Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5406 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

Medium5.5Red Hat Updated

Medium [CVE-2026-98008] fix NULL pointer dereference on unbind with fixed-link

fix NULL pointer dereference on unbind with fixed-link. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.

CVE-2026-98008
Unclassified
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-97546] don't spin forever on zero-length dirents when salvaging them

don't spin forever on zero-length dirents when salvaging them. Red Hat rates this low (CVSS 5.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-97546
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97535] Bound VP index against VP_CTRL IOCB bitmap size

Bound VP index against VP_CTRL IOCB bitmap size. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-97535
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97537] Fix queue teardown NULL dma_free and bitmap locking

Fix queue teardown NULL dma_free and bitmap locking. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-97537
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-97549] fix under-reservation of blocks when repairing sf directories

fix under-reservation of blocks when repairing sf directories. Red Hat rates this low (CVSS 5.5). Weakness: CWE-617. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-97549
Linux Kernel
Sep 25, 2026
Medium6.4Red Hat Updated

Medium [CVE-2026-98039] Require MEM_PERCPU for percpu kptr stores

Require MEM_PERCPU for percpu kptr stores. Red Hat rates this moderate (CVSS 6.4). Weakness: CWE-843. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-98039
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98031] Initialize extack in remove_nh_grp_entry

Initialize extack in remove_nh_grp_entry(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-824. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-98031
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98012] clamp quantum in change path

clamp quantum in change path. Red Hat rates this low (CVSS 5.5). Weakness: CWE-606. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel.

CVE-2026-98012
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98011] clamp quantum in change and init paths

clamp quantum in change and init paths. Red Hat rates this low (CVSS 5.5). Weakness: CWE-606. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-98011
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97534] accurately adjust free_sections during free_segment_range

accurately adjust free_sections during free_segment_range. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-617.

CVE-2026-97534
Unclassified
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97587] store available counter mask as bitmap

store available counter mask as bitmap. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-97587
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98067] disable LZ4 rolling decompression for now

disable LZ4 rolling decompression for now. Red Hat rates this low (CVSS 5.5). Weakness: CWE-440. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-98067
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98049] zero extend the result of an arena 32-bit cmpxchg

zero extend the result of an arena 32-bit cmpxchg. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-681.

CVE-2026-98049
Unclassified
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-98005] delimit inode_share cache key components

delimit inode_share cache key components. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-694.

CVE-2026-98005
Unclassified
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98059] Mark sched_process_wait argument as nullable

Mark sched_process_wait argument as nullable. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-98059
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97554] avoid using uninitialized SIDs in cifs_posix_to_fattr

avoid using uninitialized SIDs in cifs_posix_to_fattr(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-908. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-97554
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97576] validate HEVC tile counts

validate HEVC tile counts. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-97576
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98074] do not clear curr_active_slave prematurely when releasing all slaves

do not clear curr_active_slave prematurely when releasing all slaves. Red Hat rates this low (CVSS 5.5). Weakness: CWE-459. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-98074
Linux Kernel
Sep 25, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-98064] Fix NULL-ptr-deref when showing a void BTF type

Fix NULL-ptr-deref when showing a void BTF type. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-98064
Linux Kernel
Sep 25, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-97559] fail DACL rewrite when the new DACL exceeds 64K

fail DACL rewrite when the new DACL exceeds 64K. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-97559
Linux Kernel
Sep 25, 2026

← All vendors