Complete feed
Security advisories & CVEs
1781 advisories across 32 monitored vendors.
Android app · Google Play
Take your CVE monitoring with you.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Medium [CVE-2026-68272] validate CP_GFX_SHADOW chunk size in CS pass1
validate CP_GFX_SHADOW chunk size in CS pass1. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-68271] fix reversed error cleanup order in ucopy functions
fix reversed error cleanup order in ucopy functions. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-68270] Avoid possible truncation with calculating visible size
Avoid possible truncation with calculating visible size. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-190.
Medium [CVE-2026-68269] Add missing nospec on parallel submit slot
Add missing nospec on parallel submit slot. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-515.
Medium [CVE-2026-68268] Return error on non-migratable faults requiring devmem
Return error on non-migratable faults requiring devmem. Red Hat rates this low (CVSS 5.5). Weakness: CWE-252.
Medium [CVE-2026-68262] Fix user array stride in pvr_set_uobj_array
Fix user array stride in pvr_set_uobj_array(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux for NVIDIA 26; Red Hat package: kernel.
Medium [CVE-2026-68260] acquire vm_ctx->lock before mapping memory to GPU VM
acquire vm_ctx->lock before mapping memory to GPU VM. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux for NVIDIA 26; Red Hat package: kernel.
Medium [CVE-2026-68258] Check bounds on CRIU restore queue type and mqd size
Check bounds on CRIU restore queue type and mqd size. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 4 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux for NVIDIA 26; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-68256] DP alt mode timeout path leaks prev_sink reference
DP alt mode timeout path leaks prev_sink reference. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772.
Medium [CVE-2026-68255] bound EDID block reads to the response buffer
bound EDID block reads to the response buffer. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-68254] require valid min/max vfreq for VRR
require valid min/max vfreq for VRR. Red Hat rates this low (CVSS 5.5). Weakness: CWE-369. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-68250] replace BUG_ON with WARN_ON
replace BUG_ON() with WARN_ON(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-617. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-68248] Return NULL on error in active_instance
Return NULL on error in active_instance. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-68247] range check LFP Data Block panel_type2
range check LFP Data Block panel_type2. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-1285. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux for NVIDIA 26; Red Hat package: kernel.
Medium [CVE-2026-68246] replace BUG_ON with WARN_ON
replace BUG_ON() with WARN_ON(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-617. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-68244] Do not leak siblings on proto context error
Do not leak siblings[] on proto context error. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.
Medium [CVE-2026-68243] Fix NULL deref in I915_CONTEXT_PARAM_SSEU
Fix NULL deref in I915_CONTEXT_PARAM_SSEU. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-68242] Fix NULL deref on sched_engine alloc failure
Fix NULL deref on sched_engine alloc failure. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux for NVIDIA 26; Red Hat package: kernel.
Medium [CVE-2026-68241] limit DP MST ESI service loop
limit DP MST ESI service loop. Red Hat rates this low (CVSS 5.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux for NVIDIA 26; Red Hat package: kernel-rt.
Medium [CVE-2026-68240] publish dpagemap early to avoid device mapping leak on error
publish dpagemap early to avoid device mapping leak on error. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772.