Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

5645 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

Medium5.5Red Hat

Medium [CVE-2026-89611] validate non-resident attribute offsets

validate non-resident attribute offsets. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89611
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89610] verify run length exceeding volume boundary

verify run length exceeding volume boundary. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-787.

CVE-2026-89610
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89608] pass packet set buffer size to parser

pass packet set buffer size to parser. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-131. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89608
Unclassified
Sep 11, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89605] release message context on send failure

release message context on send failure. Red Hat rates this low (CVSS 5.5). Weakness: CWE-772. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89605
Unclassified
Sep 11, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89604] Rate limit statfs handler

Rate limit statfs() handler. Red Hat rates this low (CVSS 5.5). Weakness: CWE-770. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89604
Linux Kernel
Sep 11, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89601] Fix lost inode updates for IS_SYNC inodes

Fix lost inode updates for IS_SYNC inodes. Red Hat rates this low (CVSS 5.5). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-89601
Linux Kernel
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89600] fix use-after-free of file range info

fix use-after-free of file range info. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-825. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89600
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89599] initialize lock before registering display

initialize lock before registering display. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-908. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89599
Unclassified
Sep 11, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89598] defer I2C transfers from damage callbacks

defer I2C transfers from damage callbacks. Red Hat rates this low (CVSS 5.5). Weakness: CWE-821. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89598
Linux Kernel
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89597] unregister connector callback on init failure

unregister connector callback on init failure. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-772. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89597
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89596] fix off-by-one when saving/restoring non-PCI config space

fix off-by-one when saving/restoring non-PCI config space. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89596
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89595] Fix stale object mask after concurrent mark updates

Fix stale object mask after concurrent mark updates. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-367. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89595
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89594] fix missing DMA mask setup for SSI controller device

fix missing DMA mask setup for SSI controller device. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-909.

CVE-2026-89594
Unclassified
Sep 11, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89593] only adjust reservation during unmapping if mapcount is 0

only adjust reservation during unmapping if mapcount is 0. Red Hat rates this low (CVSS 5.5). Weakness: CWE-191. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; and 1 more. Affected products named by the advisory: Red Hat package: kernel-rt.

CVE-2026-89593
Linux Kernel
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89592] fix NULL dereference and integer overflow in rocket_job_push

fix NULL dereference and integer overflow in rocket_job_push(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89592
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89591] initialize job domain before cleanup paths

initialize job domain before cleanup paths. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-476. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89591
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89590] Fix error path handling in rocket_job_run

Fix error path handling in rocket_job_run(). Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-911.

CVE-2026-89590
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89589] Use raw_spinlock_t for CXL CPER work locks

Use raw_spinlock_t for CXL CPER work locks. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-833. Affected product named by the advisory: Red Hat OpenShift Container Platform 4.

CVE-2026-89589
Unclassified
Sep 11, 2026
Medium5.5Red Hat

Medium [CVE-2026-89588] fix ARM section length accounting after header

fix ARM section length accounting after header. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: kernel.

CVE-2026-89588
Linux Kernel
Sep 11, 2026
Medium5.5Vendor: LowRed Hat

Medium [CVE-2026-89586] fix DSM TRIM for sector sizes larger than 2048 bytes

fix DSM TRIM for sector sizes larger than 2048 bytes. Red Hat rates this low (CVSS 5.5). Weakness: CWE-130. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat OpenShift Container Platform 4; Red Hat package: kernel-rt.

CVE-2026-89586
Linux Kernel
Sep 11, 2026

← All vendors