Skip to content
VulniPulse

Red Hat Linux Security Advisories & CVEs

3067 advisories tracked · Red Hat Security Data API · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Security advisories for your Red Hat release

Pick your distribution release to see every advisory issued for it and its severity mix. Fixes ship as errata — keep the system patched. This is the release's advisory history, not a per-package scan.

Official source

Red Hat Security Data API

Red Hat Enterprise Linux errata (RHSA) via the official Red Hat Security Data API — CVE severity, CVSS and affected packages. A credential-free official source.

Latest Red Hat advisories

High8.8Red Hat

High [CVE-2026-10016] Use after free in DOM

Use after free in DOM. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10016
Unclassified
May 27, 2026
High8.7Red Hat

High [CVE-2026-9942] Uninitialized Use in ANGLE

Uninitialized Use in ANGLE. Red Hat rates this important (CVSS 8.7). Weakness: CWE-824. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9942
Unclassified
May 27, 2026
High8.7Vendor: CriticalRed Hat

High [CVE-2026-9892] Inappropriate implementation in Skia

Inappropriate implementation in Skia. Red Hat rates this critical (CVSS 8.7). Weakness: CWE-807. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9892
Unclassified
May 27, 2026
High7.4Red Hat

High [CVE-2026-9991] Inappropriate implementation in Media

Inappropriate implementation in Media. Red Hat rates this important (CVSS 7.4). Weakness: CWE-346. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9991
Unclassified
May 27, 2026
High8.7Red Hat

High [CVE-2026-10001] Use after free in PerformanceManager

Use after free in PerformanceManager. Red Hat rates this important (CVSS 8.7). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-10001
Unclassified
May 27, 2026
High8.8Red Hat

High [CVE-2026-9983] Type Confusion in Skia

Type Confusion in Skia. Red Hat rates this important (CVSS 8.8). Weakness: CWE-843. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9983
Unclassified
May 27, 2026
High8.8Red Hat

High [CVE-2026-9973] Out of bounds write in V8

Out of bounds write in V8. Red Hat rates this important (CVSS 8.8). Weakness: CWE-787. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9973
Unclassified
May 27, 2026
High8.8Red Hat

High [CVE-2026-9950] Insufficient validation of untrusted input in iOS

Insufficient validation of untrusted input in iOS. Red Hat rates this important (CVSS 8.8). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9950
Unclassified
May 27, 2026
High8.8Red Hat

High [CVE-2026-9955] Inappropriate implementation in iOS

Inappropriate implementation in iOS. Red Hat rates this important (CVSS 8.8). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9955
Unclassified
May 27, 2026
High8.8Red Hat

High [CVE-2026-9956] Use after free in iOS

Use after free in iOS. Red Hat rates this important (CVSS 8.8). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9956
Unclassified
May 27, 2026
High8.8Red Hat

High [CVE-2026-9963] Uninitialized Use in iOS

Uninitialized Use in iOS. Red Hat rates this important (CVSS 8.8). No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected product named by the advisory: Red Hat Enterprise Linux.

CVE-2026-9963
Unclassified
May 27, 2026
High7.8Red Hat

High [CVE-2026-45984] Fix use-after-free in iomap inline data write path

Fix use-after-free in iomap inline data write path. Red Hat rates this important (CVSS 7.8). Weakness: CWE-826. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:33743 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux AppStream E4S (v.9.4); Red Hat Enterprise Linux AppStream EUS (v.9.6); Red Hat Enterprise Linux AppStream (v. 9); Red Hat Enterprise Linux BaseOS (v. 8); and 23 more.

CVE-2026-45984
Unclassified
May 27, 2026
High7.0Red Hat

High [CVE-2026-46099] fix NOREF dst use in seg6 and rpl lwtunnels

fix NOREF dst use in seg6 and rpl lwtunnels. Red Hat rates this important (CVSS 7). Weakness: CWE-911. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9.

CVE-2026-46099
Unclassified
May 27, 2026
High7.0Red Hat

High [CVE-2026-45972] fix potential UAF and double free in smb2_open_file()

fix potential UAF and double free in smb2_open_file(). Red Hat rates this important (CVSS 7). Weakness: CWE-825. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9.

CVE-2026-45972
Unclassified
May 27, 2026
High7.0Red Hat

High [CVE-2026-46090] Fix peer runtime UAF during format-change stop

Fix peer runtime UAF during format-change stop. Red Hat rates this important (CVSS 7). Weakness: CWE-364. Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:27354 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 7 Extended Lifecycle Support; Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support; Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On; and 7 more.

CVE-2026-46090
Unclassified
May 27, 2026
High7.0Red Hat

High [CVE-2026-46033] authencesn - reject short ahash digests during instance creation

authencesn - reject short ahash digests during instance creation. Red Hat rates this important (CVSS 7). Weakness: CWE-1284. No fix erratum has been published yet; monitor the Red Hat CVE page and apply the RHSA when released. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-46033
Unclassified
May 27, 2026
High7.0Red Hat

High [CVE-2026-45998] Fix potential UAF after skb_unshare() failure

Fix potential UAF after skb_unshare() failure. Red Hat rates this important (CVSS 7). Weakness: CWE-825. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:34911 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9.

CVE-2026-45998
Unclassified
May 27, 2026
High7.0Red Hat

High [CVE-2026-46054] fix overlayfs mmap() and mprotect() access checks

fix overlayfs mmap() and mprotect() access checks. Red Hat rates this important (CVSS 7). Weakness: CWE-280. Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:30848 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions.

CVE-2026-46054
Unclassified
May 27, 2026
High7.0Red Hat

High [CVE-2026-45898] Fix workqueue list corruption by removing work_list

Fix workqueue list corruption by removing work_list. Red Hat rates this important (CVSS 7). Weakness: CWE-1341. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:30129 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 10.0 Extended Update Support; Red Hat Enterprise Linux 9.6 Extended Update Support.

CVE-2026-45898
Unclassified
May 27, 2026
High7.0Red Hat

High [CVE-2026-45852] Fix double free in rxe_srq_from_init

Fix double free in rxe_srq_from_init. Red Hat rates this important (CVSS 7). Affected package(s): kernel, kernel-rt. Resolved in Red Hat advisory RHSA-2026:25120 — update the affected packages (`sudo dnf update`). Affected products named by the advisory: Red Hat Enterprise Linux 7 Extended Lifecycle Support; Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support; Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On; Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support; and 5 more.

CVE-2026-45852
Unclassified
May 27, 2026

← All vendors