Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

11898 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

Low2.5Red Hat

Low [CVE-2026-86424] Local attacker can modify files via TOCTOU symlink race

Local attacker can modify files via TOCTOU symlink race. Red Hat rates this low (CVSS 2.5). Weakness: CWE-367. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat package: imagemagick.

CVE-2026-86424
Red Hat Enterprise Linux
Sep 7, 2026
Low3.3Red Hat

Low [CVE-2026-86423] Denial of service via heap-use-after-free in PerlMagick's GetList method

Denial of service via heap-use-after-free in PerlMagick's GetList method. Red Hat rates this low (CVSS 3.3). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat package: imagemagick.

CVE-2026-86423
Red Hat Enterprise Linux
Sep 7, 2026
Low3.3Red Hat

Low [CVE-2026-86422] Information disclosure and modification via TOCTOU symlink race on Windows

Information disclosure and modification via TOCTOU symlink race on Windows. Red Hat rates this low (CVSS 3.3). Weakness: CWE-367.

CVE-2026-86422
Unclassified
Sep 7, 2026
Low3.7Red Hat

Low [CVE-2026-86421] Denial of Service via memory leak in MSL decoder

Denial of Service via memory leak in MSL decoder. Red Hat rates this low (CVSS 3.7). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat package: imagemagick.

CVE-2026-86421
Red Hat Enterprise Linux
Sep 7, 2026
Low3.7Red Hat

Low [CVE-2026-86420] Denial of Service due to memory budget exhaustion

Denial of Service due to memory budget exhaustion. Red Hat rates this low (CVSS 3.7). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat package: imagemagick.

CVE-2026-86420
Red Hat Enterprise Linux
Sep 7, 2026
High7.5Red Hat

High [CVE-2026-86250] Denial of Service via unbounded chunked cookie processing

Denial of Service via unbounded chunked cookie processing. Red Hat rates this important (CVSS 7.5). Weakness: CWE-606. Affected product named by the advisory: Red Hat OpenShift AI (RHOAI).

CVE-2026-86250
Unclassified
Sep 6, 2026
Medium4.8Red Hat

Medium [CVE-2026-82208] Improper certificate validation when using wolfSSL CA cache

With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store after the callback returns. A certificate trusted by the cached store but rejected by the callback-selected store is then incorrectly accepted. This issue only affects curl/libcurl built with the wolfSSL TLS backend. Red Hat does not ship wolfSSL as the TLS backend for curl in supported products; shipped curl uses OpenSSL (or historically NSS). Therefore Red Hat products are not affected. Red Hat severity: Moderate — CVSS 4.8 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N). Weakness: CWE-295. Red Hat lists Confidential Compute Attestation; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat Hardened Images; Red Hat JBoss Core Services; Red Hat OpenShift Container Platform 4; Red Hat OpenShift Dev Spaces; Red Hat Satellite 6 as not affected.

CVE-2026-82208
Unclassified
Sep 6, 2026
Medium6.5Red Hat

Medium [CVE-2026-19931] Information disclosure via incorrect connection reuse with Negotiate authentication

Information disclosure via incorrect connection reuse with Negotiate authentication. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-488. Red Hat lists fixing advisory RHSA-2026:63161 with package curl-main-8.22.0-0.1.hum1, rust-main-1.98.0-1.hum1. Affected products named by the advisory: Red Hat Hardened Images; Confidential Compute Attestation; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; and 9 more. Affected products named by the advisory: Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift Container Platform 4; Red Hat OpenShift Dev Spaces; Red Hat Satellite 6; and 5 more.

CVE-2026-19931
Red Hat Enterprise Linux
Sep 6, 2026
Medium5.9Red Hat

Medium [CVE-2026-86253] Arbitrary File Read via Path Traversal

Arbitrary File Read via Path Traversal. Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-22. Affected product named by the advisory: Red Hat OpenShift AI (RHOAI).

CVE-2026-86253
Unclassified
Sep 6, 2026
Medium5.3Red Hat

Medium [CVE-2026-86252] Server-Sent Events (SSE) injection via carriage return

Server-Sent Events (SSE) injection via carriage return. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-93. Affected product named by the advisory: Red Hat OpenShift AI (RHOAI).

CVE-2026-86252
Unclassified
Sep 6, 2026
Medium5.9Red Hat

Medium [CVE-2026-86251] Information disclosure via path traversal due to double-decoding flaw

Information disclosure via path traversal due to double-decoding flaw. Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-22. Affected product named by the advisory: Red Hat OpenShift AI (RHOAI).

CVE-2026-86251
Unclassified
Sep 6, 2026
Medium5.4Red Hat

Medium [CVE-2026-86205] Open Redirect vulnerability via unsanitized Referer header

Open Redirect vulnerability via unsanitized Referer header. Red Hat rates this moderate (CVSS 5.4). Weakness: CWE-601. Affected product named by the advisory: Red Hat OpenShift AI (RHOAI).

CVE-2026-86205
Unclassified
Sep 6, 2026
Low3.1Red Hat

Low [CVE-2026-82209] Information disclosure via improper Public Suffix List boundary check

Information disclosure via improper Public Suffix List boundary check. Red Hat rates this low (CVSS 3.1). Weakness: CWE-501. Red Hat lists fixing advisory RHSA-2026:63161 with package curl-main-8.22.0-0.1.hum1. Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 3 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat OpenShift Dev Spaces; Red Hat package: curl.

CVE-2026-82209
Red Hat Enterprise Linux
Sep 6, 2026
Low3.7Red Hat

Low [CVE-2026-80255] Information disclosure due to secure cookie attribute bypass

A `Set-Cookie:` header using tab (horizontal tab, ASCII code 9) instead of space (ascii code 32) immediately before the `Secure` attribute causes curl to store the cookie without its Secure flag. The cookie might then wrongfully be sent over plaintext HTTP on subsequent requests to the same host. A flaw was found in curl. This misinterpretation can cause a secure cookie to be transmitted over an unencrypted HTTP connection, potentially exposing its contents to an attacker. Red Hat severity: Low — CVSS 3.7 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N). Weakness: CWE-201. Affected Red Hat products: Red Hat Hardened Images; Red Hat Satellite 6. Red Hat lists Confidential Compute Attestation; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat JBoss Core Services; Red Hat OpenShift Container Platform 4; Red Hat OpenShift Dev Spaces; Red Hat Satellite 6 as not affected. Red Hat fixing advisory: RHSA-2026:63161.

CVE-2026-80255
Unclassified
Sep 6, 2026
Low3.7Red Hat

Low [CVE-2026-80231] Incorrect HTTPS connection reuse with Native CA Store

A flaw in libcurl makes it wrongly reuse an existing HTTPS connection setup for a given hostname even when using a different Native CA Store setting (`CURLSSLOPT_NATIVE_CA`) than when the connection was created. This could potentially lead to a client trusting a malicious server if the initial connection used a less strict CA store than intended for subsequent connections. This Low impact flaw in libcurl arises from incorrect reuse of HTTPS connections when the `CURLSSLOPT_NATIVE_CA` option is employed with differing Native CA Store settings. This flaw does not affect any Red Hat products. Red Hat severity: Low — CVSS 3.7 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N). Weakness: CWE-295. Affected Red Hat products: Red Hat Hardened Images. Red Hat lists Confidential Compute Attestation; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift Container Platform 4; Red Hat OpenShift Dev Spaces; Red Hat Satellite 6 as not affected. Red Hat fixing advisory: RHSA-2026:63161.

CVE-2026-80231
Unclassified
Sep 6, 2026
Low3.7Red Hat

Low [CVE-2026-80230] Public key pinning bypass allows unauthenticated connections

When `CURLOPT_PINNEDPUBLICKEY` is configured alongside options that disable standard peer verification (`CURLOPT_SSL_VERIFYPEER = 0` and `CURLOPT_SSL_VERIFYHOST = 0`), libcurl fails to enforce public key pinning on connections established without a presented server certificate. Bypassing the pinning check under these disabled-verification conditions allows unauthenticated connections to succeed when they should be rejected. A flaw was found in libcurl, a client-side URL transfer library. This bypass enables unauthenticated connections that should have been rejected, potentially compromising the integrity of the connection. This Low impact flaw in curl arises when public key pinning is enabled alongside explicitly disabled SSL/TLS peer verification. In such an atypical and insecure configuration, libcurl fails to enforce the public key pinning, allowing unauthenticated connections to proceed without proper certificate validation. Red Hat products typically employ secure default configurations that enable full peer verification, thus reducing exposure to this issue. Red Hat severity: Low — CVSS 3.7 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N). Weakness: CWE-303. Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 4 more.

CVE-2026-80230
Red Hat Enterprise Linux
Sep 6, 2026
Low3.7Red Hat

Low [CVE-2026-18924] Use-after-free in HTTP/2 Server Push with shared connections

Use-after-free in HTTP/2 Server Push with shared connections. Red Hat rates this low (CVSS 3.7). Weakness: CWE-416. Red Hat lists fixing advisory RHSA-2026:63161 with package curl-main-8.22.0-0.1.hum1, rust-main-1.98.0-1.hum1. Affected products named by the advisory: Red Hat Hardened Images; Confidential Compute Attestation; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; and 11 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift Container Platform 4; Red Hat OpenShift Dev Spaces; and 7 more.

CVE-2026-18924
Red Hat Enterprise Linux
Sep 6, 2026
Low3.7Red Hat

Low [CVE-2026-13608] Authentication bypass in OpenLDAP SASL negotiation via Man-in-the-Middle (MITM) attack

A flaw in the libcurl SASL negotiation for LDAP authentication allows an incomplete handshake sequence to be misinterpreted as a successful cryptographic verification. An attacker executing a Man-in-the-Middle (MITM) attack can inject a premature or shortcut response that bypasses complete peer validation. A flaw was found in libcurl's SASL (Simple Authentication and Security Layer) negotiation for LDAP (Lightweight Directory Access Protocol) authentication when using the OpenLDAP backend. This Low impact flaw in libcurl's SASL negotiation for LDAP authentication could allow an attacker to bypass peer validation through a Man-in-the-Middle (MITM) attack. Exploitation requires an active network attacker to inject a premature response during the authentication handshake. Red Hat severity: Low — CVSS 3.7 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N). Weakness: CWE-923. Affected Red Hat products: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Satellite 6. Red Hat fixing advisory: RHSA-2026:63161, RHSA-2026:63514. Affected products named by the advisory: Red Hat package: curl.

CVE-2026-13608
Red Hat Enterprise Linux
Sep 6, 2026
High8.7Red Hat

High [CVE-2026-0799] Out-of-bounds read and write vulnerability allows arbitrary memory access

Out-of-bounds read and write vulnerability allows arbitrary memory access. Red Hat rates this important (CVSS 8.7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: libpcap.

CVE-2026-0799
Red Hat Enterprise Linux
Sep 5, 2026
High8.2Red Hat

High [CVE-2026-86145] Out-of-bounds write allows arbitrary code execution via crafted regular expressions

Out-of-bounds write allows arbitrary code execution via crafted regular expressions. Red Hat rates this important (CVSS 8.2). Weakness: CWE-787. Red Hat lists fixing advisory RHSA-2026:67534 with package pcre2-main-10.48-0.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images; and 5 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: mariadb10.11; Red Hat package: mariadb11.8; Red Hat package: mingw-pcre2; and 1 more.

CVE-2026-86145
Red Hat Enterprise Linux
Sep 5, 2026

← All vendors