Red Hat Linux Security Advisories & CVEs
4432 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
High [CVE-2026-93569] HTTP/1 absolute-form Host mismatch is translated to HTTP/2:authority, overriding the request-target authority
HTTP/1 absolute-form Host mismatch is translated to HTTP/2:authority, overriding the request-target authority. Red Hat rates this important (CVSS 8.2). Weakness: CWE-444. Affected products named by the advisory: Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; and 6 more. Affected products named by the advisory: Red Hat Build of Keycloak; Red Hat Data Grid 8; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; and 2 more.
High [CVE-2026-93567] HTTP/1 authority-form CONNECT is translated to malformed HTTP/2 CONNECT with Host-controlled:authority
HTTP/1 authority-form CONNECT is translated to malformed HTTP/2 CONNECT with Host-controlled:authority. Red Hat rates this important (CVSS 7.5). Weakness: CWE-20. Affected products named by the advisory: Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; and 6 more. Affected products named by the advisory: Red Hat Build of Keycloak; Red Hat Data Grid 8; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; and 2 more.
High [CVE-2026-93657] DNSSEC validation bypass allows forged DNS records
DNSSEC validation bypass allows forged DNS records. Red Hat rates this important (CVSS 7.5). Weakness: CWE-354. Affected products named by the advisory: Logging Subsystem for Red Hat OpenShift; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift AI (RHOAI); and 2 more. Affected products named by the advisory: Red Hat Trusted Profile Analyzer; Red Hat package: rust-sequoia-sq.
High [CVE-2026-93658] uutils coreutils: Privilege Escalation via setuid/setgid handling
uutils coreutils: Privilege Escalation via setuid/setgid handling. Red Hat rates this moderate (CVSS 7). Weakness: CWE-279.
High [CVE-2026-93565] Netty RtspDecoder Method-Token Smuggling via Trailing Control Byte
Netty RtspDecoder Method-Token Smuggling via Trailing Control Byte. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 8 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Data Grid 8; and 4 more.
High [CVE-2026-93564] HAProxy PROXY-v2 nested-TLV grandchild ByteBuf reference-count leak (incomplete fix of PR #16881)
HAProxy PROXY-v2 nested-TLV grandchild ByteBuf reference-count leak (incomplete fix of PR #16881). Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; Red Hat build of Apicurio Registry 3; and 5 more. Affected products named by the advisory: Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; and 1 more.
High [CVE-2026-93558] Unbounded Per-Connection Queue Growth in WebSocketServerExtensionHandler Leads to Denial of Service
Unbounded Per-Connection Queue Growth in WebSocketServerExtensionHandler Leads to Denial of Service. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 8 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Data Grid 8; and 4 more.
High [CVE-2026-93604] Sandbox escape via `crypto.setFips ` function
Sandbox escape via `crypto.setFips()` function. Red Hat rates this important (CVSS 7.2). Weakness: CWE-1100. Affected products named by the advisory: Red Hat Developer Hub; Self-service automation portal 2.
High [CVE-2026-93599] Denial of Service via crafted Certificate Revocation List
Denial of Service via crafted Certificate Revocation List. Red Hat rates this important (CVSS 7.5). Weakness: CWE-125. Red Hat lists fixing advisory RHSA-2026:57200 with package chunkah-main-0.6.0-3.hum1, rust-main-1.98.1-1.hum1, aardvark-dns-main-2.1.0-1.hum1, openshell-main-0.0.116-0.2.hum1. Affected products named by the advisory: Red Hat Hardened Images; Ansible Automation Orchestrator 2026; Confidential Cluster Operator; Logging Subsystem for Red Hat OpenShift; and 28 more. Affected products named by the advisory: Migration Toolkit for Applications 8; OpenShift Lightspeed; Red Hat Ansible Automation Platform 2; Red Hat Discovery 2; and 24 more.
High [CVE-2026-93592] Denial of Service via negative token ID input
Denial of Service via negative token ID input. Red Hat rates this important (CVSS 7.5). Weakness: CWE-617. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).
High [CVE-2026-93491] Denial of Service via unbounded HttpServerCodec HTTP/1.1 pipeline queue
Denial of Service via unbounded HttpServerCodec HTTP/1.1 pipeline queue. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 8 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Data Grid 8; and 4 more.
High [CVE-2026-93488] Denial of Service via unbounded concurrent SPDY streams
Denial of Service via unbounded concurrent SPDY streams. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 8 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Data Grid 8; and 4 more.
High [CVE-2026-93563] Unbounded multi-line response accumulation in SmtpResponseDecoder leads to memory-exhaustion DoS
Unbounded multi-line response accumulation in SmtpResponseDecoder leads to memory-exhaustion DoS. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat build of Apache Camel for Spring Boot 4; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; Red Hat Single Sign-On 7.
High [CVE-2026-81627] Qemu-kvm: vapic writable rom alias can escape the option-rom window and expose locked smram
A flaw was found in QEMU. The VAPIC setup hypercall in hw/i386/vapic.c does not validate that the writable RAM alias remains within the option ROM window. A privileged guest user on a Q35/KVM machine can position this alias over locked SMRAM, bypassing chipset D_LCK protection and injecting code into System Management Mode memory. This flaw allows a privileged guest to bypass SMRAM locking on Q35 machine types by placing the VAPIC writable ROM alias outside the option-ROM window. While the kvmvapic TPR optimization is normally used only by 32-bit Windows guests, any privileged guest can deliberately invoke the VAPIC setup hypercall to trigger the vulnerable code path. Exploitation requires guest root access and KVM acceleration. Red Hat severity: Important — CVSS 8.2 (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H). Weakness: CWE-787. Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux for NVIDIA 26; Red Hat OpenShift Container Platform 4; Red Hat OpenStack Platform 13 (Queens). Red Hat lists Red Hat Enterprise Linux 6 as not affected. Will not fix / out of support: Red Hat Enterprise Linux for NVIDIA 26; Red Hat OpenStack Platform 13 (Queens). Red Hat does not currently list a fixing RHSA for this CVE.
High [CVE-2026-93572] RedisArrayAggregator nested RESP headers multiply patched preallocation limits
RedisArrayAggregator nested RESP headers multiply patched preallocation limits. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat build of Apache Camel for Spring Boot 4; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; Red Hat Single Sign-On 7.
High [CVE-2026-44248 +1] Resource Exhaustion in MqttDecoder
Resource Exhaustion in MqttDecoder. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat build of Apache Camel for Spring Boot 4; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; and 1 more. Affected products named by the advisory: Red Hat Single Sign-On 7.
High [CVE-2026-93436] Denial of Service via memory exhaustion from rejected requests
Denial of Service via memory exhaustion from rejected requests. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).
High [CVE-2026-54451] Elixir protobuf: Denial of Service via unbounded recursion in message decoding
Elixir protobuf: Denial of Service via unbounded recursion in message decoding. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
High [CVE-2026-85721] Denial of Service via unbounded HTTP response decompression
Denial of Service via unbounded HTTP response decompression. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected product named by the advisory: Red Hat Fuse 7.
High [CVE-2026-85719] SOCKS proxy credentials exposed to origin server
SOCKS proxy credentials exposed to origin server. Red Hat rates this important (CVSS 7.5). Weakness: CWE-201. Affected product named by the advisory: Red Hat Fuse 7.