Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

3038 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

High7.5Red Hat Updated

High [CVE-2026-67214] Denial of Service via negative size input in non-secure module functions

Denial of Service via negative size input in non-secure module functions. Red Hat rates this important (CVSS 7.5). Weakness: CWE-839. Red Hat lists fixing advisory RHSA-2026:48241 with package grafana13-1-main-13.1.1-0.3.hum1. Affected product named by the advisory: Red Hat Hardened Images.

CVE-2026-67214
Unclassified
Jul 29, 2026
High7.5Red Hat

High [CVE-2026-67213] Denial of Service via infinite loop in random ID generation

Denial of Service via infinite loop in random ID generation. Red Hat rates this important (CVSS 7.5). Weakness: CWE-835. Red Hat lists fixing advisory RHSA-2026:47619 with package jaeger-main-2.20.0-0.6.hum1, grafana13-1-main-13.1.1-0.3.hum1, grafana12-4-main-12.4.6-0.2.hum1.

CVE-2026-67213
Unclassified
Jul 29, 2026
High7.5Red Hat

High [CVE-2026-16308] io.quarkus.resteasy.reactive/resteasy-reactive: Quarkus REST - Unbounded multipart MIME part-header accumulation allows remote OOM denial of service

io.quarkus.resteasy.reactive/resteasy-reactive: Quarkus REST - Unbounded multipart MIME part-header accumulation allows remote OOM denial of service. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Red Hat lists fixing advisory RHSA-2026:54435 with package rhbk/keycloak-rhel9:26.6-11, rhbk/keycloak-operator-bundle:26.4.14-1, rhbk-keycloak-rhel9/rhbk-keycloak-rhel9, rhbk-openshift-rhel9/rhbk-openshift-rhel9.

CVE-2026-16308
Unclassified
Jul 29, 2026
High7.8Red Hat

High [CVE-2026-44944] Authentication bypass in iscsiuio control socket

Authentication bypass in iscsiuio control socket. Red Hat rates this important (CVSS 7.8). Weakness: CWE-1220. Red Hat lists fixing advisory RHSA-2026:53844 with package iscsi-initiator-utils-0:6.2.1.11-1.git4b3e853.el10_2.2, iscsi-initiator-utils-0:6.2.1.11-1.git4b3e853.el9_8.2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9.

CVE-2026-44944
Unclassified
Jul 29, 2026
High8.6Red Hat

High [CVE-2026-44943] Privilege Escalation via Path Traversal

Privilege Escalation via Path Traversal. Red Hat rates this important (CVSS 8.6). Weakness: CWE-22. Red Hat lists fixing advisory RHSA-2026:53844 with package iscsi-initiator-utils-0:6.2.1.11-1.git4b3e853.el10_2.2, iscsi-initiator-utils-0:6.2.1.11-1.git4b3e853.el9_8.2. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9.

CVE-2026-44943
Unclassified
Jul 29, 2026
High7.8Red Hat

High [CVE-2026-18220] Out-of-bounds write in BFD DLX ELF backend relocation processing

Out-of-bounds write in BFD DLX ELF backend relocation processing. Red Hat rates this important (CVSS 7.8). Weakness: CWE-787.

CVE-2026-18220
Unclassified
Jul 29, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-64556] Detach event groups during remove_on_exec

Detach event groups during remove_on_exec. Red Hat rates this moderate (CVSS 7). Weakness: CWE-663.

CVE-2026-64556
Unclassified
Jul 29, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-64557] Fix use-after-free in l2cap_sock_new_connection_cb

Fix use-after-free in l2cap_sock_new_connection_cb(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.

CVE-2026-64557
Unclassified
Jul 29, 2026
High7.0Red Hat

High [CVE-2026-64558] Check length in pkey_pckmo handler implementation

Check length in pkey_pckmo handler implementation. Red Hat rates this important (CVSS 7). Weakness: CWE-787.

CVE-2026-64558
Unclassified
Jul 29, 2026
High7.0Vendor: MediumRed Hat

High [CVE-2026-64559] Check length in PKEY_VERIFYPROTK ioctl

Check length in PKEY_VERIFYPROTK ioctl. Red Hat rates this moderate (CVSS 7). Weakness: CWE-805.

CVE-2026-64559
Unclassified
Jul 29, 2026
High7.0Red Hat

High [CVE-2026-64560] Prevent UAF caused by non-leader exec race

Prevent UAF caused by non-leader exec() race. Red Hat rates this important (CVSS 7). Weakness: CWE-364.

CVE-2026-64560
Unclassified
Jul 29, 2026
High7.8Vendor: MediumRed Hat

High [CVE-2026-18107] container escape via rseq critical section hijack during checkpoint/restore

container escape via rseq critical section hijack during checkpoint/restore. Red Hat rates this moderate (CVSS 7.8). Weakness: CWE-269. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more.

CVE-2026-18107
Unclassified
Jul 28, 2026
High7.6Red Hat

High [CVE-2026-16313] arbitrary command execution via udev property injection in sg_inq --export

A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected. sg3_utils versions 1.34 through 1.48 contain a command injection flaw in the export_dev_ids() function of sg_inq. A crafted SCSI/USB device can embed a newline in this field, splitting sg_inq's udev KEY=VALUE output into two lines and injecting an arbitrary udev property, including REMOVE_CMD. On systems whose default udev rules invoke sg_inq --export for SCSI device identification and act on REMOVE_CMD when a device is removed, this allows a local attacker with physical access to a USB/SCSI port to achieve arbitrary command execution as root simply by disconnecting the crafted device. Exploitation requires physical access to attach the malicious device, consistent with Red Hat's Physical (AV:P) attack vector scoring. The upstream fix (udev-conforming character escaping for this field) has not yet been included in any tagged sg3_utils release; all Red Hat-shipped versions of sg3_utils in the 1.34-1.48 range are affected.

CVE-2026-16313
Red Hat Enterprise Linux
Jul 28, 2026
High7.5Vendor: MediumRed Hat

High [CVE-2026-71190] Unauthenticated denial of service via catastrophic backtracking in Accept header parser

Unauthenticated denial of service via catastrophic backtracking in Accept header parser. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-1333.

CVE-2026-71190
Unclassified
Jul 28, 2026
High8.2Red Hat

High [CVE-2026-71191] S3API presigned URL unsigned header authorization bypass

S3API presigned URL unsigned header authorization bypass. Red Hat rates this important (CVSS 8.2). Weakness: CWE-863.

CVE-2026-71191
Unclassified
Jul 28, 2026
High8.1Red Hat

High [CVE-2026-66713] Remote code execution via deserialization of untrusted data in Tribes clustering

Remote code execution via deserialization of untrusted data in Tribes clustering. Red Hat rates this important (CVSS 8.1). Weakness: CWE-502.

CVE-2026-66713
Unclassified
Jul 28, 2026
High8.5Red Hat

High [CVE-2026-49332] underscore header smuggling enables identity impersonation on WSGI/PHP upstreams

underscore header smuggling enables identity impersonation on WSGI/PHP upstreams. Red Hat rates this important (CVSS 8.5). Weakness: CWE-436. Red Hat lists fixing advisory RHSA-2026:50681 with package openshift4/ose-oauth-proxy-rhel9:1785851359, openshift4/ose-oauth-proxy-rhel9:1785521728, openshift4/ose-oauth-proxy-rhel9:1785529735, openshift4/ose-oauth-proxy-rhel9:1785544039. Affected products named by the advisory: Red Hat OpenShift Container Platform 4.14; Red Hat OpenShift Container Platform 4.16; Red Hat OpenShift Container Platform 4.18; Red Hat OpenShift Container Platform 4.19; and 3 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4.20; Red Hat OpenShift Container Platform 4.21; Red Hat OpenShift Container Platform 4.22; Red Hat OpenShift Container Platform 4.12; and 1 more.

CVE-2026-49332
Unclassified
Jul 28, 2026
High7.5Red Hat

High [CVE-2026-65624] Denial of Service via HTTP/1.1 duplicate header names

Denial of Service via HTTP/1.1 duplicate header names. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1050. Red Hat lists fixing advisory RHSA-2026:47231 with package rabbitmq-server4-3-main-4.3.4-0.2.hum1, rabbitmq-server4-2-main-4.2.9-0.2.hum1.

CVE-2026-65624
Unclassified
Jul 28, 2026
High7.5Red Hat

High [CVE-2026-6949] TSIG packet with crafted name compression can crash DNS server

TSIG packet with crafted name compression can crash DNS server. Red Hat rates this important (CVSS 7.5). Weakness: CWE-787.

CVE-2026-6949
Unclassified
Jul 28, 2026
High8.8Red Hat

High [CVE-2026-58222] Samba AD LDAP Compare filter injection and trusted-request confusion disclose protected attributes

Samba AD LDAP Compare filter injection and trusted-request confusion disclose protected attributes. Red Hat rates this important (CVSS 8.8). Weakness: CWE-90.

CVE-2026-58222
Unclassified
Jul 28, 2026

← All vendors