Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5469 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Linux CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Linux release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Linux advisories

High7.0Vendor: MediumLinux

High [CVE-2026-64011] Fix use-after-free in llcp_sock_release

Fix use-after-free in llcp_sock_release(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.

CVE-2026-64011
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-63975] Fix possible crash on l2cap_ecred_conn_rsp

Fix possible crash on l2cap_ecred_conn_rsp. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.

CVE-2026-63975
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-64029] Serialize UMP output teardown with event_input

Serialize UMP output teardown with event_input. Red Hat rates this moderate (CVSS 7). Weakness: CWE-364.

CVE-2026-64029
Unclassified
Jul 19, 2026
High7.0Linux

High [CVE-2026-63962] bound altmode_desc per iteration in svdm_consume_modes

bound altmode_desc[] per iteration in svdm_consume_modes(). Red Hat rates this important (CVSS 7). Weakness: CWE-787.

CVE-2026-63962
Unclassified
Jul 19, 2026
High7.0Linux

High [CVE-2026-64007] refresh tcphdr after skb_ensure_writable

refresh tcphdr after skb_ensure_writable. Red Hat rates this important (CVSS 7). Weakness: CWE-825.

CVE-2026-64007
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-64002] free net->ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table

free net->ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.

CVE-2026-64002
Unclassified
Jul 19, 2026
High7.0Linux

High [CVE-2026-63993] do not reuse cached ip_hdr value after skb_tunnel_check_pmtu

do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu(). Red Hat rates this important (CVSS 7). Weakness: CWE-825.

CVE-2026-63993
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-64025] bpf, skmsg: fix verdict sk_data_ready racing with ktls rx

bpf, skmsg: fix verdict sk_data_ready racing with ktls rx. Red Hat rates this moderate (CVSS 7). Weakness: CWE-364.

CVE-2026-64025
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-63979] hand off the pinned file reference to accept_doit

hand off the pinned file reference to accept_doit. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.

CVE-2026-63979
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-64015] fix missed RCU read section on lookup

fix missed RCU read section on lookup. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.

CVE-2026-64015
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-63978] Drain pending requests at net namespace exit

Drain pending requests at net namespace exit. Red Hat rates this moderate (CVSS 7). Weakness: CWE-821.

CVE-2026-63978
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-64034] Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer

Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer. Red Hat rates this moderate (CVSS 7). Weakness: CWE-367.

CVE-2026-64034
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-63984] fix hdrlen overflow in ipv6_rpl_srh_decompress

fix hdrlen overflow in ipv6_rpl_srh_decompress(). Red Hat rates this moderate (CVSS 7). Weakness: CWE-190.

CVE-2026-63984
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-64001] Fix setup list UAF on proc write error

Fix setup list UAF on proc write error. Red Hat rates this moderate (CVSS 7). Weakness: CWE-825.

CVE-2026-64001
Unclassified
Jul 19, 2026
High7.0Linux

High [CVE-2026-64009] Check for underflow in xfrm_state_mtu

Check for underflow in xfrm_state_mtu. Red Hat rates this important (CVSS 7). Weakness: CWE-787.

CVE-2026-64009
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-63987] cap profile updates at NET_DIM_PARAMS_NUM_PROFILES

cap profile updates at NET_DIM_PARAMS_NUM_PROFILES. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.

CVE-2026-63987
Unclassified
Jul 19, 2026
High7.0Linux

High [CVE-2026-63970] bind uarg before filling zerocopy skb

bind uarg before filling zerocopy skb. Red Hat rates this important (CVSS 7). Weakness: CWE-825.

CVE-2026-63970
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-63981] Fix blockcast recursion bypass leading to stack overflow

Fix blockcast recursion bypass leading to stack overflow. Red Hat rates this moderate (CVSS 7). Weakness: CWE-770.

CVE-2026-63981
Unclassified
Jul 19, 2026
High7.0Vendor: MediumLinux

High [CVE-2026-63996] require exact CDB reply length

require exact CDB reply length. Red Hat rates this moderate (CVSS 7). Weakness: CWE-787.

CVE-2026-63996
Unclassified
Jul 19, 2026
Medium5.5Linux

Medium [CVE-2026-64173] Do not call map->ops->elt_free if elt_alloc fails

Do not call map->ops->elt_free() if elt_alloc() fails. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-1341.

CVE-2026-64173
Unclassified
Jul 19, 2026

← All vendors