Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5518 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

Medium5.5Red Hat

Medium [CVE-2026-90176] Do not skip lock checks for single-byte ranges

Do not skip lock checks for single-byte ranges. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-367.

CVE-2026-90176
Unclassified
Sep 17, 2026
Medium6.4Red Hat

Medium [CVE-2026-90333] replace forgeable discard filler with a keyed sector marker

replace forgeable discard filler with a keyed sector marker. Red Hat rates this moderate (CVSS 6.4). Weakness: CWE-354. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-90333
Linux Kernel
Sep 17, 2026
Medium6.7Red Hat

Medium [CVE-2026-93125] Reject rdonly/rdwr_buf_size kfunc arguments that exceed u32 max

Reject rdonly/rdwr_buf_size kfunc arguments that exceed u32 max. Red Hat rates this moderate (CVSS 6.7). Weakness: CWE-805. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-93125
Linux Kernel
Sep 17, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-93126] Fix reference leak for device node

Fix reference leak for device node. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-93126
Linux Kernel
Sep 17, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-90178] (coretemp) Fix core_data leak on CPUs without PTS

(coretemp) Fix core_data leak on CPUs without PTS. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-90178
Linux Kernel
Sep 17, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-90125] fix request buffer leak in smb2_new_read_req

fix request buffer leak in smb2_new_read_req(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-90125
Linux Kernel
Sep 17, 2026
Medium5.5Red Hat

Medium [CVE-2026-93151] fix response resource leak on queue teardown

fix response resource leak on queue teardown. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-93151
Linux Kernel
Sep 17, 2026
Medium6.7Red Hat

Medium [CVE-2026-93112] Require a BPF cpumask for bpf_cpumask_populate

Require a BPF cpumask for bpf_cpumask_populate(). Red Hat rates this moderate (CVSS 6.7). Weakness: CWE-843. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel.

CVE-2026-93112
Linux Kernel
Sep 17, 2026
Medium5.5Red Hat

Medium [CVE-2026-90361] fix leak in ath11k_service_ready_ext_event

fix leak in ath11k_service_ready_ext_event(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-90361
Linux Kernel
Sep 17, 2026
Medium6.7Red Hat

Medium [CVE-2026-93144] Reject writes through untrusted BTF pointers

Reject writes through untrusted BTF pointers. Red Hat rates this moderate (CVSS 6.7). Weakness: CWE-1220. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-93144
Linux Kernel
Sep 17, 2026
Medium5.5Red Hat

Medium [CVE-2026-90150] Fix device leaks on parse failure

Fix device leaks on parse failure. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-90150
Linux Kernel
Sep 17, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-90287] fix error handling in sp_uphy_init

fix error handling in sp_uphy_init(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.

CVE-2026-90287
Unclassified
Sep 17, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-90434] release zisofs block pointer buffer head

release zisofs block pointer buffer head. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat OpenShift Container Platform 4; Red Hat package: kernel.

CVE-2026-90434
Linux Kernel
Sep 17, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-90340] free maps on pinctrl_generic_to_map failure

free maps on pinctrl_generic_to_map() failure. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.

CVE-2026-90340
Unclassified
Sep 17, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-90187] free zones array on device power-off

free zones array on device power-off. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-90187
Linux Kernel
Sep 17, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-93089] Free transport channel on IDR failure

Free transport channel on IDR failure. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.

CVE-2026-93089
Unclassified
Sep 17, 2026
Medium5.5Vendor: LowRed Hat Updated

Medium [CVE-2026-90254] free the advertising instance on the failure and cancel paths

free the advertising instance on the failure and cancel paths. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-90254
Linux Kernel
Sep 17, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-90422] Fix IO remapping leak in register_pllfhs error path

Fix IO remapping leak in register_pllfhs error path. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.

CVE-2026-90422
Unclassified
Sep 17, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-90087] do not leak an hci_conn when a second LE connect is rejected

do not leak an hci_conn when a second LE connect is rejected. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-90087
Linux Kernel
Sep 17, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-90378] Fix memory leak in SDIO TX path

Fix memory leak in SDIO TX path. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772.

CVE-2026-90378
Unclassified
Sep 17, 2026

← All vendors