Red Hat Linux Security Advisories & CVEs
3067 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
High [CVE-2026-63888] Fix CRC overread and double-free in iscsit_handle_text_cmd
Fix CRC overread and double-free in iscsit_handle_text_cmd(). Red Hat rates this important (CVSS 7). Weakness: CWE-125.
High [CVE-2026-63994] load network headers after skb_cow in iptunnel_pmtud_build_icmp[v6]
load network headers after skb_cow() in iptunnel_pmtud_build_icmp[v6](). Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63946] fix UAF in iso_recv_frame
fix UAF in iso_recv_frame. Red Hat rates this moderate (CVSS 7). Weakness: CWE-366.
High [CVE-2026-63887] Bound iscsi_encode_text_output appends to rsp_buf
Bound iscsi_encode_text_output() appends to rsp_buf. Red Hat rates this important (CVSS 7). Weakness: CWE-120.
High [CVE-2026-63891] Cap recursion depth in __tb_property_parse_dir
Cap recursion depth in __tb_property_parse_dir(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-606.
High [CVE-2026-64017] pop cached request if it is usable
pop cached request if it is usable. Red Hat rates this important (CVSS 7). Weakness: CWE-825. Red Hat lists fixing advisory RHSA-2026:47040 with package kernel-0:5.14.0-687.31.1.el9_8. Affected product named by the advisory: Red Hat Enterprise Linux 9.
High [CVE-2026-64008] fix UAF via dangling GEM handle in create_bo
fix UAF via dangling GEM handle in create_bo. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64030] bounds-check link_id in ieee80211_ml_epcs
bounds-check link_id in ieee80211_ml_epcs. Red Hat rates this important (CVSS 7). Weakness: CWE-476.
High [CVE-2026-63879] fix amdgpu_hmm_range_get_pages
fix amdgpu_hmm_range_get_pages. Red Hat rates this important (CVSS 7). Weakness: CWE-824.
High [CVE-2026-63896] fix integer underflow in WebUSB GET_URL handling
fix integer underflow in WebUSB GET_URL handling. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-63971] fix race between sctp_wait_for_connect and peeloff
fix race between sctp_wait_for_connect and peeloff. Red Hat rates this moderate (CVSS 7). Weakness: CWE-367.
High [CVE-2026-64032] Fix a possible use-after-free when removing a bridge port
Fix a possible use-after-free when removing a bridge port. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64024] fix stale per-CPU tcp_tw_isn leak enabling ISN prediction
fix stale per-CPU tcp_tw_isn leak enabling ISN prediction. Red Hat rates this moderate (CVSS 7). Weakness: CWE-342.
High [CVE-2026-64027] rework the VALID marking (again)
rework the VALID marking (again). Red Hat rates this moderate (CVSS 7). Weakness: CWE-367.
High [CVE-2026-64011] Fix use-after-free in llcp_sock_release
Fix use-after-free in llcp_sock_release(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63975] Fix possible crash on l2cap_ecred_conn_rsp
Fix possible crash on l2cap_ecred_conn_rsp. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64029] Serialize UMP output teardown with event_input
Serialize UMP output teardown with event_input. Red Hat rates this moderate (CVSS 7). Weakness: CWE-364.
High [CVE-2026-63962] bound altmode_desc per iteration in svdm_consume_modes
bound altmode_desc[] per iteration in svdm_consume_modes(). Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64007] refresh tcphdr after skb_ensure_writable
refresh tcphdr after skb_ensure_writable. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64002] free net->ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table
free net->ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.