Red Hat Linux Security Advisories & CVEs
11080 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-98027] bound the policy rule dump by the caller's buffer size
bound the policy rule dump by the caller's buffer size. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-98058] Mark syscall helpers as sleepable
Mark syscall helpers as sleepable. Red Hat rates this low (CVSS 5.5). Weakness: CWE-1322. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-97566] drop pending ADD_ADDR when removing ID0
drop pending ADD_ADDR when removing ID0. Red Hat rates this low (CVSS 5.5). Weakness: CWE-617. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-97582] (gpio-fan) Fix use-after-free in alarm work
(gpio-fan) Fix use-after-free in alarm work. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-97572] Propagate RX ring init failures in bnxt_init_nic
Propagate RX ring init failures in bnxt_init_nic(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-252. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-97577] reject AV1 frames exceeding the tile capacity
reject AV1 frames exceeding the tile capacity. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.
Medium [CVE-2026-97538] (asus_rog_ryujin) Validate HID report lengths
(asus_rog_ryujin) Validate HID report lengths. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-908.
Medium [CVE-2026-98030] bound the CFP rule dump by the caller's buffer size
bound the CFP rule dump by the caller's buffer size. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-97588] Map EBUSY to EIO when key conversion fails repeatedly
Map EBUSY to EIO when key conversion fails repeatedly. Red Hat rates this low (CVSS 5.5). Weakness: CWE-393. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.
Medium [CVE-2026-98063] Fix NULL-ptr-deref in btf_var_show
Fix NULL-ptr-deref in btf_var_show(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-98008] fix NULL pointer dereference on unbind with fixed-link
fix NULL pointer dereference on unbind with fixed-link. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-97546] don't spin forever on zero-length dirents when salvaging them
don't spin forever on zero-length dirents when salvaging them. Red Hat rates this low (CVSS 5.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.
Medium [CVE-2026-97535] Bound VP index against VP_CTRL IOCB bitmap size
Bound VP index against VP_CTRL IOCB bitmap size. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-97537] Fix queue teardown NULL dma_free and bitmap locking
Fix queue teardown NULL dma_free and bitmap locking. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-97549] fix under-reservation of blocks when repairing sf directories
fix under-reservation of blocks when repairing sf directories. Red Hat rates this low (CVSS 5.5). Weakness: CWE-617. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.
Medium [CVE-2026-98039] Require MEM_PERCPU for percpu kptr stores
Require MEM_PERCPU for percpu kptr stores. Red Hat rates this moderate (CVSS 6.4). Weakness: CWE-843. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.
Medium [CVE-2026-98031] Initialize extack in remove_nh_grp_entry
Initialize extack in remove_nh_grp_entry(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-824. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-98012] clamp quantum in change path
clamp quantum in change path. Red Hat rates this low (CVSS 5.5). Weakness: CWE-606. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel.
Medium [CVE-2026-98011] clamp quantum in change and init paths
clamp quantum in change and init paths. Red Hat rates this low (CVSS 5.5). Weakness: CWE-606. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-97534] accurately adjust free_sections during free_segment_range
accurately adjust free_sections during free_segment_range. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-617.