Vulnerability Reportpercona:5

percona:ps-5.7.44percona:ps-5.7percona:ps-5percona:centospercona:5.7.44-centospercona:5.7.44percona:5.7-centospercona:5.7percona:5-centospercona:5
DIGESTsha256:c93cff42702f0f94477c1ddc8ee36784e8bfd8c91bbe6be9126f1fb2461fcd62

Executive Summary

Threat Score
100/100DANGEROUS
Reputation
TRUSTED

This image poses a critical security risk and must not be used in production, especially as an internet-facing service. An attacker with network access could exploit vulnerabilities in libexpat and libxml2 (CVE-2024-45491, CVE-2024-56171) to achieve remote code execution with no authentication required, compromising the entire database and potentially the host. The 25 high-severity vulnerabilities provide multiple attack vectors. No effective mitigations are available aside from applying vendor patches.

Vulnerabilities

Vulnerability Log

237 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2024-45491CRITICAL9.8
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-15.0.1.el8_10
1.1%
Low-Moderate Risk
Directly ExposedContext importance: HIGH
CVE-2024-45492CRITICAL9.8
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-15.0.1.el8_10
1.4%
Low-Moderate Risk
Directly ExposedContext importance: HIGH
CVE-2024-56171CRITICAL9.8
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-19.el8_10
1.1%
Low-Moderate Risk
Directly ExposedContext importance: HIGH
CVE-2025-49796CRITICAL9.1
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.1
1.4%
Low-Moderate Risk
Directly ExposedContext importance: HIGH
CVE-2025-6965HIGH8
sqlite-libs
3.26.0-19.0.1.el8_9
fixed in 3.26.0-20.el8_10
64.9%
Actively Exploited
Directly ExposedContext importance: MEDIUM
CVE-2020-11023HIGH7.93
libstdc++
8.5.0-22.0.1.el8_10
fixed in 8.5.0-23.0.1.el8_10
83.8%
Actively Exploited
Directly Exposed
CVE-2026-33845HIGH7.73
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-49794HIGH7.73
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.1
0.7%
Theoretical Threat
Directly Exposed
CVE-2023-0286HIGH7.7
compat-openssl10
1:1.0.2o-4.el8_6
fixed in 1:1.0.2o-4.el8_10.1
62.0%
Actively Exploited
Directly ExposedContext importance: MEDIUM
CVE-2025-4517HIGH7.6
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
1.2%
Low-Moderate Risk
Directly Exposed
CVE-2024-1737HIGH7.5
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.2
2.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-1975HIGH7.5
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.2
2.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-45490HIGH7.5
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-15.0.1.el8_10
1.7%
Low-Moderate Risk
Directly Exposed
CVE-2024-8176HIGH7.5
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-17.0.1.el8_10
1.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-5121HIGH7.5
libarchive
3.3.3-5.el8
fixed in 3.3.3-7.el8_10
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2025-6021HIGH7.5
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.1
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2023-2953HIGH7.5
openldap
2.4.46-18.el8
fixed in 2.4.46-19.el8_10
1.9%
Low-Moderate Risk
Directly Exposed
CVE-2025-4138HIGH7.5
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-6232HIGH7.5
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
2.2%
Low-Moderate Risk
Directly Exposed
CVE-2025-5372HIGH7.48
libssh
0.9.6-14.el8
fixed in 0.9.6-16.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40778HIGH7.31
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.6
0.5%
Theoretical Threat
Directly Exposed
CVE-2024-37371HIGH7.28
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
1.9%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2024-37371HIGH7.28
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
1.9%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2024-37371HIGH7.28
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
1.9%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2024-52533HIGH7
glib2
2.56.4-162.el8
fixed in 2.56.4-166.el8_10
1.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-42013MEDIUM6.97
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-5260MEDIUM6.97
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-32990MEDIUM6.97
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.4
0.7%
Theoretical Threat
Directly Exposed
CVE-2024-28182MEDIUM6.89
libnghttp2
1.33.0-5.el8_9
fixed in 1.33.0-6.el8_10.1
85.0%
Actively Exploited
Directly Exposed
CVE-2026-6100MEDIUM6.88
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-76.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-0938MEDIUM6.8
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-74.0.1.el8_10
1.4%
Low-Moderate Risk
Directly Exposed
CVE-2025-5914MEDIUM6.63
libarchive
3.3.3-5.el8
fixed in 3.3.3-6.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-7425MEDIUM6.63
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.2
0.3%
Theoretical Threat
Directly Exposed
CVE-2022-49043MEDIUM6.63
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-18.el8_10.2
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-6020MEDIUM6.63
pam
1.3.1-33.el8
fixed in 1.3.1-38.0.1.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-Data-Dumper
2.167-399.el8
fixed in 2.174-440.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-Digest-MD5
2.55-396.el8
fixed in 2.58-1.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-Encode
4:2.97-3.el8
fixed in 4:3.08-461.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-Errno
1.28-422.el8
fixed in 1.30-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-IO
1.38-422.el8
fixed in 1.43-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-MIME-Base64
3.15-396.el8
fixed in 3.15-1001.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-PathTools
3.74-1.el8
fixed in 3.78-439.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-Scalar-List-Utils
3:1.49-2.el8
fixed in 4:1.55-457.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-Socket
4:2.027-3.el8
fixed in 4:2.031-1.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-Storable
1:3.11-3.el8
fixed in 1:3.21-457.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-Unicode-Normalize
1.25-396.el8
fixed in 1.27-458.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-libs
4:5.26.3-422.el8
fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-macros
4:5.26.3-422.el8
fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-threads
1:2.21-2.el8
fixed in 1:2.25-457.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2023-47038MEDIUM6.63
perl-threads-shared
1.58-2.el8
fixed in 1.61-457.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Directly Exposed
CVE-2024-9287MEDIUM6.63
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-69.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-13601MEDIUM6.54
glib2
2.56.4-162.el8
fixed in 2.56.4-168.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-24928MEDIUM6.54
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-19.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2024-12718MEDIUM6.46
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-1519MEDIUM6.38
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.7
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-3039MEDIUM6.38
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.8
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-5946MEDIUM6.38
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.8
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-6176MEDIUM6.38
brotli
1.0.6-3.el8
fixed in 1.0.6-4.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-28390MEDIUM6.38
compat-openssl10
1:1.0.2o-4.el8_6
fixed in 1:1.0.2o-4.el8_10.2
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-45186MEDIUM6.38
expat
2.2.5-13.0.1.el8_10
fixed in 2.5.0-2.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-33846MEDIUM6.38
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-42009MEDIUM6.38
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.8%
Theoretical Threat
Directly Exposed
CVE-2024-37370MEDIUM6.38
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2024-37370MEDIUM6.38
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-4424MEDIUM6.38
libarchive
3.3.3-5.el8
fixed in 3.3.3-7.el8_10
0.9%
Theoretical Threat
Directly Exposed
CVE-2024-37370MEDIUM6.38
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-27135MEDIUM6.38
libnghttp2
1.33.0-5.el8_9
fixed in 1.33.0-6.el8_10.2
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-32414MEDIUM6.38
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-20.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-32415MEDIUM6.38
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.3
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-4435MEDIUM6.38
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-8194MEDIUM6.38
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-71.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-3833MEDIUM6.29
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42011MEDIUM6.29
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-69419MEDIUM6.29
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-15.el8_6
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-69419MEDIUM6.29
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-15.el8_6
0.4%
Theoretical Threat
Directly Exposed
CVE-2024-10963MEDIUM6.29
pam
1.3.1-33.el8
fixed in 1.3.1-36.0.1.el8_10
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-4330MEDIUM6.21
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-42012MEDIUM6.03
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4786MEDIUM6.03
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-76.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-15366MEDIUM6.03
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15367MEDIUM6.03
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-1299MEDIUM6.03
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-4802MEDIUM5.95
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.22
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-4802MEDIUM5.95
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.22
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-4802MEDIUM5.95
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.22
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-4878MEDIUM5.95
libcap
2.48-6.el8_9
fixed in 2.48-6.el8_10.1
0.2%
Theoretical Threat
Directly Exposed
CVE-2024-50602MEDIUM5.9
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-16.0.1.el8_10
1.0%
Low-Moderate Risk
Directly Exposed
CVE-2024-5535MEDIUM5.9
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_6
5.6%
Low-Moderate Risk
Directly Exposed
CVE-2024-5535MEDIUM5.9
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_6
5.6%
Low-Moderate Risk
Directly Exposed
CVE-2024-6923MEDIUM5.78
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-42014MEDIUM5.61
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-9230MEDIUM5.6
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_10
1.8%
Low-Moderate Risk
Directly Exposed
CVE-2025-9230MEDIUM5.6
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_10
1.8%
Low-Moderate Risk
Directly Exposed
CVE-2025-14512MEDIUM5.52
glib2
2.56.4-162.el8
fixed in 2.56.4-169.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-6395MEDIUM5.52
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.4
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-24528MEDIUM5.52
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-31.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-24528MEDIUM5.52
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-31.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-24528MEDIUM5.52
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-31.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-59375MEDIUM5.3
expat
2.2.5-13.0.1.el8_10
fixed in 2.5.0-1.el8_10
1.2%
Low-Moderate Risk
Directly Exposed
CVE-2024-12243MEDIUM5.3
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.3
1.2%
Low-Moderate Risk
Directly Exposed
CVE-2024-12133MEDIUM5.3
libtasn1
4.13-4.el8_7
fixed in 4.13-5.el8_10
1.0%
Low-Moderate Risk
Directly Exposed
CVE-2025-14104MEDIUM5.18
libblkid
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libfdisk
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libmount
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libsmartcols
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libuuid
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-40355MEDIUM5.02
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40356MEDIUM5.02
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-3576MEDIUM5.02
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-32.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-40355MEDIUM5.02
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40356MEDIUM5.02
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-3576MEDIUM5.02
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-32.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-40355MEDIUM5.02
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40356MEDIUM5.02
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-3576MEDIUM5.02
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-32.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-Data-Dumper
2.167-399.el8
fixed in 2.174-440.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-Digest-MD5
2.55-396.el8
fixed in 2.58-1.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-Encode
4:2.97-3.el8
fixed in 4:3.08-461.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-Errno
1.28-422.el8
fixed in 1.30-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-IO
1.38-422.el8
fixed in 1.43-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-MIME-Base64
3.15-396.el8
fixed in 3.15-1001.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-PathTools
3.74-1.el8
fixed in 3.78-439.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-Scalar-List-Utils
3:1.49-2.el8
fixed in 4:1.55-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-Socket
4:2.027-3.el8
fixed in 4:2.031-1.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-Storable
1:3.11-3.el8
fixed in 1:3.21-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-Unicode-Normalize
1.25-396.el8
fixed in 1.27-458.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-libs
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-macros
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-threads
1:2.21-2.el8
fixed in 1:2.25-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40909MEDIUM5.02
perl-threads-shared
1.58-2.el8
fixed in 1.61-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-0395MEDIUM4.67
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.16
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-0395MEDIUM4.67
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.16
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-0395MEDIUM4.67
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.16
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-9714MEDIUM4.67
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.4
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.37
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.37
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.37
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-42015MEDIUM4.5
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-14831MEDIUM4.5
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.5
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-12084MEDIUM4.5
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-72.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-35385MEDIUM4.13
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-35386MEDIUM4.13
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35414MEDIUM4.13
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35385MEDIUM4.13
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-35386MEDIUM4.13
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35414MEDIUM4.13
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35385MEDIUM4.13
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-35386MEDIUM4.13
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35414MEDIUM4.13
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-6100MEDIUM4.13
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-76.0.1.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-26465MEDIUM4.08
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-26.0.1.el8_10
7.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-26465MEDIUM4.08
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-26.0.1.el8_10
7.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-26465MEDIUM4.08
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-26.0.1.el8_10
7.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-0938MEDIUM4.08
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-74.0.1.el8_10
1.4%
Low-Moderate Risk
Post-Exploit
CVE-2025-4373MEDIUM4.08
glib2
2.56.4-162.el8
fixed in 2.56.4-166.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2024-10041MEDIUM4
pam
1.3.1-33.el8
fixed in 1.3.1-36.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-4598MEDIUM4
systemd-libs
239-82.0.1.el8
fixed in 239-82.0.4.el8_10.5
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-4598MEDIUM4
systemd-pam
239-82.0.1.el8
fixed in 239-82.0.4.el8_10.5
0.6%
Theoretical Threat
Directly Exposed
CVE-2023-47038LOW3.98
perl-interpreter
4:5.26.3-422.el8
fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2024-9287LOW3.98
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-69.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-28421LOW3.98
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10.1
0.2%
Theoretical Threat
Post-Exploit
CVE-2024-12718LOW3.88
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-4435LOW3.82
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-8194LOW3.82
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-71.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-0865LOW3.82
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-69419LOW3.77
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-15.el8_6
0.4%
Theoretical Threat
Post-Exploit
CVE-2024-3596LOW3.73
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-30.0.1.el8_10
14.9%
High Exploitation Risk
Post-Exploit
CVE-2024-3596LOW3.73
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-30.0.1.el8_10
14.9%
High Exploitation Risk
Post-Exploit
CVE-2024-3596LOW3.73
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-30.0.1.el8_10
14.9%
High Exploitation Risk
Post-Exploit
CVE-2025-4330LOW3.72
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-25749LOW3.72
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-33412LOW3.72
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10.1
0.7%
Theoretical Threat
Post-Exploit
CVE-2024-4032LOW3.7
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
1.0%
Low-Moderate Risk
Directly Exposed
CVE-2026-4786LOW3.62
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-76.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-15366LOW3.62
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15367LOW3.62
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-1299LOW3.62
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-35177LOW3.62
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-23.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-68973LOW3.57
gnupg2
2.2.20-3.el8_6
fixed in 2.2.20-4.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-8058LOW3.57
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.25
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-8058LOW3.57
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.25
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-8058LOW3.57
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.25
0.2%
Theoretical Threat
Directly Exposed
CVE-2024-5535LOW3.54
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_6
5.6%
Low-Moderate Risk
Post-Exploit
CVE-2019-12900LOW3.53
bzip2-libs
1.0.6-26.el8
fixed in 1.0.6-28.el8_10
8.0%
Low-Moderate Risk
Post-Exploit
CVE-2024-6923LOW3.47
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2025-9820LOW3.4
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.5
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-9230LOW3.36
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_10
1.8%
Low-Moderate Risk
Post-Exploit
CVE-2026-35387LOW3.31
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35387LOW3.31
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35387LOW3.31
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2024-34397LOW3.23
glib2
2.56.4-162.el8
fixed in 2.56.4-166.el8_10
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-9086LOW3.18
curl
7.61.1-34.el8
fixed in 7.61.1-34.el8_10.9
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2025-9086LOW3.18
libcurl
7.61.1-34.el8
fixed in 7.61.1-34.el8_10.9
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2024-11168LOW3.15
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-69.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-14104LOW3.11
util-linux
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2024-11187LOW3.1
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.4
14.3%
High Exploitation Risk
Post-Exploit
CVE-2024-2398LOW3.1
curl
7.61.1-34.el8
fixed in 7.61.1-34.el8_10.2
36.1%
High Exploitation Risk
Post-Exploit
CVE-2024-2398LOW3.1
libcurl
7.61.1-34.el8
fixed in 7.61.1-34.el8_10.2
36.1%
High Exploitation Risk
Post-Exploit
CVE-2025-40909LOW3.01
perl-interpreter
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14087LOW3
glib2
2.56.4-162.el8
fixed in 2.56.4-169.el8_10
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-42010LOW3
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.8%
Theoretical Threat
Post-Exploit
CVE-2025-32988LOW2.95
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.4
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2025-5318LOW2.92
libssh
0.9.6-14.el8
fixed in 0.9.6-15.el8_10
2.4%
Low-Moderate Risk
Post-Exploit
CVE-2019-17543LOW2.92
lz4-libs
1.8.3-3.el8_4
fixed in 1.8.3-5.el8_10
9.1%
Low-Moderate Risk
Post-Exploit
CVE-2020-11023LOW2.86
libgcc
8.5.0-22.0.1.el8_10
fixed in 8.5.0-23.0.1.el8_10
83.8%
Actively Exploited
Post-Exploit
CVE-2026-28417LOW2.81
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10.1
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-4519LOW2.8
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-75.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-4517LOW2.74
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-3497LOW2.7
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-28.0.1.el8_10
2.0%
Low-Moderate Risk
Post-Exploit
CVE-2026-3497LOW2.7
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-28.0.1.el8_10
2.0%
Low-Moderate Risk
Post-Exploit
CVE-2026-3497LOW2.7
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-28.0.1.el8_10
2.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-4138LOW2.7
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
1.1%
Low-Moderate Risk
Post-Exploit
CVE-2024-6232LOW2.7
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
2.2%
Low-Moderate Risk
Post-Exploit
CVE-2025-61984LOW2.7
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-61985LOW2.7
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-61984LOW2.7
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-61985LOW2.7
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-61984LOW2.7
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-61985LOW2.7
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-12084LOW2.7
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-72.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-34982LOW2.51
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10.3
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-0865LOW2.29
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2024-4032LOW2.22
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
1.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-53905LOW2.09
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-21.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-53906LOW2.09
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-21.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2024-11168LOW1.89
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-69.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-4519LOW1.68
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-75.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35388LOW1.27
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-35388LOW1.27
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-35388LOW1.27
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-4598NONE0
systemd
239-82.0.1.el8
fixed in 239-82.0.4.el8_10.5
0.6%
Theoretical Threat
Not Applicable