Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

4450 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

High7.8Red Hat

High [CVE-2026-90553] Remote Code Execution via LlavaOnevision2 processor ignoring trust_remote_code

Remote Code Execution via LlavaOnevision2 processor ignoring trust_remote_code. Red Hat rates this important (CVSS 7.8). Weakness: CWE-94. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-90553
Unclassified
Sep 12, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89772] write-protect folios during data writeback

write-protect folios during data writeback. Red Hat rates this moderate (CVSS 7). Weakness: CWE-413. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89772
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89766] hold exec_update_lock around namespace ioctl

hold exec_update_lock around namespace ioctl. Red Hat rates this moderate (CVSS 7). Weakness: CWE-367. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89766
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89760] mm, swap: don't free a hibernation slot that is in the swap cache

mm, swap: don't free a hibernation slot that is in the swap cache. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-89760
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89758] skip non-present PMDs when queueing folios

skip non-present PMDs when queueing folios. Red Hat rates this moderate (CVSS 7). Weakness: CWE-824. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89758
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89755] clear stale mapping after freeing swapcache

clear stale mapping after freeing swapcache. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89755
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89754] fix stale walk->action escaping walk_pmd_range

fix stale walk->action escaping walk_pmd_range(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89754
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89747] Fix use-after-free in trace_pipe read on sub-buffer order change

Fix use-after-free in trace_pipe read on sub-buffer order change. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel-rt.

CVE-2026-89747
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89746] Fix use-after-free with same-name named triggers

Fix use-after-free with same-name named triggers. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89746
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89745] Fix lockdown check for mmap_prepare

Fix lockdown check for mmap_prepare. Red Hat rates this moderate (CVSS 7). Weakness: CWE-414. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-89745
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89741] Revert "media: v4l2-dev: fix error handling in __video_register_device "

Revert "media: v4l2-dev: fix error handling in __video_register_device()". Red Hat rates this moderate (CVSS 7). Weakness: CWE-1341. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.

CVE-2026-89741
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89737] Disable work before freeing tbt on remove

Disable work before freeing tbt on remove. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89737
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89729] Fix out-of-bounds write in sensor_hub_get_feature

Fix out-of-bounds write in sensor_hub_get_feature. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89729
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89727] Don't WARN on out-of-range GICV_DIR INTID

Don't WARN on out-of-range GICV_DIR INTID. Red Hat rates this moderate (CVSS 7). Weakness: CWE-617. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel-rt.

CVE-2026-89727
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89719] fix out-of-bounds access in read_block_state

fix out-of-bounds access in read_block_state(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-805. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89719
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89712] restart ssc_expire_umount walk after dropping nfsd_ssc_lock

restart ssc_expire_umount walk after dropping nfsd_ssc_lock. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89712
Unclassified
Sep 11, 2026
High7.0Red Hat

High [CVE-2026-89713] check truncate permission under inode lock

check truncate permission under inode lock. Red Hat rates this important (CVSS 7). Weakness: CWE-367. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89713
Unclassified
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89710] fix layout segment leak on the pnfs_layout_process forget path

fix layout segment leak on the pnfs_layout_process() forget path. Red Hat rates this moderate (CVSS 7). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89710
Linux Kernel
Sep 11, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-89709] lockd, nfsd: RCU-protect nlmsvc_ops dispatch

lockd, nfsd: RCU-protect nlmsvc_ops dispatch. Red Hat rates this moderate (CVSS 7). Weakness: CWE-476. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89709
Unclassified
Sep 11, 2026
High7.0Red Hat

High [CVE-2026-89708] RCU-protect cl_cb_session to fix use-after-free on session teardown

RCU-protect cl_cb_session to fix use-after-free on session teardown. Red Hat rates this important (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89708
Linux Kernel
Sep 11, 2026

← All vendors