Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

4432 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

High8.2Red Hat

High [CVE-2026-93569] HTTP/1 absolute-form Host mismatch is translated to HTTP/2:authority, overriding the request-target authority

HTTP/1 absolute-form Host mismatch is translated to HTTP/2:authority, overriding the request-target authority. Red Hat rates this important (CVSS 8.2). Weakness: CWE-444. Affected products named by the advisory: Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; and 6 more. Affected products named by the advisory: Red Hat Build of Keycloak; Red Hat Data Grid 8; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; and 2 more.

CVE-2026-93569
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93567] HTTP/1 authority-form CONNECT is translated to malformed HTTP/2 CONNECT with Host-controlled:authority

HTTP/1 authority-form CONNECT is translated to malformed HTTP/2 CONNECT with Host-controlled:authority. Red Hat rates this important (CVSS 7.5). Weakness: CWE-20. Affected products named by the advisory: Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; and 6 more. Affected products named by the advisory: Red Hat Build of Keycloak; Red Hat Data Grid 8; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; and 2 more.

CVE-2026-93567
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93657] DNSSEC validation bypass allows forged DNS records

DNSSEC validation bypass allows forged DNS records. Red Hat rates this important (CVSS 7.5). Weakness: CWE-354. Affected products named by the advisory: Logging Subsystem for Red Hat OpenShift; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift AI (RHOAI); and 2 more. Affected products named by the advisory: Red Hat Trusted Profile Analyzer; Red Hat package: rust-sequoia-sq.

CVE-2026-93657
Red Hat Enterprise Linux
Sep 18, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-93658] uutils coreutils: Privilege Escalation via setuid/setgid handling

uutils coreutils: Privilege Escalation via setuid/setgid handling. Red Hat rates this moderate (CVSS 7). Weakness: CWE-279.

CVE-2026-93658
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93565] Netty RtspDecoder Method-Token Smuggling via Trailing Control Byte

Netty RtspDecoder Method-Token Smuggling via Trailing Control Byte. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 8 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Data Grid 8; and 4 more.

CVE-2026-93565
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93564] HAProxy PROXY-v2 nested-TLV grandchild ByteBuf reference-count leak (incomplete fix of PR #16881)

HAProxy PROXY-v2 nested-TLV grandchild ByteBuf reference-count leak (incomplete fix of PR #16881). Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; Red Hat build of Apicurio Registry 3; and 5 more. Affected products named by the advisory: Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; and 1 more.

CVE-2026-93564
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93558] Unbounded Per-Connection Queue Growth in WebSocketServerExtensionHandler Leads to Denial of Service

Unbounded Per-Connection Queue Growth in WebSocketServerExtensionHandler Leads to Denial of Service. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 8 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Data Grid 8; and 4 more.

CVE-2026-93558
Unclassified
Sep 18, 2026
High7.2Red Hat

High [CVE-2026-93604] Sandbox escape via `crypto.setFips ` function

Sandbox escape via `crypto.setFips()` function. Red Hat rates this important (CVSS 7.2). Weakness: CWE-1100. Affected products named by the advisory: Red Hat Developer Hub; Self-service automation portal 2.

CVE-2026-93604
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93599] Denial of Service via crafted Certificate Revocation List

Denial of Service via crafted Certificate Revocation List. Red Hat rates this important (CVSS 7.5). Weakness: CWE-125. Red Hat lists fixing advisory RHSA-2026:57200 with package chunkah-main-0.6.0-3.hum1, rust-main-1.98.1-1.hum1, aardvark-dns-main-2.1.0-1.hum1, openshell-main-0.0.116-0.2.hum1. Affected products named by the advisory: Red Hat Hardened Images; Ansible Automation Orchestrator 2026; Confidential Cluster Operator; Logging Subsystem for Red Hat OpenShift; and 28 more. Affected products named by the advisory: Migration Toolkit for Applications 8; OpenShift Lightspeed; Red Hat Ansible Automation Platform 2; Red Hat Discovery 2; and 24 more.

CVE-2026-93599
Red Hat Enterprise Linux
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93592] Denial of Service via negative token ID input

Denial of Service via negative token ID input. Red Hat rates this important (CVSS 7.5). Weakness: CWE-617. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-93592
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93491] Denial of Service via unbounded HttpServerCodec HTTP/1.1 pipeline queue

Denial of Service via unbounded HttpServerCodec HTTP/1.1 pipeline queue. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 8 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Data Grid 8; and 4 more.

CVE-2026-93491
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93488] Denial of Service via unbounded concurrent SPDY streams

Denial of Service via unbounded concurrent SPDY streams. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 8 more. Affected products named by the advisory: Red Hat build of Apicurio Registry 3; Red Hat build of Debezium 3; Red Hat Build of Keycloak; Red Hat Data Grid 8; and 4 more.

CVE-2026-93488
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93563] Unbounded multi-line response accumulation in SmtpResponseDecoder leads to memory-exhaustion DoS

Unbounded multi-line response accumulation in SmtpResponseDecoder leads to memory-exhaustion DoS. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat build of Apache Camel for Spring Boot 4; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; Red Hat Single Sign-On 7.

CVE-2026-93563
Unclassified
Sep 18, 2026
High8.2Red Hat

High [CVE-2026-81627] Qemu-kvm: vapic writable rom alias can escape the option-rom window and expose locked smram

A flaw was found in QEMU. The VAPIC setup hypercall in hw/i386/vapic.c does not validate that the writable RAM alias remains within the option ROM window. A privileged guest user on a Q35/KVM machine can position this alias over locked SMRAM, bypassing chipset D_LCK protection and injecting code into System Management Mode memory. This flaw allows a privileged guest to bypass SMRAM locking on Q35 machine types by placing the VAPIC writable ROM alias outside the option-ROM window. While the kvmvapic TPR optimization is normally used only by 32-bit Windows guests, any privileged guest can deliberately invoke the VAPIC setup hypercall to trigger the vulnerable code path. Exploitation requires guest root access and KVM acceleration. Red Hat severity: Important — CVSS 8.2 (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H). Weakness: CWE-787. Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux for NVIDIA 26; Red Hat OpenShift Container Platform 4; Red Hat OpenStack Platform 13 (Queens). Red Hat lists Red Hat Enterprise Linux 6 as not affected. Will not fix / out of support: Red Hat Enterprise Linux for NVIDIA 26; Red Hat OpenStack Platform 13 (Queens). Red Hat does not currently list a fixing RHSA for this CVE.

CVE-2026-81627
Red Hat Enterprise Linux
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93572] RedisArrayAggregator nested RESP headers multiply patched preallocation limits

RedisArrayAggregator nested RESP headers multiply patched preallocation limits. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat build of Apache Camel for Spring Boot 4; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; Red Hat Single Sign-On 7.

CVE-2026-93572
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-44248 +1] Resource Exhaustion in MqttDecoder

Resource Exhaustion in MqttDecoder. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1035. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat build of Apache Camel for Spring Boot 4; Red Hat Fuse 7; Red Hat JBoss Enterprise Application Platform 7; and 1 more. Affected products named by the advisory: Red Hat Single Sign-On 7.

CVE-2026-44248CVE-2026-93575
Unclassified
Sep 18, 2026
High7.5Red Hat

High [CVE-2026-93436] Denial of Service via memory exhaustion from rejected requests

Denial of Service via memory exhaustion from rejected requests. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-93436
Unclassified
Sep 17, 2026
High7.5Red Hat

High [CVE-2026-54451] Elixir protobuf: Denial of Service via unbounded recursion in message decoding

Elixir protobuf: Denial of Service via unbounded recursion in message decoding. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-54451
Unclassified
Sep 17, 2026
High7.5Red Hat

High [CVE-2026-85721] Denial of Service via unbounded HTTP response decompression

Denial of Service via unbounded HTTP response decompression. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected product named by the advisory: Red Hat Fuse 7.

CVE-2026-85721
Unclassified
Sep 17, 2026
High7.5Red Hat

High [CVE-2026-85719] SOCKS proxy credentials exposed to origin server

SOCKS proxy credentials exposed to origin server. Red Hat rates this important (CVSS 7.5). Weakness: CWE-201. Affected product named by the advisory: Red Hat Fuse 7.

CVE-2026-85719
Unclassified
Sep 17, 2026

← All vendors