Red hat enterprise linux
This hub aggregates every CVE we track for Red hat enterprise linux, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
915
CVEs tracked
19
Critical
316
High
1
In CISA KEV
Severity distribution
MEDIUM505HIGH316LOW75CRITICAL19
Monthly trend
15
11
19
1
11
25
18
29
18
29
19
8
13
10
17
8
18
20
38
45
25
86
94
25
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat enterprise linux.
- CVE-2026-42170Gimp: gimp dds plug-in heap-based buffer overflow via bpp mismatch in load_layer() (ddsread.c)7.8
- CVE-2026-61477Libvirt: libvirt: newline injection in network xml dns txt/srv fields allows dnsmasq config directive injection2.3
- CVE-2026-15816Dracut: dracut: root code execution via unescaped error message written to sourced emergency hook script in die()7.5
- CVE-2026-18938P11-kit: integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems6.2
- CVE-2026-19079Policycoreutils: policycoreutils: toctou race condition in fixfiles allows arbitrary selinux label manipulation4.4
- CVE-2026-7867Udisks2: udisks2: local privilege escalation via as-user option spoofing7.8
- CVE-2026-18649Gst-plugins-good: gst-plugins-good: unbounded memory growth in rtph264depay and rtph265depay rtp depayloaders7.5
- CVE-2026-18839Popt-devel: popt-static: size_t underflow in singleoptionhelp2.2
- CVE-2026-44605Rpm: heap buffer overflow in ndb slot table parsing5.5
- CVE-2026-71227Libkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return5.1
- CVE-2026-71226Libkcapi: memory corruption via uncanceled aio requests on error in libkcapi's one-shot aio path7.3
- CVE-2026-71225Libkcapi: iv reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries6.5
- CVE-2026-18103Dhcp-server: dhcp-server: persistent denial of service due to buffer overflow via omapi4.9
- CVE-2026-68743Sssd: sssd: pam responder out-of-bounds read via unchecked auth_token_length in protocol v15.5
- CVE-2026-70368Stunnel: stack-based out-of-bounds read/write in stunnel s_vlog via oversized log message6.5
Product normalization is registry-driven with AI assist and human review. How it works