Red Hat Linux Security Advisories & CVEs
3176 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-72488] fix bug in sdw_add_element_group_count found by syzkaller
fix bug in sdw_add_element_group_count found by syzkaller. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-1285.
Medium [CVE-2026-72489] fix use-after-free in nvec_rx_completed
fix use-after-free in nvec_rx_completed(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-72474] use DMA pool to manange DMA descriptor
use DMA pool to manange DMA descriptor. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-663.
Medium [CVE-2026-72365] Fix writethrough to use collection offload
Fix writethrough to use collection offload. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-72494] Replace waitqueue and flag with completion
Replace waitqueue and flag with completion. Red Hat rates this low (CVSS 5.5). Weakness: CWE-366.
Medium [CVE-2026-72414] round up PTP perout pin duration
round up PTP perout pin duration. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-369.
Medium [CVE-2026-72393] don't cache shinfo across skb realloc
don't cache shinfo across skb realloc. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-72415] Validate written enum value in ge_put_enum_double
Validate written enum value in ge_put_enum_double(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-72477] call _ntfs_bad_inode when failing to rename
call _ntfs_bad_inode() when failing to rename. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-390.
Medium [CVE-2026-72391] free mii_bus in sfp_i2c_mdiobus_destroy
free mii_bus in sfp_i2c_mdiobus_destroy. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772.
Medium [CVE-2026-72444] check device type before reading ETH_ADDRS
check device type before reading ETH_ADDRS. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-824. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 2 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-72340] fix races on the shared Super VCAP block
fix races on the shared Super VCAP block. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-821.
Medium [CVE-2026-72437] free r1_bio when REQ_NOWAIT is set and read would block on retry
free r1_bio when REQ_NOWAIT is set and read would block on retry. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-72429] fix type confusion of dst_entry
fix type confusion of dst_entry. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-843.
Medium [CVE-2026-72431] fix use-after-free in /proc/allocinfo after module unload
fix use-after-free in /proc/allocinfo after module unload. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-72485] defer connection counter increment until alloc succeeds
defer connection counter increment until alloc succeeds. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-72482] fix double decrement of descriptor_busy in command_ioctl
fix double decrement of descriptor_busy in command_ioctl(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911.
Medium [CVE-2026-72425] fix FDIR CTRL VSI resource leak in ice_reset_all_vfs
fix FDIR CTRL VSI resource leak in ice_reset_all_vfs(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-72368] Fix double unlock in nomem_d_alloc error path
Fix double unlock in nomem_d_alloc error path. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-832. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.
Medium [CVE-2026-72369] avoid overflow in bitmap block count calculation
avoid overflow in bitmap block count calculation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-824. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.