Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5547 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-64577] check skb_pull_data return in gtp1u_send_echo_resp

check skb_pull_data() return in gtp1u_send_echo_resp(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-124.

CVE-2026-64577
Unclassified
Aug 5, 2026
High7.0Vendor: MediumRed Hat Updated

High [CVE-2026-64573] fix NVM tag length underflow in TLV parser

fix NVM tag length underflow in TLV parser. Red Hat rates this moderate (CVSS 7). Weakness: CWE-125.

CVE-2026-64573
Unclassified
Aug 5, 2026
High7.0Red Hat Updated

High [CVE-2026-64582] Fix a use-after-free problem in rxe_mmap

Fix a use-after-free problem in rxe_mmap. Red Hat rates this important (CVSS 7). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-64582
Unclassified
Aug 5, 2026
High7.5Red Hat Updated

High [CVE-2026-67864] Denial of Service via NodeManagement type-instantiation logic

Denial of Service via NodeManagement type-instantiation logic. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1287.

CVE-2026-67864
Unclassified
Aug 5, 2026
Medium6.9Red Hat Updated

Medium [CVE-2026-71313] Path Traversal allows arbitrary file write

Path Traversal allows arbitrary file write. Red Hat rates this moderate (CVSS 6.9). Weakness: CWE-22. Affected product named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.

CVE-2026-71313
Unclassified
Aug 5, 2026
Medium6.4Red Hat Updated

Medium [CVE-2026-71311] FTP command injection via CRLF in filename encoding

FTP command injection via CRLF in filename encoding. Red Hat rates this moderate (CVSS 6.4). Weakness: CWE-93.

CVE-2026-71311
Unclassified
Aug 5, 2026
Medium5.9Red Hat Updated

Medium [CVE-2026-71310] Denial of Service via unbounded HTTP CONNECT response headers

Denial of Service via unbounded HTTP CONNECT response headers. Red Hat rates this moderate (CVSS 5.9). Weakness: CWE-770. Affected product named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.

CVE-2026-71310
Unclassified
Aug 5, 2026
Medium6.5Red Hat Updated

Medium [CVE-2026-49331] unauthenticated identity header injection on whitelisted paths

unauthenticated identity header injection on whitelisted paths. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-345. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-49331
Unclassified
Aug 5, 2026
Medium6.5Red Hat Updated

Medium [CVE-2026-16100] Unbounded metric cardinality in user event metrics via request-controlled error text

Unbounded metric cardinality in user event metrics via request-controlled error text. Red Hat rates this moderate (CVSS 6.5). Red Hat lists fixing advisory RHSA-2026:50848 with package rhbk/keycloak-rhel9:26.6-11, rhbk-keycloak-rhel9/rhbk-keycloak-rhel9, keycloak-services, rhbk/keycloak-rhel9-operator:26.6-11.

CVE-2026-16100
Unclassified
Aug 5, 2026
Medium5.4Red Hat Updated

Medium [CVE-2026-16071] LDAP entry-DN user search bypasses configured users DN boundary

LDAP entry-DN user search bypasses configured users DN boundary. Red Hat rates this moderate (CVSS 5.4). Red Hat lists fixing advisory RHSA-2026:50848 with package rhbk/keycloak-rhel9:26.6-11, rhbk/keycloak-operator-bundle:26.4.14-1, rhbk-keycloak-rhel9/rhbk-keycloak-rhel9, keycloak-services. Affected products named by the advisory: Red Hat build of Keycloak 26.4.14; Red Hat build of Keycloak 26.6.5.

CVE-2026-16071
Unclassified
Aug 5, 2026
Medium5.1Red Hat Updated

Medium [CVE-2026-71227] Infinite loop denial of service in libkcapi _kcapi_aio_read_all due to unhandled io_getevents timeout return

Infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return. Red Hat rates this moderate (CVSS 5.1). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images; and 1 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-71227
Unclassified
Aug 5, 2026
Medium6.5Red Hat Updated

Medium [CVE-2026-71225] IV reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries

IV reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-330. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat Hardened Images; and 1 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-71225
Unclassified
Aug 5, 2026
Medium6.5Red Hat Updated

Medium [CVE-2026-67592] Denial of Service via uncontrolled incoming data transfers

Denial of Service via uncontrolled incoming data transfers. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-770. Affected product named by the advisory: Red Hat AMQ Clients.

CVE-2026-67592
Unclassified
Aug 5, 2026
Medium6.5Red Hat Updated

Medium [CVE-2026-66277] Denial of Service via uncontrolled transfer frames

Denial of Service via uncontrolled transfer frames. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat AMQ Broker 7; Red Hat AMQ Clients; Red Hat build of Apache Camel 4 for Quarkus 3; Red Hat build of Apache Camel for Spring Boot 4; and 2 more. Affected products named by the advisory: Red Hat build of Quarkus; Red Hat JBoss Enterprise Application Platform Expansion Pack.

CVE-2026-66277
Unclassified
Aug 5, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-64579] preallocate inexact bins before xfrm_hash_rebuild reinsert

preallocate inexact bins before xfrm_hash_rebuild reinsert. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-64579
Unclassified
Aug 5, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-64569] fix NULL deref in mpls_valid_fib_dump_req on CONFIG_INET=n

fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-64569
Unclassified
Aug 5, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-64574] tear down new links on vif update error path

tear down new links on vif update error path. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-64574
Unclassified
Aug 5, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-64567] reject free space cache with more entries than pages

reject free space cache with more entries than pages. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7.

CVE-2026-64567
Unclassified
Aug 5, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-64575] fix double sock release on batch realloc

fix double sock release on batch realloc. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.

CVE-2026-64575
Unclassified
Aug 5, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-64576] initialize extack in nh_res_bucket_migrate

initialize extack in nh_res_bucket_migrate(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-824. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9.

CVE-2026-64576
Unclassified
Aug 5, 2026

← All vendors