Skip to content
VulniPulse

Red Hat Linux Red Hat Enterprise Linux Vulnerabilities & Security Advisories

1225 advisories tracked · Red Hat Security Data API · 3 listed in the CISA Known Exploited Vulnerabilities catalog

Every row below is a published Red Hat Linux advisory that VulniPulse classified as Red Hat Enterprise Linux, with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 31 critical, 785 high, 384 medium, 25 low.

Android app · Google Play

Monitor Linux CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Linux Red Hat Enterprise Linux advisories

Medium5.3Linux

Medium [CVE-2026-16768] Gdk-pixbuf: out-of-bounds read in ico parser

A flaw was found in gdk-pixbuf. When parsing a specially crafted ICO file with pixel values that exceed the defined palette range, an out-of-bounds read can occur due to improper bounds checking against the actual palette size. This vulnerability causes heap bytes to be interpreted as valid palette indices and rendered as RGB pixel values in the output image, allowing an attacker to extract heap content via the generated output, such as a thumbnail. The only security impact of this issue is an information leak of memory contents via the generated output, such as a thumbnail. Also, the attacker does not have full control of the information obtained, further limiting its impact. Due to these reasons, this vulnerability has been rated with a moderate severity. Red Hat severity: Moderate — CVSS 5.3 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). Weakness: CWE-125. Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9. Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-16768
Red Hat Enterprise Linux
Jul 23, 2026
Medium5.3Linux Updated

Medium [CVE-2026-65698] Sensitive file exfiltration via AI agent path traversal vulnerability

A flaw was found in Void through 1.3.4 in the AI agent file-reading tools (read_file, ls_dir, get_dir_tree, and search_*). Those tools do not confine paths to the open workspace and can accept absolute paths or file:// URIs, including bypassing the approval gate. An attacker who can inject instructions into content the agent processes may read arbitrary host files and exfiltrate sensitive data such as SSH keys or cloud credentials. Void is vulnerable to path traversal in AI agent file tools that lack workspace confinement. A remote attacker who can get malicious instructions into agent-processed content (user interaction, high attack complexity) may read files outside the workspace via absolute paths or file:// URIs and exfiltrate them through later tool calls. Affects Void through 1.3.4. Red Hat severity: Moderate — CVSS 5.3 (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N). Weakness: CWE-22. Affected Red Hat products: Logging Subsystem for Red Hat OpenShift; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4. Red Hat lists Red Hat Hardened Images as not affected. Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-65698
Red Hat Enterprise Linux
Jul 23, 2026
Medium6.1Linux Updated

Medium [CVE-2026-65903] Security bypass allows injection of malicious content

A flaw was found in DOMPurify. A logic error in the ADD_TAGS function allows an attacker to bypass security restrictions. By crafting specific input, an attacker can cause tags that should be removed to remain in the sanitized output. This could lead to the injection of malicious content, potentially compromising the integrity of web pages. This Moderate flaw in DOMPurify allows an attacker to bypass content sanitization by crafting specific input, leading to the injection of malicious content. Exploitation requires user interaction, as an attacker must trick a user into processing the specially crafted input. Red Hat severity: Moderate — CVSS 6.1 (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N). Weakness: CWE-79. Affected Red Hat products: Red Hat Ansible Automation Platform 2; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift AI (RHOAI).

CVE-2026-65903
Red Hat Enterprise Linux
Jul 23, 2026
Medium5.5Linux Updated

Medium [CVE-2026-59677] Denial of Service via missing authorization in seunshares

A flaw was found in policycoreutils through 3.10 in seunshares. Missing authorization lets a local user in an unconfined SELinux context terminate other processes that are also unconfined, including root-owned ones. That can cause denial of service by killing critical processes. A local low-privileged user running unconfined may kill other unconfined processes, including root-owned ones, causing denial of service. Affects policycoreutils through 3.10. Default confined SELinux setups reduce the practical attack surface. Red Hat severity: Moderate — CVSS 5.5 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H). Weakness: CWE-266. Affected Red Hat products: Red Hat Hardened Images; Red Hat Enterprise Linux 6; Red Hat OpenShift Container Platform 4. Will not fix / out of support: Red Hat Enterprise Linux 6. Red Hat fixing advisory: RHSA-2026:44343.

CVE-2026-59677
Red Hat Enterprise Linux
Jul 23, 2026
Medium5.3Linux Updated

Medium [CVE-2026-59676] Arbitrary file deletion via TOCTOU race condition in seunshare

A flaw was found in policycoreutils through 3.10 in seunshare. A TOCTOU race lets a local user running in an unconfined SELinux domain delete arbitrary root-owned files. Removing critical system files can cause denial of service; integrity impact is limited to unauthorized deletion. A low-privileged user in an unconfined SELinux domain may delete root-owned files, which can disrupt the system. Attack complexity is high. Affects policycoreutils through 3.10. Red Hat severity: Moderate — CVSS 5.3 (CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H). Weakness: CWE-367. Affected Red Hat products: Red Hat Hardened Images; Red Hat Enterprise Linux 6; Red Hat OpenShift Container Platform 4. Will not fix / out of support: Red Hat Enterprise Linux 6. Red Hat fixing advisory: RHSA-2026:44343.

CVE-2026-59676
Red Hat Enterprise Linux
Jul 23, 2026
Medium6.1Linux Updated

Medium [CVE-2026-14899] Off-by-one out of bounds read in MIME header parser for forwarding

A flaw was found in Thunderbird. Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory. Red Hat severity: Moderate — CVSS 6.1 (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N). Weakness: CWE-125. Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9. Will not fix / out of support: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7. Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-14899
Red Hat Enterprise Linux
Jul 22, 2026
Medium6.8Vendor: HighLinux

Medium [CVE-2026-16615] Librest: weak random number generation in pkce implementation

A flaw was found in librest. The PKCE implementation for OAuth authorization uses the GRand function from the GLib API, a cryptographically insecure pseudo-random number generator. Because the generated "code verifier" lacks sufficient cryptographic entropy, a malicious actor can reverse-engineer the pseudo-random number generator (PRNG) seed to predict or reconstruct the code verifier string, allowing an attacker to bypass PKCE protections and successfully impersonate the client during the OAuth 2.0 authorization flow. This allows the attacker to hold a valid access token and impersonate the user, access their protected data and perform actions on their behalf. Due to these reasons, this vulnerability has been rated with an important severity. Red Hat severity: Important — CVSS 6.8 (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N). Weakness: CWE-338. Affected Red Hat products: Red Hat Enterprise Linux 10. Red Hat fixing advisory: RHSA-2026:47085.

CVE-2026-16615
Red Hat Enterprise Linux
Jul 22, 2026
Medium5.9Linux Updated

Medium [CVE-2026-55991] Denial of Service via crafted DNS-over-QUIC connection

A flaw was found in Unbound. A remote, unauthenticated client can exploit this vulnerability by sending a specially crafted DNS-over-QUIC (DoQ) connection and a single DNS query. This can trigger an assertion failure in the libngtcp2 library, leading to the termination of the entire Unbound process. This results in a Denial of Service (DoS), making the DNS resolver unavailable. This Moderate flaw in Unbound allows a remote, unauthenticated client to cause a denial of service. This vulnerability affects Unbound instances configured to support DoQ. Red Hat severity: Moderate — CVSS 5.9 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H). Weakness: CWE-190. Affected Red Hat products: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4. Red Hat lists Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8 as not affected. Red Hat fixing advisory: RHSA-2026:43588.

CVE-2026-55991
Red Hat Enterprise Linux
Jul 22, 2026
Medium5.9Linux Updated

Medium [CVE-2026-55990] Denial of Service via faulty DNSCrypt configuration

A flaw was found in Unbound when configured with DNSCrypt support. An unauthenticated remote attacker could exploit a faulty configuration, where an imbalance between DNSCrypt provider certificate and secret key files leads to memory corruption. By sending a specially crafted network request, the attacker can cause a garbage dereference, leading to a server crash and a denial of service (DoS). This Moderate flaw in Unbound can lead to a denial of service if the DNSCrypt feature is enabled and misconfigured. An unauthenticated attacker could then send a crafted UDP packet to trigger a server crash. Red Hat severity: Moderate — CVSS 5.9 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H). Weakness: CWE-125. Affected Red Hat products: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4. Red Hat lists Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7 as not affected. Red Hat fixing advisory: RHSA-2026:43588.

CVE-2026-55990
Red Hat Enterprise Linux
Jul 22, 2026
Medium5.3Linux Updated

Medium [CVE-2026-50251] Denial of Service via crafted DNS glue records

A flaw was found in Unbound. A remote malicious actor can exploit a vulnerability by controlling a DNS delegation that returns specific glue records. This can cause Unbound to repeatedly clear its DNS caches, leading to a continuous Denial of Service (DoS) for DNS resolution. This Moderate flaw in Unbound allows a remote attacker to trigger a denial of service by controlling a DNS delegation. This occurs due to Unbound's internal handling of locally routed 0.0.0.0/::0 glue records, which are incorrectly flagged as unwanted replies. Red Hat severity: Moderate — CVSS 5.3 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L). Weakness: CWE-835. Affected Red Hat products: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4. Will not fix / out of support: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7. Red Hat fixing advisory: RHSA-2026:43588.

CVE-2026-50251
Red Hat Enterprise Linux
Jul 22, 2026
Medium4.3Linux

Medium [CVE-2026-16473] Sbc: sbc: heap out-of-bounds read via crafted sbc audio frame

A flaw was found in the sbc library (BlueZ SBC codec). An off-by-one error in the SBC frame decoder allows a crafted audio payload to trigger a one-byte heap out-of-bounds read. This could allow an adjacent attacker streaming Bluetooth audio to read a single byte of adjacent heap memory. Red Hat severity: Moderate — CVSS 4.3 (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). Weakness: CWE-125. Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9. Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-16473
Red Hat Enterprise Linux
Jul 22, 2026
Medium5.3Linux Updated

Medium [CVE-2026-46917] Improve DTLS handshaking (Oracle CPU 2026-07)

Improve DTLS handshaking (Oracle CPU 2026-07). Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-400. Red Hat lists fixing advisory RHSA-2026:42895 with package java-25-openjdk-1:25.0.4.0.7-1.1.el10_2, java-21-openjdk-1:21.0.12.0.8-1.1.el8, java-21-openjdk-1:21.0.12.0.8-1.1.el9, java-25-openjdk-windows. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 7.

CVE-2026-46917
Red Hat Enterprise Linux
Jul 21, 2026
Medium5.3Linux Updated

Medium [CVE-2026-47021] Enhance XBM image support (Oracle CPU 2026-07)

Enhance XBM image support (Oracle CPU 2026-07). Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-1333. Red Hat lists fixing advisory RHSA-2026:42895 with package java-21-openjdk-1:21.0.12.0.8-1.1.el8, java-21-openjdk-1:21.0.12.0.8-1.1.el9, java-25-openjdk-windows, java-11-openjdk-1:11.0.32.0.9-1.el9. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 7.

CVE-2026-47021
Red Hat Enterprise Linux
Jul 21, 2026
Medium5.3Linux Updated

Medium [CVE-2026-47027] Enhance Jar file processing (Oracle CPU 2026-07)

Enhance Jar file processing (Oracle CPU 2026-07). Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-400. Red Hat lists fixing advisory RHSA-2026:42895 with package java-21-openjdk-1:21.0.12.0.8-1.1.el8, java-21-openjdk-1:21.0.12.0.8-1.1.el9, java-25-openjdk-windows, java-11-openjdk-1:11.0.32.0.9-1.el9. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 7.

CVE-2026-47027
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.5Linux Updated

Medium [CVE-2026-60147] Improve certification checking (Oracle CPU 2026-07)

Improve certification checking (Oracle CPU 2026-07). Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-295. Red Hat lists fixing advisory RHSA-2026:42895 with package java-21-openjdk-1:21.0.12.0.8-1.1.el8, java-21-openjdk-1:21.0.12.0.8-1.1.el9, java-25-openjdk-windows, java-11-openjdk-1:11.0.32.0.9-1.el9. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 7.

CVE-2026-60147
Red Hat Enterprise Linux
Jul 21, 2026
Medium4.2Linux

Medium [CVE-2026-12548] Libsoup: heap out-of-bounds read in libsoup due to integer truncation

A heap out-of-bounds read flaw was found in libsoup. When parsing multipart HTTP messages, an integer type mismatch between the caller and soup_headers_parse() can cause the length parameter to be incorrectly truncated, leading to a heap buffer over-read. A remote attacker could use this flaw to crash an application using libsoup or potentially disclose heap memory contents. Red Hat severity: Moderate — CVSS 4.2 (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:L). Weakness: CWE-125. Affected Red Hat products: Red Hat Enterprise Linux 10. Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-12548
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux Updated

Medium [CVE-2026-16396] Privilege escalation in WebExtensions

Privilege escalation in WebExtensions. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-266. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8.

CVE-2026-16396
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux Updated

Medium [CVE-2026-16394] Mitigation bypass in the DOM: Security component

A flaw was found in Firefox and Thunderbird. The Mozilla Foundation's Security Advisory describes the following issue: Mitigation bypass in the DOM: Security component Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory. Red Hat severity: Moderate — CVSS 6.1 (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N). Weakness: CWE-358. Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9. Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-16394
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux Updated

Medium [CVE-2026-16359] Incorrect boundary conditions in the Audio/Video: GMP component

Incorrect boundary conditions in the Audio/Video: GMP component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-120. Red Hat lists fixing advisory RHSA-2026:47101 with package firefox-0:140.13.0-1.el10_2, firefox-0:140.13.0-1.el8_10. Affected products named by the advisory: Red Hat Enterprise Linux 1; Red Hat Enterprise Linux 8.

CVE-2026-16359
Red Hat Enterprise Linux
Jul 21, 2026
Medium6.1Linux Updated

Medium [CVE-2026-16392] JIT miscompilation in the JavaScript Engine: JIT component

A flaw was found in Firefox and Thunderbird. The Mozilla Foundation's Security Advisory describes the following issue: JIT miscompilation in the JavaScript Engine: JIT component Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory. Red Hat severity: Moderate — CVSS 6.1 (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N). Weakness: CWE-733. Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9. Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-16392
Red Hat Enterprise Linux
Jul 21, 2026

← All Linux advisories