Red Hat Linux Security Advisories & CVEs
5616 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-89764] fix race between concurrent revokers
fix race between concurrent revokers. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89763] Fix TPM teardown ordering
Fix TPM teardown ordering. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89762] fix cred UAF caused by begin_current_label_crit_section
fix cred UAF caused by begin_current_label_crit_section(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-89761] fix out-of-bounds write when null terminating a label vec
fix out-of-bounds write when null terminating a label vec. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89759] avoid soft lockup when scanning task stacks
avoid soft lockup when scanning task stacks. Red Hat rates this low (CVSS 5.5). Weakness: CWE-1050. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-89757] fix and remove redundant unevictable folio handling
fix and remove redundant unevictable folio handling. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-89756] report RCU-tasks quiescent states in migrate_pages_batch
report RCU-tasks quiescent states in migrate_pages_batch(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-89753] report RCU-tasks quiescent states in shrink_lruvec
report RCU-tasks quiescent states in shrink_lruvec(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-89752] stop reclaim when a limit update is superseded
stop reclaim when a limit update is superseded. Red Hat rates this low (CVSS 5.5). Weakness: CWE-367. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89751] Fix off-by-one in port I/O handling
Fix off-by-one in port I/O handling. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-193. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89750] Clear copied tracing state before fork duplication
Clear copied tracing state before fork duplication. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89748] Fix retry exhaustion in simple ring buffer reader swap
Fix retry exhaustion in simple ring buffer reader swap. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89749] Fix crash passing ERR_PTR to kthread_stop
Fix crash passing ERR_PTR to kthread_stop(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-476. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-89744] device property: fix infinite loop in fwnode_for_each_child_node
device property: fix infinite loop in fwnode_for_each_child_node(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat package: kernel-rt.
Medium [CVE-2026-89743] bound the device-reported response length
bound the device-reported response length. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89742] fix use-after-free in dma_req_free
fix use-after-free in dma_req_free(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89740] serialize imx_uart_ports lifetime
serialize imx_uart_ports[] lifetime. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-89738] drain polled-VBUS timer/work before udc is freed
drain polled-VBUS timer/work before udc is freed. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89736] Fix use-after-free on sound card disconnect
Fix use-after-free on sound card disconnect. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89735] remove default configfs groups on teardown
remove default configfs groups on teardown. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.