Skip to content
VulniPulse

Complete feed

Security advisories & CVEs

2766 advisories across 32 monitored vendors.

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

High7.0Vendor: MediumRed Hat

High [CVE-2026-68093] Bump asid_generation on CPU online to avoid ASID collision after hotplug

Bump asid_generation on CPU online to avoid ASID collision after hotplug. Red Hat rates this moderate (CVSS 7). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-68093
Linux Kernel
Aug 10, 2026
High7.8Red Hat

High [CVE-2026-59087] heap buffer overflow in `file-seattle-filmworks` load — `fread` writes attacker-controlled length into undersized allocation

A flaw was found in the GIMP image manipulation program, specifically within its Seattle Filmworks file loader. A remote attacker could exploit this vulnerability by tricking a user into opening a specially crafted Seattle Filmworks file. This could lead to a heap overflow, allowing the attacker to write several kilobytes of controlled data beyond the intended memory buffer. Such an overflow can result in memory corruption, potentially leading to arbitrary code execution or a denial of service. This flaw is rated as Important because it allows for arbitrary code execution or denial of service within the context of the GIMP application. Exploitation requires a user to open a specially crafted Seattle Filmworks file, which can trigger a heap buffer overflow in the file loader. Red Hat severity: Important — CVSS 7.8 (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H). Weakness: CWE-787. Affected Red Hat products: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9. Will not fix / out of support: Red Hat Enterprise Linux 6. Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-59087
Red Hat Enterprise Linux
Aug 10, 2026
High7.1Red Hat

High [CVE-2026-72568] Denial of Service via Out-of-Bounds Read in Cluster Bus

Denial of Service via Out-of-Bounds Read in Cluster Bus. Red Hat rates this a security issue. Weakness: CWE-125. Red Hat lists fixing advisory RHSA-2026:43236 with package valkey-main-9.0.5-0.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images; and 2 more. Affected products named by the advisory: Red Hat package: valkey; Red Hat package: redis.

CVE-2026-72568
Red Hat Enterprise Linux
Aug 10, 2026
High7.8Vendor: MediumRed Hat

High [CVE-2026-71393] integer overflow via a malicious font file

integer overflow via a malicious font file. Red Hat rates this moderate (CVSS 7.8). Weakness: CWE-190.

CVE-2026-71393
Unclassified
Aug 10, 2026
High7.1Red Hat

High [CVE-2026-19389] integer overflow/underflow in asfdemux bounds checks leading to out-of-bounds read

integer overflow/underflow in asfdemux bounds checks leading to out-of-bounds read. Red Hat rates this important (CVSS 7.1). Weakness: CWE-190. Red Hat lists fixing advisory RHSA-2026:55865 with package gstreamer1-plugins-bad-free-0:1.22.12-7.el9_8.4, gstreamer1-plugins-ugly-free-0:1.22.12-6.el9_8.2, gstreamer1-plugins-ugly-free-0:1.26.7-2.el10_2.2. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 10.

CVE-2026-19389
Unclassified
Aug 10, 2026
High7.6Red Hat

High [CVE-2026-19387] heap out-of-bounds write in adpcmdec IMA/DVI ADPCM decoder

heap out-of-bounds write in adpcmdec IMA/DVI ADPCM decoder. Red Hat rates this important (CVSS 7.6). Weakness: CWE-787. Red Hat lists fixing advisory RHSA-2026:55865 with package gstreamer1-plugins-bad-free-0:1.26.7-2.el10_2.7, gstreamer1-plugins-bad-free-0:1.22.12-7.el9_8.4, gstreamer1-plugins-ugly-free-0:1.22.12-6.el9_8.2, gstreamer1-plugins-bad-free-0:1.16.1-9.el8_10.2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8.

CVE-2026-19387
Unclassified
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68388] handle overlapping allocated ranges in fallocate

handle overlapping allocated ranges in fallocate. Red Hat rates this moderate (CVSS 7). Weakness: CWE-131. Red Hat lists fixing advisory RHSA-2026:57251 with package kernel-0:6.12.0-211.49.1.el10_2, kernel-0:5.14.0-687.41.1.el9_8, kernel-rt-0:4.18.0-553.157.1.rt7.498.el8_10, kernel-0:4.18.0-553.157.1.el8_10. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8.

CVE-2026-68388
Unclassified
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68315] validate stream count in sctp_process_strreset_inreq

validate stream count in sctp_process_strreset_inreq(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68315
Linux Kernel
Aug 10, 2026
High7.3Red Hat

High [CVE-2026-68426] fix stale skb->prev after async crypto steals a GSO segment

fix stale skb->prev after async crypto steals a GSO segment. Red Hat rates this important (CVSS 7.3). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68426
Linux Kernel
Aug 10, 2026
High7.3Red Hat

High [CVE-2026-68201] drain a slave's callback before its master detaches it

drain a slave's callback before its master detaches it. Red Hat rates this important (CVSS 7.3). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68201
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68086] write all dirty file folios when collapsing

write all dirty file folios when collapsing. Red Hat rates this moderate (CVSS 7). Weakness: CWE-367. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68086
Linux Kernel
Aug 10, 2026
High7.0Red Hat

High [CVE-2026-68236] set new_stream to NULL after release

set new_stream to NULL after release. Red Hat rates this important (CVSS 7). Weakness: CWE-763. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68236
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68293] Fix MCIA register buffer overflow on 32 dword reads

Fix MCIA register buffer overflow on 32 dword reads. Red Hat rates this moderate (CVSS 7). Weakness: CWE-120. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-68293
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68390] hold hdev->lock for hci_conn_params lookups

hold hdev->lock for hci_conn_params lookups. Red Hat rates this moderate (CVSS 7). Weakness: CWE-414. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-68390
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68400] Fix Endpoint Memory Access Descriptor offset calculation

Fix Endpoint Memory Access Descriptor offset calculation. Red Hat rates this moderate (CVSS 7). Weakness: CWE-823. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux for NVIDIA 26; Red Hat package: kernel.

CVE-2026-68400
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68117] clear sock->sk on the failed-insert path in tipc_sk_create

clear sock->sk on the failed-insert path in tipc_sk_create(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68117
Linux Kernel
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68147] Avoid dynamic allocation in fscrypt_get_devices

Avoid dynamic allocation in fscrypt_get_devices(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.

CVE-2026-68147
Unclassified
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68300] verify auth requirement when auth_chunk is NULL

verify auth requirement when auth_chunk is NULL. Red Hat rates this moderate (CVSS 7). Weakness: CWE-303. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-68300
Linux Kernel
Aug 10, 2026
High7.8Red Hat

High [CVE-2026-68380] Fix use-after-free of mm_struct in job scheduler

Fix use-after-free of mm_struct in job scheduler. Red Hat rates this important (CVSS 7.8). Weakness: CWE-825.

CVE-2026-68380
Unclassified
Aug 10, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-68267] Add RING_FORCE_TO_NONPRIV_DENY to OA whitelists

Add RING_FORCE_TO_NONPRIV_DENY to OA whitelists. Red Hat rates this moderate (CVSS 7). Weakness: CWE-1188. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux for NVIDIA 26; Red Hat package: kernel-rt.

CVE-2026-68267
Linux Kernel
Aug 10, 2026