Red Hat Linux Security Advisories & CVEs
3062 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
High [CVE-2026-64099] Fix use-after-free of CPU job query arrays on error path
Fix use-after-free of CPU job query arrays on error path. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64160] Fix potential for tearing in ->remote_i_size and ->zero_point
Fix potential for tearing in ->remote_i_size and ->zero_point. Red Hat rates this moderate (CVSS 7). Weakness: CWE-821.
High [CVE-2026-64080] Snapshot notifier callbacks under lock
Snapshot notifier callbacks under lock. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64113] fix use-after-free in VEPA multicast source pruning
fix use-after-free in VEPA multicast source pruning. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64047] fix off-by-one in sg_chain entry count for wrapped sk_msg ring
fix off-by-one in sg_chain entry count for wrapped sk_msg ring. Red Hat rates this moderate (CVSS 7). Weakness: CWE-193.
High [CVE-2026-64042] Check BAR resources before exporting a DMABUF
Check BAR resources before exporting a DMABUF. Red Hat rates this important (CVSS 7). Weakness: CWE-1220.
High [CVE-2026-64068] Fix missing locking around retry adding new subreqs
Fix missing locking around retry adding new subreqs. Red Hat rates this moderate (CVSS 7). Weakness: CWE-413.
High [CVE-2026-64054] reject duplicate leaves in GROUP request
reject duplicate leaves in GROUP request. Red Hat rates this moderate (CVSS 7). Weakness: CWE-1341.
High [CVE-2026-63928] fix memory corruption with small endpoint
fix memory corruption with small endpoint. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-63945] serialize iso_sock_clear_timer with socket lock
serialize iso_sock_clear_timer with socket lock. Red Hat rates this moderate (CVSS 7). Weakness: CWE-476.
High [CVE-2026-64035] set tx buffer type for SMD frames
set tx buffer type for SMD frames. Red Hat rates this moderate (CVSS 7). Weakness: CWE-909.
High [CVE-2026-64117] capture fast-RX rate before mesh reuses skb->cb
capture fast-RX rate before mesh reuses skb->cb. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64114] reject IP_HDRINCL packets with ihl < 5
reject IP_HDRINCL packets with ihl < 5. Red Hat rates this moderate (CVSS 7). Weakness: CWE-805.
High [CVE-2026-64111] hold cred_guard_mutex for lsm_set_self_attr
hold cred_guard_mutex for lsm_set_self_attr(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-412.
High [CVE-2026-64102] Reject MPA FPDU length underflow before signed receive math
Reject MPA FPDU length underflow before signed receive math. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64053] don't overwrite bip_vcnt in bio_integrity_copy_user
don't overwrite bip_vcnt in bio_integrity_copy_user(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.
High [CVE-2026-63866] Clear wcid pointer in mt7996_mac_sta_deinit_link
Clear wcid pointer in mt7996_mac_sta_deinit_link(). Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63916] Fix OOB write in wacom_hid_set_device_mode
Fix OOB write in wacom_hid_set_device_mode(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-63875] Flush walk cache when unsharing PMD tables
Flush walk cache when unsharing PMD tables. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63958] validate connector number in ucsi_connector_change
validate connector number in ucsi_connector_change(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.