Skip to content
VulniPulse

Red Hat Linux Linux Kernel Vulnerabilities & Security Advisories

2101 advisories tracked · Red Hat Security Data API · 1 listed in the CISA Known Exploited Vulnerabilities catalog

Every row below is a published Red Hat Linux advisory that VulniPulse classified as Linux Kernel, with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 1 critical, 763 high, 1334 medium, 1 low.

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat Linux Kernel advisories

High7.0Red Hat Updated

High [CVE-2026-89659] Prevent client use-after-free during delegation revoke

Prevent client use-after-free during delegation revoke. Red Hat rates this important (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89659
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89658] Prevent client use-after-free during NFSv4.0 revoked-state cleanup

Prevent client use-after-free during NFSv4.0 revoked-state cleanup. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-89658
Linux Kernel
Sep 11, 2026
High7.0Red Hat Updated

High [CVE-2026-89656] reject buckets with mismatched CRUSH ids

reject buckets with mismatched CRUSH ids. Red Hat rates this important (CVSS 7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89656
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89654] fix UAF in check_new_map on session freed during unlock

fix UAF in check_new_map() on session freed during unlock. Red Hat rates this moderate (CVSS 7). Weakness: CWE-364. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89654
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89655] fix UAF in __kick_flushing_caps on cf entry freed during unlock

fix UAF in __kick_flushing_caps() on cf entry freed during unlock. Red Hat rates this moderate (CVSS 7). Weakness: CWE-366. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89655
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89648] cap delegated inode count in ceph_parse_deleg_inos

cap delegated inode count in ceph_parse_deleg_inos(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-606. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-89648
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89643] avoid dropping live tree ref on fsnotify rule autoremove

avoid dropping live tree ref on fsnotify rule autoremove. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89643
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89641] clear tcon after cifsFileInfo_put in cifs_file_set_size

clear tcon after cifsFileInfo_put() in cifs_file_set_size(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89641
Linux Kernel
Sep 11, 2026
High7.0Red Hat Updated

High [CVE-2026-89638] clear setuid/setgid bit on write with cifsacl/modefromsid/posix extensions

clear setuid/setgid bit on write with cifsacl/modefromsid/posix extensions. Red Hat rates this important (CVSS 7). Weakness: CWE-281. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89638
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89634] fix ALIGN overflow in symlink_data error context loop

fix ALIGN() overflow in symlink_data() error context loop. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89634
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89630] restore the data_offset bound in is_valid_oplock_break

restore the data_offset bound in is_valid_oplock_break(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89630
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89626] Fix field sysfs group cleanup on failure

Fix field sysfs group cleanup on failure. Red Hat rates this moderate (CVSS 7). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89626
Linux Kernel
Sep 11, 2026
High7.0Red Hat Updated

High [CVE-2026-89620] validate report size before copy

validate report size before copy. Red Hat rates this important (CVSS 7). Weakness: CWE-120. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89620
Linux Kernel
Sep 11, 2026
High7.0Red Hat Updated

High [CVE-2026-89603] Fix seccomp bypass after ptrace with TSYNC

Fix seccomp bypass after ptrace with TSYNC. Red Hat rates this important (CVSS 7). Weakness: CWE-367. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89603
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89583] Fix OOB read in eir_get_service_data

Fix OOB read in eir_get_service_data(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89583
Linux Kernel
Sep 11, 2026
High7.0Red Hat Updated

High [CVE-2026-89579] Harden bloom filter sizing and indexing on 32-bit kernels

Harden bloom filter sizing and indexing on 32-bit kernels. Red Hat rates this important (CVSS 7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89579
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89570] Make the MCE notifier per-region

Make the MCE notifier per-region. Red Hat rates this moderate (CVSS 7). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel-rt.

CVE-2026-89570
Linux Kernel
Sep 11, 2026
High7.0Red Hat Updated

High [CVE-2026-89569] serialize security confirmation handling

serialize security confirmation handling. Red Hat rates this important (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89569
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89559] Prevent integer overflow in __nd_label_validate

Prevent integer overflow in __nd_label_validate(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89559
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-89555] reload header after pskb_may_pull

reload header after pskb_may_pull(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-89555
Linux Kernel
Sep 11, 2026

← All Red Hat advisories