Red Hat Linux Security Advisories & CVEs
3071 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-68463] use pm_runtime_resume_and_get in suspend
use pm_runtime_resume_and_get() in suspend. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-72114] validate frame length in bcm_rx_setup for RTR replies
validate frame length in bcm_rx_setup() for RTR replies. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-130. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-72028] save original sp in rethook trampoline
save original sp in rethook trampoline. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-824.
Medium [CVE-2026-68468] free duplicate generated name
free duplicate generated name. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.
Medium [CVE-2026-72080] Fix use-after-free during unmount
Fix use-after-free during unmount. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-72026] Fix fwnode leak on state setup failure
Fix fwnode leak on state setup failure. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-72091] reject user command submission without a command BO
reject user command submission without a command BO. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-72124] serialize TX state transitions under so->rx_lock
serialize TX state transitions under so->rx_lock. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-367. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-72005] avoid full teardown before work setup in probe
avoid full teardown before work setup in probe. Red Hat rates this low (CVSS 5.5). Weakness: CWE-908. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-72078] ims-pcu - validate control endpoint type
ims-pcu - validate control endpoint type. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-1287.
Medium [CVE-2026-72050] Free BPID bitmap on setup failure
Free BPID bitmap on setup failure. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-72112] reject re-registration of an already-bound ops
reject re-registration of an already-bound ops. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-72010] rebind mm mempolicy to effective_mems, not mems_allowed
rebind mm mempolicy to effective_mems, not mems_allowed. Red Hat rates this low (CVSS 5.5). Weakness: CWE-369. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-72067] Preserve per instance callback errors
Preserve per instance callback errors. Red Hat rates this low (CVSS 5.5). Weakness: CWE-393. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-68471] validate MLE common info length
validate MLE common info length. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-130.
Medium [CVE-2026-68461] device property: initialize the remaining fields of fwnode_handle in fwnode_init
device property: initialize the remaining fields of fwnode_handle in fwnode_init(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-824. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-68465] fix esdhc_change_pinstate to allow default state restore
fix esdhc_change_pinstate() to allow default state restore. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-841. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-68478] reject a card that reports too many blocks
reject a card that reports too many blocks. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-68467] use SPI match data for chip caps
use SPI match data for chip caps. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-348.
Medium [CVE-2026-72058] fix duplicate HDLC netdev allocation
fix duplicate HDLC netdev allocation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.