Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5543 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Linux CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Linux release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Linux advisories

Critical9.0Linux

Critical [CVE-2026-17653] Use after free in Skia

Use after free in Skia. Red Hat rates this critical (CVSS 9). Weakness: CWE-825.

CVE-2026-17653
Unclassified
Jul 30, 2026
Critical9.6Linux

Critical [CVE-2026-17651] Insufficient validation of untrusted input in Dawn

Insufficient validation of untrusted input in Dawn. Red Hat rates this critical (CVSS 9.6). Weakness: CWE-79.

CVE-2026-17651
Unclassified
Jul 30, 2026
Critical9.9Vendor: HighLinux

Critical [CVE-2026-17650] Use after free in Compositing

Use after free in Compositing. Red Hat rates this important (CVSS 9.9). Weakness: CWE-825.

CVE-2026-17650
Unclassified
Jul 30, 2026
Critical9.0Linux

Critical [CVE-2026-17652] Use after free in Views

Use after free in Views. Red Hat rates this critical (CVSS 9). Weakness: CWE-825.

CVE-2026-17652
Unclassified
Jul 30, 2026
High7.8Linux

High [CVE-2026-18157] Remote Code Execution via APT Argument Injection

Remote Code Execution via APT Argument Injection. Red Hat rates this important (CVSS 7.8). Weakness: CWE-88.

CVE-2026-18157
Unclassified
Jul 30, 2026
High8.9Linux

High [CVE-2026-66066] Remote Code Execution via Unsafe libvips Operations

Remote Code Execution via Unsafe libvips Operations. Red Hat rates this important (CVSS 8.9). Weakness: CWE-434.

CVE-2026-66066
Unclassified
Jul 30, 2026
High7.5Linux

High [CVE-2026-12932] Denial of Service due to memory leak in tls-crypt-v2 client key extraction

Denial of Service due to memory leak in tls-crypt-v2 client key extraction. Red Hat rates this important (CVSS 7.5). Weakness: CWE-771.

CVE-2026-12932
Unclassified
Jul 30, 2026
High8.1Linux Updated

High [CVE-2026-17544] Arbitrary code execution via out-of-bounds write in bccomp

Arbitrary code execution via out-of-bounds write in bccomp(). Red Hat rates this important (CVSS 8.1). Weakness: CWE-787. Red Hat lists fixing advisory RHSA-2026:47200 with package php-main-8.5.9-1.hum1.

CVE-2026-17544
Unclassified
Jul 30, 2026
High7.4Linux Updated

High [CVE-2026-17543] SQL injection via improper backslash escaping

SQL injection via improper backslash escaping. Red Hat rates this important (CVSS 7.4). Weakness: CWE-89. Red Hat lists fixing advisory RHSA-2026:47200 with package php-main-8.5.9-1.hum1.

CVE-2026-17543
Unclassified
Jul 30, 2026
High8.2Linux Updated

High [CVE-2026-18353] Unauthenticated Server-Side Request Forgery via OIDC issuer allowlist bypass

Unauthenticated Server-Side Request Forgery via OIDC issuer allowlist bypass. Red Hat rates this important (CVSS 8.2). Weakness: CWE-918.

CVE-2026-18353
Unclassified
Jul 30, 2026
High7.5Linux Updated

High [CVE-2026-58043] Unauthorized filesystem access due to Permission Model enforcement flaw

Unauthorized filesystem access due to Permission Model enforcement flaw. Red Hat rates this important (CVSS 7.5). Weakness: CWE-551. Red Hat lists fixing advisory RHSA-2026:48273 with package nodejs26-main-26.5.1-1.5.hum1, nodejs22-main-22.23.2-2.3.hum1, nodejs24-main-24.18.1-0.1.hum1.

CVE-2026-58043
Unclassified
Jul 30, 2026
High7.5Linux

High [CVE-2026-16529] Denial of Service due to signed integer overflow

Denial of Service due to signed integer overflow. Red Hat rates this important (CVSS 7.5). Weakness: CWE-190.

CVE-2026-16529
Unclassified
Jul 30, 2026
High7.3Linux

High [CVE-2026-16527] PCP pmproxy: Unauthenticated access to /store endpoint allows bypassing pmcd access rules

PCP pmproxy: Unauthenticated access to /store endpoint allows bypassing pmcd access rules. Red Hat rates this important (CVSS 7.3). Weakness: CWE-306.

CVE-2026-16527
Unclassified
Jul 30, 2026
High8.8Linux

High [CVE-2026-16526] Privilege escalation to root via linux_sockets PMDA vulnerability

Privilege escalation to root via linux_sockets PMDA vulnerability. Red Hat rates this important (CVSS 8.8). Weakness: CWE-403.

CVE-2026-16526
Unclassified
Jul 30, 2026
High7.8Linux

High [CVE-2026-16524] PCP linux_sockets PMDA: Arbitrary Command Execution via Command Injection

PCP linux_sockets PMDA: Arbitrary Command Execution via Command Injection. Red Hat rates this important (CVSS 7.8). Weakness: CWE-78.

CVE-2026-16524
Unclassified
Jul 30, 2026
High8.7Vendor: LowLinux

High [CVE-2026-17986] Insufficient policy enforcement in Bluetooth

Insufficient policy enforcement in Bluetooth. Red Hat rates this low (CVSS 8.7). Weakness: CWE-346.

CVE-2026-17986
Unclassified
Jul 30, 2026
High8.2Vendor: LowLinux

High [CVE-2026-17985] Insufficient policy enforcement in Speech

Insufficient policy enforcement in Speech. Red Hat rates this low (CVSS 8.2). Weakness: CWE-653.

CVE-2026-17985
Unclassified
Jul 30, 2026
High8.8Vendor: LowLinux

High [CVE-2026-17918] Use after free in Sync

Use after free in Sync. Red Hat rates this low (CVSS 8.8). Weakness: CWE-825.

CVE-2026-17918
Unclassified
Jul 30, 2026
High7.6Vendor: MediumLinux

High [CVE-2026-17896] Use after free in DevTools

Use after free in DevTools. Red Hat rates this moderate (CVSS 7.6). Weakness: CWE-825.

CVE-2026-17896
Unclassified
Jul 30, 2026
High7.1Vendor: MediumLinux

High [CVE-2026-17888] Insufficient validation of untrusted input in WebUI

Insufficient validation of untrusted input in WebUI. Red Hat rates this moderate (CVSS 7.1). Weakness: CWE-1286.

CVE-2026-17888
Unclassified
Jul 30, 2026

← All vendors