Red HatCVE-2026-6390
Red Hat GNU nano: information disclosure
Medium6.8CVE-2026-6390 · Published Jul 23, 2026 · updated Sep 1, 2026
A flaw was found in GNU nano's multi-buffer error message handling. When a user opens multiple files at startup and one triggers an ALERT-level error, a specially crafted filename containing printf format specifiers can be reinterpreted. This format string vulnerability may allow an attacker to achieve stack information disclosure, cause a denial of service (crash), or potentially perform arbitrary memory writes.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Red Hat Enterprise Linux 10 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 6 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 7 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 8 Product | all versions | No fix yet |
| Red Hat Enterprise Linux 9 Product | all versions | No fix yet |
| Red Hat OpenShift Container Platform 4 Product | all versions | No fix yet |
| all versions | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-134
More Red Hat advisories
All Red Hat| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Jul 23 | Red Hat Certificate System 9: resource leak | Medium5.3 | No fix yet |
| Jul 23 | Red Hat gdk-pixbuf.: out-of-bounds read | Medium5.3 | No fix yet |
| Jul 23 | Red Hat odh-dashboard: authentication bypass | High8.8 | No fix yet |
| Jul 23 | Red Hat libcupsfilters: infinite loop | High7.5 | No fix yet |
| Jul 22 | Red Hat librest: attacker could bypass PKCE protections | Medium6.8 | No fix yet |
| Jul 22 | Red Hat Directory Server 11: denial of service | Medium5.3 | No fix yet |