Red Hat Linux Security Advisories & CVEs
5645 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.
Security advisories for your Red Hat release
Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.
Official source
Red Hat Security Data API
Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.
Latest Red Hat advisories
Medium [CVE-2026-89611] validate non-resident attribute offsets
validate non-resident attribute offsets. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89610] verify run length exceeding volume boundary
verify run length exceeding volume boundary. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.
Medium [CVE-2026-89608] pass packet set buffer size to parser
pass packet set buffer size to parser. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-131. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89605] release message context on send failure
release message context on send failure. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89604] Rate limit statfs handler
Rate limit statfs() handler. Red Hat rates this low (CVSS 5.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-89601] Fix lost inode updates for IS_SYNC inodes
Fix lost inode updates for IS_SYNC inodes. Red Hat rates this low (CVSS 5.5). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.
Medium [CVE-2026-89600] fix use-after-free of file range info
fix use-after-free of file range info. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89599] initialize lock before registering display
initialize lock before registering display. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-908. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89598] defer I2C transfers from damage callbacks
defer I2C transfers from damage callbacks. Red Hat rates this low (CVSS 5.5). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.
Medium [CVE-2026-89597] unregister connector callback on init failure
unregister connector callback on init failure. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89596] fix off-by-one when saving/restoring non-PCI config space
fix off-by-one when saving/restoring non-PCI config space. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89595] Fix stale object mask after concurrent mark updates
Fix stale object mask after concurrent mark updates. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-367. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89594] fix missing DMA mask setup for SSI controller device
fix missing DMA mask setup for SSI controller device. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-909.
Medium [CVE-2026-89593] only adjust reservation during unmapping if mapcount is 0
only adjust reservation during unmapping if mapcount is 0. Red Hat rates this low (CVSS 5.5). Weakness: CWE-191. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.
Medium [CVE-2026-89592] fix NULL dereference and integer overflow in rocket_job_push
fix NULL dereference and integer overflow in rocket_job_push(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89591] initialize job domain before cleanup paths
initialize job domain before cleanup paths. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89590] Fix error path handling in rocket_job_run
Fix error path handling in rocket_job_run(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911.
Medium [CVE-2026-89589] Use raw_spinlock_t for CXL CPER work locks
Use raw_spinlock_t for CXL CPER work locks. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-833. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.
Medium [CVE-2026-89588] fix ARM section length accounting after header
fix ARM section length accounting after header. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.
Medium [CVE-2026-89586] fix DSM TRIM for sector sizes larger than 2048 bytes
fix DSM TRIM for sector sizes larger than 2048 bytes. Red Hat rates this low (CVSS 5.5). Weakness: CWE-130. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.