Red Hat Linux Security Advisories & CVEs
5618 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-89736] Fix use-after-free on sound card disconnect
Fix use-after-free on sound card disconnect. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89735] remove default configfs groups on teardown
remove default configfs groups on teardown. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89734] Fix null pointer dereference in uvcg_video_init
Fix null pointer dereference in uvcg_video_init(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89733] fix dangling pointers in uvc_function_bind and uvc_function_unbind
fix dangling pointers in uvc_function_bind() and uvc_function_unbind(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89732] Prevent deadlock during ep0 read loop
Prevent deadlock during ep0 read loop. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-833. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89731] Fix cxl_rch_get_aer_info out-of-bounds AER register read
Fix cxl_rch_get_aer_info() out-of-bounds AER register read. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89730] Avoid out-of-bounds read in trailing byte write
Avoid out-of-bounds read in trailing byte write. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.
Medium [CVE-2026-89728] Fix out-of-bounds access for newdevs mask
Fix out-of-bounds access for newdevs mask. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-805. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89726] fix out-of-bounds read in ucs2_strnlen
fix out-of-bounds read in ucs2_strnlen(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89725] prevent out-of-bounds write on RX overflow
prevent out-of-bounds write on RX overflow. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-89723] fix slab-out-of-bounds in nilfs_direct_propagate after truncation
fix slab-out-of-bounds in nilfs_direct_propagate after truncation. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89724] fix out-of-bounds write in FWHT encoder
fix out-of-bounds write in FWHT encoder. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-89722] Fix out-of-bounds read in pci_write_legacy_io
Fix out-of-bounds read in pci_write_legacy_io(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-89721] fix out-of-range max_register
fix out-of-range max_register. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89720] fix out-of-bounds read in signature length check
fix out-of-bounds read in signature length check. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.
Medium [CVE-2026-89718] fix out-of-bounds access in writeback_store
fix out-of-bounds access in writeback_store(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-131. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89717] set default primary compressor in zram_destroy_comps
set default primary compressor in zram_destroy_comps(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-476. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89715] fix ref leak on nfs_uuid_add_file failure
fix ref leak on nfs_uuid_add_file failure. Red Hat rates this low (CVSS 5.5). Weakness: CWE-911. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel-rt.
Medium [CVE-2026-89716] validate deflate params
validate deflate params. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-617. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89714] fix delegation_hash_table leak when nfs4_server_common_setup fails
fix delegation_hash_table leak when nfs4_server_common_setup() fails. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.