Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

10925 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-100310] Privilege escalation via LIBEXTRACTOR_PREFIX environment variable

Privilege escalation via LIBEXTRACTOR_PREFIX environment variable. Red Hat rates this moderate (CVSS 7). Weakness: CWE-426.

CVE-2026-100310
Unclassified
Sep 25, 2026
High7.7Red Hat

High [CVE-2026-89032] Information disclosure via semantic cache metadata mismatch

Information disclosure via semantic cache metadata mismatch. Red Hat rates this important (CVSS 7.7). Weakness: CWE-524. Affected products named by the advisory: Lightspeed Core; Red Hat Ansible Automation Platform 2; Red Hat OpenShift AI (RHOAI).

CVE-2026-89032
Unclassified
Sep 25, 2026
High8.8Red Hat

High [CVE-2026-93834] use-after-free race in Tlcreate/Twalk allows VM guest escape

use-after-free race in Tlcreate/Twalk allows VM guest escape. Red Hat rates this important (CVSS 8.8). Weakness: CWE-416. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux for NVIDIA 26; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: qemu-kvm.

CVE-2026-93834
Red Hat Enterprise Linux
Sep 25, 2026
High7.8Red Hat Updated

High [CVE-2026-95832] Reflected unknown field names in the kitty colour control escape code allow command execution in the user's shell

Reflected unknown field names in the kitty colour control escape code allow command execution in the user's shell. Red Hat rates this important (CVSS 7.8). Weakness: CWE-78.

CVE-2026-95832
Unclassified
Sep 25, 2026
High7.5Red Hat

High [CVE-2026-92550] org.apache.qpid/qpid-broker-plugins-amqp-0-8-protocol: Apache Qpid Broker-J: Denial of Service via excessive memory allocation in AMQP decoder

org.apache.qpid/qpid-broker-plugins-amqp-0-8-protocol: Apache Qpid Broker-J: Denial of Service via excessive memory allocation in AMQP decoder. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected product named by the advisory: Red Hat Fuse 7.

CVE-2026-92550
Unclassified
Sep 25, 2026
High7.5Red Hat

High [CVE-2026-92560] org.apache.qpid/qpid-broker-plugins-amqp-0-10-protocol: Apache Qpid Broker-J: Denial of Service via excessive memory allocation in AMQP 0-10 decoder

org.apache.qpid/qpid-broker-plugins-amqp-0-10-protocol: Apache Qpid Broker-J: Denial of Service via excessive memory allocation in AMQP 0-10 decoder. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected product named by the advisory: Red Hat Fuse 7.

CVE-2026-92560
Unclassified
Sep 25, 2026
High7.5Red Hat

High [CVE-2026-92564] org.apache.qpid/qpid-broker-plugins-amqp-0-8-protocol: Apache Qpid Broker-J: Denial of Service via unbounded type nesting

org.apache.qpid/qpid-broker-plugins-amqp-0-8-protocol: Apache Qpid Broker-J: Denial of Service via unbounded type nesting. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Affected product named by the advisory: Red Hat Fuse 7.

CVE-2026-92564
Unclassified
Sep 25, 2026
High7.5Red Hat

High [CVE-2026-92609] org.apache.qpid/qpid-broker-plugins-management-http: Apache Qpid Broker-J: Unauthorized management session access via session fixation

org.apache.qpid/qpid-broker-plugins-management-http: Apache Qpid Broker-J: Unauthorized management session access via session fixation. Red Hat rates this important (CVSS 7.5). Weakness: CWE-613. Affected product named by the advisory: Red Hat Fuse 7.

CVE-2026-92609
Unclassified
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-97528] Unlink NVMe unsol ctx before freeing on LS reject error

Unlink NVMe unsol ctx before freeing on LS reject error. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-97528
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-98050] Fix napi_gro_receive call from GC workqueue context

Fix napi_gro_receive() call from GC workqueue context. Red Hat rates this moderate (CVSS 7). Weakness: CWE-366. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel.

CVE-2026-98050
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-98015] fix use-after-free in mlx5_eswitch_termtbl_put

fix use-after-free in mlx5_eswitch_termtbl_put. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-98015
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-97573] Handle buffer allocation failure in bnxt_rx_ring_reset

Handle buffer allocation failure in bnxt_rx_ring_reset(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-908. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-97573
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-97583] Clear stale peer app data after address list changes

Clear stale peer app data after address list changes. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-97583
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-97547] fix exchange-range reflink flag clearing issue with INO1_WRITTEN

fix exchange-range reflink flag clearing issue with INO1_WRITTEN. Red Hat rates this moderate (CVSS 7). Weakness: CWE-281. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-97547
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-98068] don't let rds_conn_shutdown consume a concurrent drop

don't let rds_conn_shutdown() consume a concurrent drop. Red Hat rates this moderate (CVSS 7). Weakness: CWE-366. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-98068
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-97563] reject out-of-bounds DataOffset in CIFSSMBRead

reject out-of-bounds DataOffset in CIFSSMBRead(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-97563
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-97584] Fix incorrect free in candidate cleanup in afs_lookup_server

Fix incorrect free in candidate cleanup in afs_lookup_server(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-826. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-97584
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-97533] Acquire init_mm read lock on attribute changes to avoid UAF

Acquire init_mm read lock on attribute changes to avoid UAF. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-97533
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-97532] Null out freed pointers in qla2x00_mem_alloc error path

Null out freed pointers in qla2x00_mem_alloc() error path. Red Hat rates this moderate (CVSS 7). Weakness: CWE-1341. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-97532
Linux Kernel
Sep 25, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-98041] Don't predict JMP32 pointer vs zero comparisons

Don't predict JMP32 pointer vs zero comparisons. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-98041
Linux Kernel
Sep 25, 2026

← All vendors