Red hat enterprise linux
This hub aggregates every CVE we track for Red hat enterprise linux, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
1,100
CVEs tracked
23
Critical
398
High
1
In CISA KEV
Severity distribution
MEDIUM596HIGH398LOW83CRITICAL23
Monthly trend
11
19
1
11
25
18
29
18
29
19
8
13
10
17
8
18
20
38
45
25
86
93
100
110
2024-102026-09
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat enterprise linux.
- CVE-2026-96889Librsvg: use-after-free when xml includes have duplicated entities7.8
- CVE-2026-96546Gimp: gimp: one-byte out-of-bounds heap read in the uncompressed dds loader2.5
- CVE-2026-96545Gimp: gimp: out-of-bounds heap read in the 4bpp tim image loader4.4
- CVE-2026-96541Gnome-remote-desktop: gnome-remote-desktop: unauthenticated rdp sockets lack a handshake deadline7.5
- CVE-2026-96276Flatpak: flatpak: arbitrary write in host context via flatpak build-init9.8
- CVE-2026-96275Flatpak: flatpak: arbitrary write access as root via extra-data extraction8.8
- CVE-2026-96512Sudo: sudo: tz environment variable allows bypass of notbefore/notafter time-based authorization7.8
- CVE-2026-96442Emacs: emacs: arbitrary code execution, incomplete fix for cve-2024-539207.8
- CVE-2026-13087Kernel: heap out-of-bounds write in the linux kernel rpc-over-rdma server reply path...8.8
- CVE-2026-90462Sssd: sssd: fail-open in ldap ppolicy access check allows continued authorization5.4
- CVE-2026-94640Rpcbind: unbounded memory allocation in rpcbind statistics tracking allows unauthenticated remote denial of service7.5
- CVE-2026-95619Gcc: libstdc++ integer overflow in `new` operator7.7
- CVE-2026-95508Libslirp: libslirp: heap buffer overflow in dhcpv6/tftp response builders on small interface mtu7.4
- CVE-2026-93433Libstoragemgmt: libstoragemgmt: denial of service via stack buffer overflow in scsi vpd page parsing5.5
- CVE-2026-92382Usbredir: usbredir: unbounded iso_packet_desc[] index in usbredirhost_iso_packet() leads to heap out-of-bounds write4.1
Product normalization is registry-driven with AI assist and human review. How it works