resource exhaustion via malformed DNSKEY handling CVE-2025-9230 — openssl: Out-of-bounds read & write in RFC 3211 KEK Unwrap CVE-2025-9900 — libtiff: Libtiff Write-What-Where CVE-2025-40778 — bind: Cache poisoning attacks with unsolicited RRs CVE-2025-40780 — bind: Cache poisoning due to weak PRNG CVE-2025-53905 — vim: Vim path traversial CVE-2025-53906 — vim: Vim path traversal

🔗 References (16)