Red Hat Linux Security Advisories & CVEs
5480 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Linux CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Linux release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Linux advisories
High [CVE-2026-64387] fix query directory replay double-free
fix query directory replay double-free. Red Hat rates this important (CVSS 7). Weakness: CWE-1341.
High [CVE-2026-64372] fix use-after-free and double free in _OSC evaluation
fix use-after-free and double free in _OSC evaluation. Red Hat rates this moderate (CVSS 7). Weakness: CWE-763.
High [CVE-2026-64280] validate DMA mapping length in afu_dma_map_region
validate DMA mapping length in afu_dma_map_region(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-190.
High [CVE-2026-64298] include MAY_WRITE in open permission mask for O_TRUNC
include MAY_WRITE in open permission mask for O_TRUNC. Red Hat rates this moderate (CVSS 7). Weakness: CWE-358.
High [CVE-2026-64402] Fix OOB write in smb_sync_perf_buffer
Fix OOB write in smb_sync_perf_buffer(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64364] fix out-of-bounds bit access on mt_io_flags
fix out-of-bounds bit access on mt_io_flags. Red Hat rates this important (CVSS 7). Weakness: CWE-476.
High [CVE-2026-64303] terminate the RX channel on TX prepare failure path
terminate the RX channel on TX prepare failure path. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64271] touchwin - reset the packet index on every complete packet
touchwin - reset the packet index on every complete packet. Red Hat rates this important (CVSS 7).
High [CVE-2026-64283] Treat memslot binding offset+size as unsigned values
Treat memslot binding offset+size as unsigned values. Red Hat rates this moderate (CVSS 7). Weakness: CWE-190.
High [CVE-2026-64439] krb5 - filter out async aead implementations at alloc
krb5 - filter out async aead implementations at alloc. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64516] Fix VCE 1 firmware size and offsets
Fix VCE 1 firmware size and offsets. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.
High [CVE-2026-64401] resolve SWN tcon from live registrations
resolve SWN tcon from live registrations. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64324] validate free block extents against the partition length
validate free block extents against the partition length. Red Hat rates this moderate (CVSS 7). Weakness: CWE-1285.
High [CVE-2026-64520] Bound PARTITION_INFO_GET_REGS copies
Bound PARTITION_INFO_GET_REGS copies. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64322] validate sparing table length as an entry count, not a byte count
validate sparing table length as an entry count, not a byte count. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.
High [CVE-2026-64366] fix slab-out-of-bounds write in wacom_wac_queue_insert
fix slab-out-of-bounds write in wacom_wac_queue_insert. Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64323] validate VAT header length against the VAT inode size
validate VAT header length against the VAT inode size. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.
High [CVE-2026-64317] bound Rock Ridge symlink components to the SL record
bound Rock Ridge symlink components to the SL record. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.
High [CVE-2026-64268] bound Read Response placement to the RREAD length
bound Read Response placement to the RREAD length. Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64341] fix use-after-free on disconnect race
fix use-after-free on disconnect race. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.