Red Hat Linux Security Advisories & CVEs
11079 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-98010] clamp quantum in change class
clamp quantum in change class. Red Hat rates this low (CVSS 5.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-97548] fix the rtrmap and rtrefcount _maxlevels_ondisk functions
fix the rtrmap and rtrefcount _maxlevels_ondisk functions. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-98052] clear txcb->last before writing each descriptor
clear txcb->last before writing each descriptor. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-826.
Medium [CVE-2026-98045] Mark faultable stack helpers as sleepable
Mark faultable stack helpers as sleepable. Red Hat rates this low (CVSS 5.5). Weakness: CWE-1322. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.
Medium [CVE-2026-97569] Prevent queue stop with deferred completions
Prevent queue stop with deferred completions. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.
Medium [CVE-2026-98000] Fix potential UAF in pec_store
Fix potential UAF in pec_store. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat package: kernel.
Medium [CVE-2026-97556] avoid leaking refcount when cifs_sb_tlink fails
avoid leaking refcount when cifs_sb_tlink() fails. Red Hat rates this low (CVSS 5.5). Weakness: CWE-911. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.
Medium [CVE-2026-97591] Fix handling of EBUSY in PHMAC when req is pushed to crypto engine
Fix handling of EBUSY in PHMAC when req is pushed to crypto engine. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-394.
Medium [CVE-2026-98057] Add checking nr_subbufs to persistent ring buffer validation
Add checking nr_subbufs to persistent ring buffer validation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-97539] don't rely on id table pointer arithmetic
don't rely on id table pointer arithmetic. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-97522] fix bad accounting in __mptcp_subflow_push_pending
fix bad accounting in __mptcp_subflow_push_pending(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-252. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.
Medium [CVE-2026-98001] (ltc4282) Make sure clk_init_data is fully initialized
(ltc4282) Make sure clk_init_data is fully initialized. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-908.
Medium [CVE-2026-98002] Fix ineffective error check in nested domain allocation
Fix ineffective error check in nested domain allocation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-253. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-98046] Mark bpf_btf_find_by_name_kind as sleepable
Mark bpf_btf_find_by_name_kind() as sleepable. Red Hat rates this low (CVSS 5.5). Weakness: CWE-1322. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-97570] Bound SW TPA IDs to prevent crashes
Bound SW TPA IDs to prevent crashes. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-98042] Don't resurrect a scalar id dropped by collect_linked_regs
Don't resurrect a scalar id dropped by collect_linked_regs(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-98053] Refactor and fix init_config access
Refactor and fix init_config access. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.
Medium [CVE-2026-98044] Reject legacy packet loads from callbacks
Reject legacy packet loads from callbacks. Red Hat rates this low (CVSS 5.5). Weakness: CWE-617. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-98040] Mark the zero register precise for a register-form NULL check
Mark the zero register precise for a register-form NULL check. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-98027] bound the policy rule dump by the caller's buffer size
bound the policy rule dump by the caller's buffer size. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.