CVE-2026-88830: Red Hat Hardened Images
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
A unit confusion in BusyBox TLS Montgomery reduction buffer allocation causes a pre-authentication heap buffer overflow when processing a crafted ClientKeyExchange message.
Affected products
- Red Hat Red Hat Hardened Images
Published 2026-09-23. Last modified 2026-09-23.