Red Hat Linux Security Advisories & CVEs
5472 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Linux CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Linux release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Linux advisories
Medium [CVE-2026-16277] stack buffer overflow in rpcinfo rpcbaddrlist
stack buffer overflow in rpcinfo rpcbaddrlist(). Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-121.
Medium [CVE-2026-15588] GDBusServer pre-authentication DoS via unbounded SASL line buffering
GDBusServer pre-authentication DoS via unbounded SASL line buffering. Red Hat rates this moderate (CVSS 5.3). Weakness: CWE-770. Red Hat lists fixing advisory RHSA-2026:40485 with package glib2-main-2.89.1-1.2.hum1, glib2-main-2.89.1-1.1.hum1, glib2-main-2.89.2-2.hum1.
Medium [CVE-2026-16254] Denial of service via out-of-bounds slice in claircore's apk installed-database parser
Denial of service via out-of-bounds slice in claircore's apk installed-database parser. Red Hat rates this moderate (CVSS 4.3). Weakness: CWE-125.
Medium [CVE-2026-15813] memory corruption and out-of-bounds access via malformed network packet defragmentation
memory corruption and out-of-bounds access via malformed network packet defragmentation. Red Hat rates this moderate (CVSS 6.5). Weakness: CWE-787.
Medium [CVE-2026-64206] cancel pending_rx_work before taking conn->lock
cancel pending_rx_work before taking conn->lock. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-833.
Medium [CVE-2026-64190] fix NULL pointer dereference in team_xmit during mode change
fix NULL pointer dereference in team_xmit during mode change. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-64187] fail recovery on a committed log item with no regions
fail recovery on a committed log item with no regions. Red Hat rates this low (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-64205] fix hardware state machine corruption in error path
fix hardware state machine corruption in error path. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-826.
Unknown [CVE-2026-64188] fix endpoint use-after-free in rmnet_dellink
fix endpoint use-after-free in rmnet_dellink(). Red Hat rates this a security issue. Weakness: CWE-825.
Unknown [CVE-2026-64207] fix GSO backlog accounting
fix GSO backlog accounting. Red Hat rates this a security issue. Weakness: CWE-476.
High [CVE-2026-12484] Arbitrary code execution via unsafe deserialization of PyTorch data
Arbitrary code execution via unsafe deserialization of PyTorch data. Red Hat rates this important (CVSS 7.8). Weakness: CWE-502.
High [CVE-2026-64098] use uninterruptible resv lock for plane updates
use uninterruptible resv lock for plane updates. Red Hat rates this moderate (CVSS 7). Weakness: CWE-413.
High [CVE-2026-64069] Fix cancellation of a DIO and single read subrequests
Fix cancellation of a DIO and single read subrequests. Red Hat rates this moderate (CVSS 7). Weakness: CWE-772.
High [CVE-2026-64174] advance loop vars in cfg80211_merge_profile
advance loop vars in cfg80211_merge_profile(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-835.
High [CVE-2026-64061] Fix early put of sink folio in netfs_read_gaps
Fix early put of sink folio in netfs_read_gaps(). Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64048] reject CHID-0 ACCEPT that matches an empty ism_dev slot
reject CHID-0 ACCEPT that matches an empty ism_dev slot. Red Hat rates this moderate (CVSS 7). Weakness: CWE-476.
High [CVE-2026-64115] fix UAF when peer resets connection during handshake
fix UAF when peer resets connection during handshake. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64137] require net admin for CIFS SWN netlink
require net admin for CIFS SWN netlink. Red Hat rates this important (CVSS 7). Weakness: CWE-280.
High [CVE-2026-64119] use list_del_rcu in l2tp_session_unhash
use list_del_rcu in l2tp_session_unhash. Red Hat rates this moderate (CVSS 7). Weakness: CWE-835.
High [CVE-2026-64041] fix possible buffer overflow
fix possible buffer overflow. Red Hat rates this moderate (CVSS 7). Weakness: CWE-120.