Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5187 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

Medium5.5Red Hat Updated

Medium [CVE-2026-97529] Validate BSG request_len before reading vendor_cmd

Validate BSG request_len before reading vendor_cmd[]. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-97529
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98038] Keep refcount_acquire nullable for borrowed RCU kptrs

Keep refcount_acquire nullable for borrowed RCU kptrs. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-98038
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98009] clamp quantum in parse and fallback paths

clamp quantum in parse and fallback paths. Red Hat rates this low (CVSS 5.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-98009
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98010] clamp quantum in change class

clamp quantum in change class. Red Hat rates this low (CVSS 5.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-98010
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97548] fix the rtrmap and rtrefcount _maxlevels_ondisk functions

fix the rtrmap and rtrefcount _maxlevels_ondisk functions. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-97548
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98052] clear txcb->last before writing each descriptor

clear txcb->last before writing each descriptor. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-826.

CVE-2026-98052
Unclassified
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98045] Mark faultable stack helpers as sleepable

Mark faultable stack helpers as sleepable. Red Hat rates this low (CVSS 5.5). Weakness: CWE-1322. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-98045
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97569] Prevent queue stop with deferred completions

Prevent queue stop with deferred completions. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.

CVE-2026-97569
Unclassified
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98000] Fix potential UAF in pec_store

Fix potential UAF in pec_store. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-98000
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-97556] avoid leaking refcount when cifs_sb_tlink fails

avoid leaking refcount when cifs_sb_tlink() fails. Red Hat rates this low (CVSS 5.5). Weakness: CWE-911. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-97556
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97591] Fix handling of EBUSY in PHMAC when req is pushed to crypto engine

Fix handling of EBUSY in PHMAC when req is pushed to crypto engine. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-394.

CVE-2026-97591
Unclassified
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98057] Add checking nr_subbufs to persistent ring buffer validation

Add checking nr_subbufs to persistent ring buffer validation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-98057
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97539] don't rely on id table pointer arithmetic

don't rely on id table pointer arithmetic. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-97539
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-97522] fix bad accounting in __mptcp_subflow_push_pending

fix bad accounting in __mptcp_subflow_push_pending(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-252. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-97522
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98001] (ltc4282) Make sure clk_init_data is fully initialized

(ltc4282) Make sure clk_init_data is fully initialized. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-908.

CVE-2026-98001
Unclassified
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98002] Fix ineffective error check in nested domain allocation

Fix ineffective error check in nested domain allocation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-253. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-98002
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98046] Mark bpf_btf_find_by_name_kind as sleepable

Mark bpf_btf_find_by_name_kind() as sleepable. Red Hat rates this low (CVSS 5.5). Weakness: CWE-1322. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-98046
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97570] Bound SW TPA IDs to prevent crashes

Bound SW TPA IDs to prevent crashes. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.

CVE-2026-97570
Unclassified
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98042] Don't resurrect a scalar id dropped by collect_linked_regs

Don't resurrect a scalar id dropped by collect_linked_regs(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.

CVE-2026-98042
Unclassified
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98053] Refactor and fix init_config access

Refactor and fix init_config access. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-98053
Linux Kernel
Sep 25, 2026

← All vendors