Red Hat News Articles
Recent news articles refferecing the vendors vulnerabilities.
Critical Red Hat Keycloak Flaw Lets Unauthenticated Attackers Take Over Any User Account
Red Hat disclosed a vulnerability in Red Hat Build of Keycloak that allow unauthenticated remote attackers to take over arbitrary user accounts.
6 days ago

Critical Keycloak Vulnerability (CVE-2026-18963) Enables Account Takeover via Password Reset Bypass
A critical vulnerability (CVE-2026-18963, CVSS 9.1) in Keycloak allows unauthenticated attackers to hijack the password reset process by bypassing state validation, potentially taking over any account including administrative ones. Organizations should urgently upgrade to version 26.7.2 or later.
1 week ago
Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account
Keycloak CVE-2026-18963 could let unauthenticated attackers skip the emailed action token and reset any user's password.
1 week ago
The Windows Security Updates of August 2024 are now available - BitLocker Recovery issue fixed - gHacks Tech News
Here is an overview of the August 2024 security updates that Microsoft released for its Windows operating systems.
CVE-2023-6246 Archives
All posts tagged "CVE-2023-6246" Security Architecture GNU C Library Vulnerability Leads to Full Root Access Researchers at Qualys call attention to a vulnerability in Linuxโs GNU C Library...
glibc - CVE CyberSecurity Database News
CVE CyberSecurity Database News - Latest cybersecurity news and CVE details Sign...
Tag: CVE-2023-6246 | Qualys Security Blog
Join the discussion today! Learn more about Qualys and industry best practices. Share what you know and build a reputation. Secure your systems and improve...
Debian: DSA-5611-1: glibc security update | LinuxSecurity.com
Debian Security Advisory DSA-5611-1 https://www.debian.org/security/Salvatore Bonaccorso January 30,
Glibc library vulnerability published
CVE-2023-6246 found in glibc (GNU C Library) affects Debian, Ubuntu and Fedora, and likely other Linux distributions.
Glibc library vulnerability published
CVE-2023-6246 found in glibc (GNU C Library) affects Debian, Ubuntu and Fedora, and likely other Linux distributions.
New Glibc Library Flaw Grants Root Access to Major Linux Distros - Cyber Kendra
New Glibc Library Flaw Grants Root Access to Major Linux Distros
Critical Shim Vulnerability Affecting Linux Secure Boot: An In-depth Look
A serious vulnerability, CVE-2023-40547, discovered in Shim could lead to remote code execution. The bug affects Linux distributions supporting secure boot.
The Real Shim Shady - How CVE-2023-40547 Impacts Most Linux Systems - Eclypsium | Supply Chain Security for the Modern Enterprise
Six new vulnerabilities have been identified in the shim bootloader used to support Secure Boot in most Linux distributions. One vulnerability in particular, CVE-2023-40547, can be exploited to control the boot sequence and circumvent operating system controls.
Linux Systems Exposed: Critical RCE Vulnerability in Shim Bootloader Demands Urgent Patching
A severe RCE vulnerability in the shim bootloader threatens Linux systems using Secure Boot. Update to shim 15.8 and follow these steps to mitigate the risk.
EP1652: Chill Chill Security - CVE-2023-40547 by Chill Chill Security
Sponsor byย โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ โ SEC Playground
Linux Devs Rush to Patch Critical Vulnerability in Shim
The flaw allows the installation of malware that operates at the firmware level
RedHat patches critical flaw in Linux shim bootloader
Security pros say teams need to patch right away because attackers can leverage the bug to gain control of the entire boot process.
How to fix CVE-2023-40547 in Linux
CVE-2023-40547 is a critical vulnerability allowing bootkit installations on Linux systems. Here's everything you need to know.
Critical Shim Boot Loader Vulnerability Affects Linux Distributions (CVE-2023-40547) - OP INNOVATE
CVE-2023-40547 poses a critical threat to Linux distributions with a CVSS score of 9.8, enabling Secure Boot bypass and potential remote code execution. Discovered by Bill Demirkapi, this vulnerability is critical in the shim boot loader's HTTP response handling and could lead to system compromise t...

Linux Distros Hit By RCE Vulnerability in Shim Bootloader
However, not everyone agrees with the NVD's assessment of CVE-2023-40547 being a near-maximum severity bug.
Major Linux Flaw Opens Door to Undetectable Bootkit Infections
A critical vulnerability (CVE-2023-40547) in the Linux bootloader shim exposes millions of systems to persistent, stealthy bootkits. Learn how to protect yourself and stay updated on patches.
Critical flaw in Shim bootloader impacts major Linux distros
A critical vulnerability in the Shim Linux bootloader enables attackers to execute code and take control of a target system before the kernel is loaded, bypassing existing security mechanisms.
Linux Shim Bootloader Flaw Expose Most Linux Distros to Code Execution Attacks
Shim is maintained by Red Hat and used in almost all Linux distributions that support secure boot including Debian, Ubuntu, SUSE, and many others.