Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5622 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89640] fix loff_t underflow in cifs_remap_file_range when len == 0

fix loff_t underflow in cifs_remap_file_range() when len == 0. Red Hat rates this low (CVSS 5.5). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-89640
Linux Kernel
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89639] use cifs_invalidate_cache in cifs_do_truncate for O_TRUNC

use cifs_invalidate_cache() in cifs_do_truncate() for O_TRUNC. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-524. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89639
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89635] only rebind the reopened file's own oplock on durable reconnect

only rebind the reopened file's own oplock on durable reconnect. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.

CVE-2026-89635
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89628] clamp eeprom debugfs read to bytes actually received

clamp eeprom debugfs read to bytes actually received. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-805. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89628
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89629] Check size of status and firmware events before reading them

Check size of status and firmware events before reading them. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat package: kernel-rt.

CVE-2026-89629
Linux Kernel
Sep 11, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89627] free buffered reports when destroying device

free buffered reports when destroying device. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89627
Linux Kernel
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89624] stop the device when force-feedback init fails

stop the device when force-feedback init fails. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.

CVE-2026-89624
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89622] clear rxbuf after I2C/SMBus transfer completes

clear rxbuf after I2C/SMBus transfer completes. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825.

CVE-2026-89622
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89623] stop device IO before hid_hw_stop

stop device IO before hid_hw_stop. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89623
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89621] validate report size in mcp2221_raw_event

validate report size in mcp2221_raw_event(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89621
Unclassified
Sep 11, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89618] Initialize ei->children and ei->list in init_ei

Initialize ei->children and ei->list in init_ei(). Red Hat rates this low (CVSS 5.5). Weakness: CWE-824. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89618
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89617] validate dirty page table on log replay

validate dirty page table on log replay. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89617
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89616] fix info-leak on partial LZNT decompress in ni_read_frame

fix info-leak on partial LZNT decompress in ni_read_frame(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-908. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89616
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89615] bound page_lcns index by the log record

bound page_lcns[] index by the log record. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89615
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89614] bound the free-cluster bitmap scan to the volume

bound the free-cluster bitmap scan to the volume. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125.

CVE-2026-89614
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89613] reject invalid empty mapping pairs

reject invalid empty mapping pairs. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-130.

CVE-2026-89613
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89612] reject invalid MFT LCNs from boot sector

reject invalid MFT LCNs from boot sector. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89612
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89611] validate non-resident attribute offsets

validate non-resident attribute offsets. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89611
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89610] verify run length exceeding volume boundary

verify run length exceeding volume boundary. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.

CVE-2026-89610
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89608] pass packet set buffer size to parser

pass packet set buffer size to parser. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-131. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89608
Unclassified
Sep 11, 2026

← All vendors