Red Hat Linux Security Advisories & CVEs
3038 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
High [CVE-2026-64448] restrict implied bcc[0] exemption to responses without data area
restrict implied bcc[0] exemption to responses without data area. Red Hat rates this moderate (CVSS 7).
High [CVE-2026-64385] Kernel SMB client: Double-free vulnerability allows remote denial of service or privilege escalation
Kernel SMB client: Double-free vulnerability allows remote denial of service or privilege escalation. Red Hat rates this important (CVSS 7). Weakness: CWE-1341.
High [CVE-2026-64396] Use-after-free vulnerability allows arbitrary code execution or denial of service
Use-after-free vulnerability allows arbitrary code execution or denial of service. Red Hat rates this important (CVSS 7.5). Weakness: CWE-825.
High [CVE-2026-64481] Fix firmware load work teardown
Fix firmware load work teardown. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64300] Fix page UAF in map_range
Fix page UAF in map_range(). Red Hat rates this important (CVSS 7). Weakness: CWE-825. Red Hat lists fixing advisory RHSA-2026:54343 with package kernel-0:6.12.0-211.47.1.el10_2. Affected product named by the advisory: Red Hat Enterprise Linux 10.
High [CVE-2026-64265] clear intr_entry in fuse_resend and fuse_remove_pending_req
clear intr_entry in fuse_resend and fuse_remove_pending_req. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64382] fix double-free in SMB2_open replay
fix double-free in SMB2_open() replay. Red Hat rates this important (CVSS 7). Weakness: CWE-1341.
High [CVE-2026-64387] fix query directory replay double-free
fix query directory replay double-free. Red Hat rates this important (CVSS 7). Weakness: CWE-1341.
High [CVE-2026-64372] fix use-after-free and double free in _OSC evaluation
fix use-after-free and double free in _OSC evaluation. Red Hat rates this moderate (CVSS 7). Weakness: CWE-763.
High [CVE-2026-64280] validate DMA mapping length in afu_dma_map_region
validate DMA mapping length in afu_dma_map_region(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-190.
High [CVE-2026-64298] include MAY_WRITE in open permission mask for O_TRUNC
include MAY_WRITE in open permission mask for O_TRUNC. Red Hat rates this moderate (CVSS 7). Weakness: CWE-358.
High [CVE-2026-64402] Fix OOB write in smb_sync_perf_buffer
Fix OOB write in smb_sync_perf_buffer(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64364] fix out-of-bounds bit access on mt_io_flags
fix out-of-bounds bit access on mt_io_flags. Red Hat rates this important (CVSS 7). Weakness: CWE-476.
High [CVE-2026-64303] terminate the RX channel on TX prepare failure path
terminate the RX channel on TX prepare failure path. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64271] touchwin - reset the packet index on every complete packet
touchwin - reset the packet index on every complete packet. Red Hat rates this important (CVSS 7).
High [CVE-2026-64283] Treat memslot binding offset+size as unsigned values
Treat memslot binding offset+size as unsigned values. Red Hat rates this moderate (CVSS 7). Weakness: CWE-190.
High [CVE-2026-64439] krb5 - filter out async aead implementations at alloc
krb5 - filter out async aead implementations at alloc. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64516] Fix VCE 1 firmware size and offsets
Fix VCE 1 firmware size and offsets. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.
High [CVE-2026-64401] resolve SWN tcon from live registrations
resolve SWN tcon from live registrations. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64520] Bound PARTITION_INFO_GET_REGS copies
Bound PARTITION_INFO_GET_REGS copies. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.