Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5316 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Linux CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Linux release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Linux advisories

UnratedLinux

Unknown [CVE-2026-53039] validate group add input before caching

In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate group add input before caching [BUG] OCFS2_IOC_GROUP_ADD can trigger a BUG_ON in ocfs2_set_new_buffer_uptodate(): kernel BUG at fs/ocfs2/uptodate.c:509! Oops: invalid opcode: 0000 [#1] SMP KASAN NOPTI RIP: 0010:ocfs2_set_new_buffer_uptodate+0x194/0x1e0 fs/ocfs2/uptodate.c:509 Code: ffffe88f 42b9fe4c 89e64889 dfe8b4df Call Trace: ocfs2_group_add+0x3f1/0x1510 fs/ocfs2/resize.c:507 ocfs2_ioctl+0x309/0x6e0 fs/ocfs2/ioctl.c:887 vfs_ioctl fs/ioctl.c:51 [inline] __do_sys_ioctl fs/ioctl.c:597 [inline] __se_sys_ioctl fs/ioctl.c:583 [inline] __x64_sys_ioctl+0x197/0x1e0 fs/ioctl.c:583 x64_sys_call+0x1144/0x26a0 arch/x86/include/generated/asm/syscalls_64.h:17 do_syscall_x64 arch/x86/entry/syscall_64.c:63 [inline] do_syscall_64+0x93/0xf80 arch/x86/entry/syscall_64.c:94 entry_SYSCALL_64_after_hwframe+0x76/0x7e RIP: 0033:0x7bbfb55a966d [CAUSE] ocfs2_group_add() calls ocfs2_set_new_buffer_uptodate() on a user-controlled group block before ocfs2_verify_group_and_input() validates that block number. That helper is only valid for newly allocated metadata and asserts that the block is not already present in the chosen metadata cache.

CVE-2026-53039
Unclassified
Jun 24, 2026
UnratedLinux

Unknown [CVE-2026-53027] fix missing run load for vcn0 in attr_data_get_block_locked

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix missing run load for vcn0 in attr_data_get_block_locked() When a compressed or sparse attribute has its clusters frame-aligned, vcn is rounded down to the frame start using cmask, which can result in vcn!= vcn0. In this case, vcn and vcn0 may reside in different attribute segments. The code already handles the case where vcn is in a different segment by loading its runs before allocation. However, it fails to load runs for vcn0 when vcn0 resides in a different segment than vcn. This causes run_lookup_entry() to return SPARSE_LCN for vcn0 since its segment was never loaded into the in-memory run list, triggering the WARN_ON(1). If vcn0 falls outside the current segment range [svcn, evcn1), find and load the attribute segment containing vcn0 before performing the run lookup. This oversight can lead to a kernel warning (`WARN_ON(1)`) during a run lookup, potentially causing system instability or a Denial of Service (DoS). A local user could trigger this condition. Red Hat severity: not rated. Weakness: CWE-166. Red Hat lists Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9 as not affected.

CVE-2026-53027
Unclassified
Jun 24, 2026
Critical9.1Vendor: HighLinux

Critical [CVE-2026-53622] mTLS enforcement bypass due to HTTP/3 TLS configuration flaw

mTLS enforcement bypass due to HTTP/3 TLS configuration flaw. Red Hat rates this important (CVSS 9.1). Weakness: CWE-289.

CVE-2026-53622
Unclassified
Jun 23, 2026
Critical9.1Vendor: HighLinux

Critical [CVE-2026-48491] Unauthorized access due to mutual TLS bypass

Unauthorized access due to mutual TLS bypass. Red Hat rates this important (CVSS 9.1). Weakness: CWE-807.

CVE-2026-48491
Unclassified
Jun 23, 2026
Critical9.1Vendor: HighLinux

Critical [CVE-2026-48020] Authentication bypass in StripPrefix middleware allows unauthorized access to protected paths

Authentication bypass in StripPrefix middleware allows unauthorized access to protected paths. Red Hat rates this important (CVSS 9.1). Weakness: CWE-22.

CVE-2026-48020
Unclassified
Jun 23, 2026
Critical9.6Linux

Critical [CVE-2026-11807] websocket missing authorization allows credential theft via activation_id spoofing

websocket missing authorization allows credential theft via activation_id spoofing. Red Hat rates this critical (CVSS 9.6). Weakness: CWE-862. Red Hat lists fixing advisory RHSA-2026:28376 with package automation-eda-controller-0:1.2.9-2.el9ap, ansible-automation-platform-26/eda-controller-rhel9:1781732675, automation-eda-controller-0:1.1.19-1.el8ap, ansible-automation-platform-25/eda-controller-rhel8:1781741251. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8.

CVE-2026-11807
Red Hat Enterprise Linux
Jun 23, 2026
High7.5Linux

High [CVE-2026-50193] Denial of Service via deeply nested JSON processing

Denial of Service via deeply nested JSON processing. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1050.

CVE-2026-50193
Unclassified
Jun 23, 2026
High8.1Linux

High [CVE-2026-54512] Arbitrary code execution via PolymorphicTypeValidator bypass

Arbitrary code execution via PolymorphicTypeValidator bypass. Red Hat rates this important (CVSS 8.1). Weakness: CWE-502. Red Hat lists fixing advisory RHSA-2026:36839 with package jackson-databind.

CVE-2026-54512
Unclassified
Jun 23, 2026
High8.1Linux

High [CVE-2026-54513] Security bypass allows arbitrary code execution

Security bypass allows arbitrary code execution. Red Hat rates this important (CVSS 8.1). Weakness: CWE-184. Red Hat lists fixing advisory RHSA-2026:36839 with package jackson-databind.

CVE-2026-54513
Unclassified
Jun 23, 2026
High8.1Linux

High [CVE-2026-52845] Remote client can inject or override identity headers via header normalization

Remote client can inject or override identity headers via header normalization. Red Hat rates this important (CVSS 8.1). Weakness: CWE-444.

CVE-2026-52845
Unclassified
Jun 23, 2026
High7.1Linux

High [CVE-2026-54257] Buffer performs incorrect byte length calculations resulting in heap buffer under/overflow

Buffer performs incorrect byte length calculations resulting in heap buffer under/overflow. Red Hat rates this important (CVSS 7.1). Weakness: CWE-131.

CVE-2026-54257
Unclassified
Jun 23, 2026
High7.8Linux

High [CVE-2026-12112] Active Session Hijacking via Insecure Session State Reuse

Active Session Hijacking via Insecure Session State Reuse. Red Hat rates this important (CVSS 7.8). Weakness: CWE-287. Red Hat lists fixing advisory RHSA-2026:28438 with package satellite/foreman-mcp-server-rhel9:1782228692.

CVE-2026-12112
Unclassified
Jun 23, 2026
High8.1Linux

High [CVE-2026-56379] Arbitrary code execution via SVG decoder command injection

Arbitrary code execution via SVG decoder command injection. Red Hat rates this important (CVSS 8.1). Weakness: CWE-78. Red Hat lists fixing advisory RHSA-2026:32961 with package ImageMagick-0:6.9.10.68-17.el7_9. Affected product named by the advisory: Red Hat Enterprise Linux 7.

CVE-2026-56379
Red Hat Enterprise Linux
Jun 23, 2026
High7.5Linux

High [CVE-2023-54365] Denial of Service via HTTP/2 Rapid Reset technique

Denial of Service via HTTP/2 Rapid Reset technique. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770.

CVE-2023-54365
Unclassified
Jun 23, 2026
High7.5Linux

High [CVE-2025-61018] Denial of Service via crafted SQL statements in sqlo_place_dt_set

Denial of Service via crafted SQL statements in sqlo_place_dt_set. Red Hat rates this important (CVSS 7.5). Weakness: CWE-89.

CVE-2025-61018
Unclassified
Jun 23, 2026
High7.5Linux

High [CVE-2025-61020] openlink virtuoso-opensource: Denial of Service via crafted SQL statements

openlink virtuoso-opensource: Denial of Service via crafted SQL statements. Red Hat rates this important (CVSS 7.5). Weakness: CWE-89.

CVE-2025-61020
Unclassified
Jun 23, 2026
High7.5Linux

High [CVE-2025-61023] Denial of Service in st_compare component via crafted SQL statements

Denial of Service in st_compare component via crafted SQL statements. Red Hat rates this important (CVSS 7.5). Weakness: CWE-89.

CVE-2025-61023
Unclassified
Jun 23, 2026
High7.5Linux

High [CVE-2025-61028] Denial of Service via crafted SQL statements

Denial of Service via crafted SQL statements. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770.

CVE-2025-61028
Unclassified
Jun 23, 2026
Medium6.5Linux

Medium [CVE-2026-11972] Python tarfile module: Denial of Service via improper EOF handling in streaming mode

Python tarfile module: Denial of Service via improper EOF handling in streaming mode. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-835. Red Hat lists fixing advisory RHSA-2026:35813 with package python3-11-main-3.11.15-4.4.hum1, python3-14-main-3.14.6-1.2.hum1, python3-13-main-3.13.14-1.2.hum1, python3-12-main-3.12.13-3.3.hum1.

CVE-2026-11972
Unclassified
Jun 23, 2026
Medium6.5Linux

Medium [CVE-2026-54518] Information disclosure and data manipulation via view-based access control bypass

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, UnwrappedPropertyHandler.processUnwrappedCreatorProperties() replays buffered JSON into creator parameters but never consults prop.visibleInView(activeView). The normal property-based creator path gates creator properties on the active view, but this unwrapped-creator replay path bypasses that check, so a constructor parameter annotated with both @JsonView(AdminView.class) and @JsonUnwrapped is populated from attacker JSON even when a more restrictive view is active. This vulnerability is fixed in 2.21.4 and 3.1.4. This vulnerability allows a remote attacker to bypass security view restrictions by sending specially crafted JSON (JavaScript Object Notation) data. The UnwrappedPropertyHandler component, which processes unwrapped properties, incorrectly populates constructor parameters that should be hidden by an active security view. This can lead to unauthorized information disclosure or data manipulation. When processing unwrapped creator properties, the component fails to properly enforce @JsonView annotations, enabling sensitive constructor parameters to be populated from untrusted JSON data. Red Hat severity: Moderate — CVSS 6.5 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N). Weakness: CWE-639.

CVE-2026-54518
Red Hat Enterprise Linux
Jun 23, 2026

← All vendors