Red Hat Linux Security Advisories & CVEs
3200 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-64547] validate packet_len before pad-byte access in rx_fixup
validate packet_len before pad-byte access in rx_fixup. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.
Medium [CVE-2026-64555] Fix SPSR_EL2 restore in kvm_hyp_handle_mops
Fix SPSR_EL2 restore in kvm_hyp_handle_mops(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-681.
Medium [CVE-2026-64540] fix out-of-bounds read in genelink_rx_fixup
fix out-of-bounds read in genelink_rx_fixup(). Red Hat rates this moderate (CVSS 5.5).
Medium [CVE-2026-64542] fix NULL deref in accept_untracked_na
fix NULL deref in accept_untracked_na(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-64546] fix OOB read in drm_parse_tiled_block
fix OOB read in drm_parse_tiled_block(). Red Hat rates this moderate (CVSS 5.5).
Medium [CVE-2026-64549] avoid OOB read of revision string in bpa10x_setup
avoid OOB read of revision string in bpa10x_setup(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.
Medium [CVE-2026-64415] add cond_resched in swap_reclaim_full_clusters to prevent softlockup
add cond_resched() in swap_reclaim_full_clusters to prevent softlockup. Red Hat rates this low (CVSS 5.5). Weakness: CWE-770.
Medium [CVE-2026-64452] fix NHC entry use-after-free on error path
fix NHC entry use-after-free on error path. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-64424] fix a use-after-free on shutdown path
fix a use-after-free on shutdown path. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-64346] Fix use-after-free in gadget_match_driver
Fix use-after-free in gadget_match_driver. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-64293] Use sizeof(*hdr) instead of sizeof(hdr) in veventq read
Use sizeof(*hdr) instead of sizeof(hdr) in veventq read. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-64362] cancel pending work on remove to fix a use-after-free
cancel pending work on remove to fix a use-after-free. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.
Medium [CVE-2026-64373] Fix hotplug-suspend race during reboot
Fix hotplug-suspend race during reboot. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-64351] bound RX frame length in kalmia_rx_fixup
bound RX frame length in kalmia_rx_fixup(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.
Medium [CVE-2026-64485] Fix task creation error unwind
Fix task creation error unwind. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772.
Medium [CVE-2026-64451] Fix NULL pointer dereference in func_set_flag
Fix NULL pointer dereference in func_set_flag(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-476.
Medium [CVE-2026-64309] ccp - Do not initialize SNP for ioctl(SNP_COMMIT)
ccp - Do not initialize SNP for ioctl(SNP_COMMIT). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-908.
Medium [CVE-2026-64363] fix UAF on pending key_up_timer in remove
fix UAF on pending key_up_timer in remove(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-364.
Medium [CVE-2026-64477] x86,fs/resctrl: Prevent out-of-bounds access while offlining CPU when SNC enabled
x86,fs/resctrl: Prevent out-of-bounds access while offlining CPU when SNC enabled. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.
Medium [CVE-2026-64354] Validate BTF repeated field counts before expansion
Validate BTF repeated field counts before expansion. Red Hat rates this moderate (CVSS 6.4). Weakness: CWE-787.