Red Hat Linux Security Advisories & CVEs
3064 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
High [CVE-2026-63947] fix missing length checks in hidp_input_report
fix missing length checks in hidp_input_report(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.
High [CVE-2026-63950] initialize nr_pages to 1 at loop start in try_to_unmap_one
initialize nr_pages to 1 at loop start in try_to_unmap_one. Red Hat rates this important (CVSS 7). Weakness: CWE-911.
High [CVE-2026-63925] fix replay protection at XPN lower-PN wrap
fix replay protection at XPN lower-PN wrap. Red Hat rates this moderate (CVSS 7). Weakness: CWE-294.
High [CVE-2026-63919] hold netns during deferred transport reinjection
hold netns during deferred transport reinjection. Red Hat rates this moderate (CVSS 7). Weakness: CWE-911.
High [CVE-2026-63944] fix UAF in hci_le_create_cis_sync
fix UAF in hci_le_create_cis_sync. Red Hat rates this moderate (CVSS 7). Weakness: CWE-364.
High [CVE-2026-63912] restore combined single-frag length gate
restore combined single-frag length gate. Red Hat rates this moderate (CVSS 7). Weakness: CWE-770.
High [CVE-2026-63923] validate body pcifunc in rvu_mbox_handler_rep_event_notify
validate body pcifunc in rvu_mbox_handler_rep_event_notify. Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64018] validate rx_req_idx to prevent out-of-bounds array access
validate rx_req_idx to prevent out-of-bounds array access. Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-63952] deny writeable mappings when implying SEAL_WRITE
deny writeable mappings when implying SEAL_WRITE. Red Hat rates this important (CVSS 7). Weakness: CWE-266.
High [CVE-2026-63901] fix memory corruption with small endpoints
fix memory corruption with small endpoints. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-63941] Correctly cap ZCR_EL2 provided by a guest hypervisor
Correctly cap ZCR_EL2 provided by a guest hypervisor. Red Hat rates this moderate (CVSS 7). Weakness: CWE-266.
High [CVE-2026-63992] do not assume transport header in iptunnel_pmtud_check_icmp
do not assume transport header in iptunnel_pmtud_check_icmp(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-805.
High [CVE-2026-64000] fix potential OOB access in supervision frame handling
fix potential OOB access in supervision frame handling. Red Hat rates this moderate (CVSS 7). Weakness: CWE-805.
High [CVE-2026-63917] Use ip6_tnl.net in vti6_changelink
Use ip6_tnl.net in vti6_changelink(). Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64026] Fix DATA decrypt vs splice by copying data to buffer in recvmsg
Fix DATA decrypt vs splice() by copying data to buffer in recvmsg. Red Hat rates this important (CVSS 7). Weakness: CWE-366.
High [CVE-2026-63913] do not force CLOSE on invalid-seq RST without direction check
do not force CLOSE on invalid-seq RST without direction check. Red Hat rates this moderate (CVSS 7). Weakness: CWE-358.
High [CVE-2026-63910] fix UAF in dma_buf_fd tracepoint
fix UAF in dma_buf_fd() tracepoint. Red Hat rates this moderate (CVSS 7). Weakness: CWE-367.
High [CVE-2026-63888] Fix CRC overread and double-free in iscsit_handle_text_cmd
Fix CRC overread and double-free in iscsit_handle_text_cmd(). Red Hat rates this important (CVSS 7). Weakness: CWE-125.
High [CVE-2026-63994] load network headers after skb_cow in iptunnel_pmtud_build_icmp[v6]
load network headers after skb_cow() in iptunnel_pmtud_build_icmp[v6](). Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63946] fix UAF in iso_recv_frame
fix UAF in iso_recv_frame. Red Hat rates this moderate (CVSS 7). Weakness: CWE-366.