Red Hat Linux Security Advisories & CVEs
5469 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Linux CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Linux release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Linux advisories
High [CVE-2026-64011] Fix use-after-free in llcp_sock_release
Fix use-after-free in llcp_sock_release(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63975] Fix possible crash on l2cap_ecred_conn_rsp
Fix possible crash on l2cap_ecred_conn_rsp. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64029] Serialize UMP output teardown with event_input
Serialize UMP output teardown with event_input. Red Hat rates this moderate (CVSS 7). Weakness: CWE-364.
High [CVE-2026-63962] bound altmode_desc per iteration in svdm_consume_modes
bound altmode_desc[] per iteration in svdm_consume_modes(). Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-64007] refresh tcphdr after skb_ensure_writable
refresh tcphdr after skb_ensure_writable. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64002] free net->ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table
free net->ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63993] do not reuse cached ip_hdr value after skb_tunnel_check_pmtu
do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu(). Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64025] bpf, skmsg: fix verdict sk_data_ready racing with ktls rx
bpf, skmsg: fix verdict sk_data_ready racing with ktls rx. Red Hat rates this moderate (CVSS 7). Weakness: CWE-364.
High [CVE-2026-63979] hand off the pinned file reference to accept_doit
hand off the pinned file reference to accept_doit. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64015] fix missed RCU read section on lookup
fix missed RCU read section on lookup. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63978] Drain pending requests at net namespace exit
Drain pending requests at net namespace exit. Red Hat rates this moderate (CVSS 7). Weakness: CWE-821.
High [CVE-2026-64034] Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer
Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer. Red Hat rates this moderate (CVSS 7). Weakness: CWE-367.
High [CVE-2026-63984] fix hdrlen overflow in ipv6_rpl_srh_decompress
fix hdrlen overflow in ipv6_rpl_srh_decompress(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-190.
High [CVE-2026-64001] Fix setup list UAF on proc write error
Fix setup list UAF on proc write error. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.
High [CVE-2026-64009] Check for underflow in xfrm_state_mtu
Check for underflow in xfrm_state_mtu. Red Hat rates this important (CVSS 7). Weakness: CWE-787.
High [CVE-2026-63987] cap profile updates at NET_DIM_PARAMS_NUM_PROFILES
cap profile updates at NET_DIM_PARAMS_NUM_PROFILES. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
High [CVE-2026-63970] bind uarg before filling zerocopy skb
bind uarg before filling zerocopy skb. Red Hat rates this important (CVSS 7). Weakness: CWE-825.
High [CVE-2026-63981] Fix blockcast recursion bypass leading to stack overflow
Fix blockcast recursion bypass leading to stack overflow. Red Hat rates this moderate (CVSS 7). Weakness: CWE-770.
High [CVE-2026-63996] require exact CDB reply length
require exact CDB reply length. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.
Medium [CVE-2026-64173] Do not call map->ops->elt_free if elt_alloc fails
Do not call map->ops->elt_free() if elt_alloc() fails. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-1341.