Red Hat Linux Security Advisories & CVEs
3172 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-74358] fix fast commit wait/wake bit mapping on 64-bit
fix fast commit wait/wake bit mapping on 64-bit. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-1102. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-74319] fix deadlock waiting for ticket during data relocation
fix deadlock waiting for ticket during data relocation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-833.
Medium [CVE-2026-74373] md/raid1,raid10: fix bio accounting for split md cloned bios
md/raid1,raid10: fix bio accounting for split md cloned bios. Red Hat rates this low (CVSS 5.5). Weakness: CWE-911. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-74420] Reject VMAs with VM_IO or VM_PFNMAP when creating SVM ranges
Reject VMAs with VM_IO or VM_PFNMAP when creating SVM ranges. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-606. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74427] Fix netns teardown to cancel the preallocation charger
Fix netns teardown to cancel the preallocation charger. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74301] fix URB leak in alloc_mtk_intr_urb error path
fix URB leak in alloc_mtk_intr_urb error path. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74372] fix nr_pending leak in REQ_ATOMIC bad-block error path
fix nr_pending leak in REQ_ATOMIC bad-block error path. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74369] fix u-a-f in luo_file_unpreserve_files and luo_file_finish
fix u-a-f in luo_file_unpreserve_files() and luo_file_finish(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911.
Medium [CVE-2026-74293] Validate written enum values
Validate written enum values. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74354] Take mmap_lock in zap_pages
Take mmap_lock in zap_pages(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-833. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74309] fix IRQ-to-ring mapping in interrupt handler
fix IRQ-to-ring mapping in interrupt handler. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-131.
Medium [CVE-2026-74437] Fix deadlock if uvc_status_stop is called from async_ctrl.work
Fix deadlock if uvc_status_stop is called from async_ctrl.work. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-833. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74362] fix ignored return value of generic_write_sync
fix ignored return value of generic_write_sync(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-252. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.
Medium [CVE-2026-74380] Fix iommu_map_sgtable return value check
Fix iommu_map_sgtable() return value check. Red Hat rates this low (CVSS 5.5). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74414] Remove the duplicate attr inode dirty marking action
Remove the duplicate attr inode dirty marking action. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-74276] use FIFO occupancy register to determine buffer size
use FIFO occupancy register to determine buffer size. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-835.
Medium [CVE-2026-74406] Fix potential null-ptr-deref in vxlan_gro_prepare_receive
Fix potential null-ptr-deref in vxlan_gro_prepare_receive(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74334] Fix locking when accessing mr->pd
Fix locking when accessing mr->pd. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-366. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-74321] fix invalid pointer dereference in __btrfs_run_delayed_refs
fix invalid pointer dereference in __btrfs_run_delayed_refs(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat package: kernel.
Medium [CVE-2026-74426] fix NULL pointer dereference in afs_get_tree
fix NULL pointer dereference in afs_get_tree(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.