Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5260 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Linux CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Linux release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Linux advisories

High8.2Linux

High [CVE-2026-10949] Heap buffer overflow in Video

Heap buffer overflow in Video. Red Hat rates this important (CVSS 8.2). Weakness: CWE-131. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10949
Unclassified
Jun 2, 2026
High8.7Linux

High [CVE-2026-10980] Insufficient validation of untrusted input in DevTools

Insufficient validation of untrusted input in DevTools. Red Hat rates this important (CVSS 8.7). Weakness: CWE-346. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10980
Unclassified
Jun 2, 2026
High8.8Linux

High [CVE-2026-10934] Use after free in Autofill

Use after free in Autofill. Red Hat rates this important (CVSS 8.8). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10934
Unclassified
Jun 2, 2026
High8.8Linux

High [CVE-2026-10883] Out of bounds write in ANGLE

Out of bounds write in ANGLE. Red Hat rates this important (CVSS 8.8). Weakness: CWE-843. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10883
Unclassified
Jun 2, 2026
High7.9Linux

High [CVE-2026-10960] Uninitialized Use in Codecs

Uninitialized Use in Codecs. Red Hat rates this important (CVSS 7.9). Weakness: CWE-824. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10960
Unclassified
Jun 2, 2026
High8.8Linux

High [CVE-2026-10891] Use after free in GFX

Use after free in GFX. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10891
Unclassified
Jun 2, 2026
High7.4Linux

High [CVE-2026-10922] Insufficient validation of untrusted input in DevTools

Insufficient validation of untrusted input in DevTools. Red Hat rates this important (CVSS 7.4). Weakness: CWE-1173. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10922
Unclassified
Jun 2, 2026
High8.7Linux

High [CVE-2026-10912] Insufficient validation of untrusted input in Extensions

Insufficient validation of untrusted input in Extensions. Red Hat rates this important (CVSS 8.7). Weakness: CWE-79. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10912
Unclassified
Jun 2, 2026
High7.3Linux

High [CVE-2026-10923] Use after free in WebAppInstalls

Use after free in WebAppInstalls. Red Hat rates this important (CVSS 7.3). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10923
Unclassified
Jun 2, 2026
High8.2Linux

High [CVE-2026-10920] Insufficient validation of untrusted input in WebShare

Insufficient validation of untrusted input in WebShare. Red Hat rates this important (CVSS 8.2). Weakness: CWE-79. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10920
Unclassified
Jun 2, 2026
High8.2Linux

High [CVE-2026-10925] Out of bounds write in Skia

Out of bounds write in Skia. Red Hat rates this important (CVSS 8.2). Weakness: CWE-787. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10925
Unclassified
Jun 2, 2026
High8.8Linux

High [CVE-2026-10906] Use after free in WebAuthentication

Use after free in WebAuthentication. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10906
Unclassified
Jun 2, 2026
High8.8Linux

High [CVE-2026-10888] Use after free in Cast Streaming

Use after free in Cast Streaming. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10888
Unclassified
Jun 2, 2026
High8.8Linux

High [CVE-2026-10982] Use after free in WebXR

Use after free in WebXR. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10982
Unclassified
Jun 2, 2026
High8.7Linux

High [CVE-2026-10927] Out of bounds read in Dawn

Out of bounds read in Dawn. Red Hat rates this important (CVSS 8.7). Weakness: CWE-125. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10927
Unclassified
Jun 2, 2026
High8.8Linux

High [CVE-2026-10962] Type Confusion in Media

Type Confusion in Media. Red Hat rates this important (CVSS 8.8). Weakness: CWE-843. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10962
Unclassified
Jun 2, 2026
High7.8Linux

High [CVE-2026-50256] stack buffer overflow in font alias resolution due to libXfont2 name length mismatch

stack buffer overflow in font alias resolution due to libXfont2 name length mismatch. Red Hat rates this important (CVSS 7.8). Weakness: CWE-121. Affected package(s): xorg-x11-server, xorg-x11-server-Xwayland, tigervnc. Resolved in Red Hat advisory RHSA-2026:26562 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 7 Extended Lifecycle Support; Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support; Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On; and 8 more.

CVE-2026-50256
Red Hat Enterprise Linux
Jun 2, 2026
High7.8Linux

High [CVE-2026-50257] use-after-free in miSyncDestroyFence()

use-after-free in miSyncDestroyFence(). Red Hat rates this important (CVSS 7.8). Weakness: CWE-416. Affected package(s): xorg-x11-server, xorg-x11-server-Xwayland, tigervnc. Resolved in Red Hat advisory RHSA-2026:26562 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 7 Extended Lifecycle Support; Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support; Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On; and 8 more.

CVE-2026-50257
Red Hat Enterprise Linux
Jun 2, 2026
High7.8Linux

High [CVE-2026-50258] stack buffer overflow in XKB key types due to unchecked shift levels

stack buffer overflow in XKB key types due to unchecked shift levels. Red Hat rates this important (CVSS 7.8). Weakness: CWE-121. Affected package(s): xorg-x11-server, xorg-x11-server-Xwayland, tigervnc. Resolved in Red Hat advisory RHSA-2026:26562 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 7 Extended Lifecycle Support; Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support; Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On; and 8 more.

CVE-2026-50258
Red Hat Enterprise Linux
Jun 2, 2026
High7.8Linux

High [CVE-2026-50259] stack buffer overflow in XKB SetMap request via mapWidths indexing

stack buffer overflow in XKB SetMap request via mapWidths indexing. Red Hat rates this important (CVSS 7.8). Weakness: CWE-121. Affected package(s): xorg-x11-server, xorg-x11-server-Xwayland, tigervnc. Resolved in Red Hat advisory RHSA-2026:26562 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 7 Extended Lifecycle Support; Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support; Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On; and 8 more.

CVE-2026-50259
Red Hat Enterprise Linux
Jun 2, 2026

← All vendors