Red Hat Linux Security Advisories & CVEs
5440 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Linux CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Linux release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Linux advisories
Medium [CVE-2026-53337] fix NULL pointer dereference in bond_do_ioctl
fix NULL pointer dereference in bond_do_ioctl(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-476.
Low [CVE-2026-48978] Information disclosure and TLS downgrade via malicious registry realm
Information disclosure and TLS downgrade via malicious registry realm. Red Hat rates this low (CVSS 3.1). Weakness: CWE-918.
Low [CVE-2026-54786] Leak in WASIp1 `fd_renumber` implementation
Leak in WASIp1 `fd_renumber` implementation. Red Hat rates this low. Weakness: CWE-772.
Low [CVE-2026-58038] Cross-site Scripting vulnerability
Cross-site Scripting vulnerability. Red Hat rates this low (CVSS 3.7). Weakness: CWE-79.
Unknown [CVE-2026-53346] set uwtable llvm module flag for CONFIG_UNWIND_TABLES
set uwtable llvm module flag for CONFIG_UNWIND_TABLES. Red Hat rates this a security issue. Weakness: CWE-125.
Unknown [CVE-2026-53338] Add NULL check for of_reserved_mem_lookup in airoha_qdma_init_hfwd_queues
Add NULL check for of_reserved_mem_lookup() in airoha_qdma_init_hfwd_queues(). Red Hat rates this a security issue. Weakness: CWE-476.
Unknown [CVE-2026-53343] use byte load for KASAN VMAP stack shadow
use byte load for KASAN VMAP stack shadow. Red Hat rates this a security issue. Weakness: CWE-468.
Unknown [CVE-2026-53334] handle ctx allocation failure
handle ctx allocation failure. Red Hat rates this a security issue. Weakness: CWE-476.
Unknown [CVE-2026-53345] Don't WARN if memory is dirtied without a vCPU when the VM is dying
Don't WARN if memory is dirtied without a vCPU when the VM is dying. Red Hat rates this a security issue. Weakness: CWE-772.
Unknown [CVE-2026-53351] Use USER_REGSET_NOTE_TYPE for REGSET_CFI
Use USER_REGSET_NOTE_TYPE for REGSET_CFI. Red Hat rates this a security issue. Weakness: CWE-843.
Unknown [CVE-2026-53329] Use krealloc_array in dal_vector_reserve
Use krealloc_array() in dal_vector_reserve(). Red Hat rates this a security issue. Weakness: CWE-787.
Unknown [CVE-2026-53328] Don't warn on NULL cgrp_moving_from in scx_cgroup_move_task
Don't warn on NULL cgrp_moving_from in scx_cgroup_move_task(). Red Hat rates this a security issue. Weakness: CWE-476.
Unknown [CVE-2026-53332] Register callbacks after creating the ngd
Register callbacks after creating the ngd. Red Hat rates this a security issue. Weakness: CWE-476.
Unknown [CVE-2026-53356] Fix phys BO pread/pwrite with offset
Fix phys BO pread/pwrite with offset. Red Hat rates this a security issue. Weakness: CWE-823.
Unknown [CVE-2026-53336] fix hang on unknown types
fix hang on unknown types. Red Hat rates this a security issue. Weakness: CWE-835.
Unknown [CVE-2026-53330] Fix out-of-bounds read in dp_get_eq_aux_rd_interval
Fix out-of-bounds read in dp_get_eq_aux_rd_interval(). Red Hat rates this a security issue. Weakness: CWE-125.
High [CVE-2026-54903] Heap corruption and Denial of Service via integer overflow in JSON parsing
Heap corruption and Denial of Service via integer overflow in JSON parsing. Red Hat rates this important (CVSS 7.5). Weakness: CWE-787.
High [CVE-2026-54900] Heap corruption via crafted JSON object key
Heap corruption via crafted JSON object key. Red Hat rates this important (CVSS 7.5). Weakness: CWE-131.
High [CVE-2026-54897] Use-After-Free in Oj::Doc Iterators via reentrant close
Use-After-Free in Oj::Doc Iterators via reentrant close. Red Hat rates this important (CVSS 7.8). Weakness: CWE-364.
High [CVE-2026-54896] Heap buffer overflow in exception serialization
Heap buffer overflow in exception serialization. Red Hat rates this important (CVSS 7.8). Weakness: CWE-787.