CVE Tools

Codeready Linux Builder For IBM Z Systems

16 CVEs tracked. 1 of them are in CISA KEV.

This hub aggregates every CVE we track for Codeready Linux Builder For IBM Z Systems, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Codeready Linux Builder For IBM Z Systems CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Codeready Linux Builder For IBM Z Systems CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-042
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-111
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 16 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • High956%
  • Medium744%

Latest CVEs

The 15 most recently published vulnerabilities affecting Codeready Linux Builder For IBM Z Systems.

  1. CVE-2025-13601Glib: integer overflow in in g_escape_uri_string()7.7
  2. CVE-2025-3155Yelp: arbitrary file read7.4
  3. CVE-2025-2784Libsoup: heap buffer over-read in `skip_insignificant_space` when sniffing content7.0
  4. CVE-2023-3758Sssd: race condition during authorization leads to gpo policies functioning inconsistently7.1
  5. CVE-2024-1488Unbound: unrestricted reconfiguration enabled to anyone that may lead to local privilege escalation8.0
  6. CVE-2024-0193Kernel: netfilter: use-after-free in nft_trans_gc_catchall_sync leads to privilege escalation7.8
  7. CVE-2023-4641Shadow-utils: possible password leak during passwd(1) change4.7
  8. CVE-2023-5633Kernel: vmwgfx: reference count issue leads to use-after-free in surface handling7.8
  9. CVE-2023-4911Glibc: buffer overflow in ld.so leading to privilege escalation7.8
  10. CVE-2023-4806Glibc: potential use-after-free in getaddrinfo()5.9
  11. CVE-2023-4527Glibc: stack read overflow in getaddrinfo in no-aaaa mode6.5
  12. CVE-2023-4042Ghostscript: incomplete fix for cve-2020-163055.5
  13. CVE-2021-3733There's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious HTTP server that an HTTP client (such as web browser) connects to, could trigger a Regular Expression...6.5
  14. CVE-2021-3737A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to make the client script enter an infin...7.5
  15. CVE-2021-3930An off-by-one error was found in the SCSI device emulation in QEMU. It could occur while processing MODE SELECT commands in mode_sense_page() if the 'page' argument was set to MODE_PAGE_ALLS (0x3f)...6.5

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store