Red hat enterprise linux
This hub aggregates every CVE we track for Red hat enterprise linux, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
10,799
CVEs tracked
903
Critical
4,206
High
110
In CISA KEV
Severity distribution
MEDIUM5,202HIGH4,206CRITICAL903LOW488
Monthly trend
150
184
128
183
107
288
149
127
254
259
282
69
377
346
75
199
107
45
117
89
57
96
94
25
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat enterprise linux.
- CVE-2026-42170Gimp: gimp dds plug-in heap-based buffer overflow via bpp mismatch in load_layer() (ddsread.c)7.8
- CVE-2026-61477Libvirt: libvirt: newline injection in network xml dns txt/srv fields allows dnsmasq config directive injection2.3
- CVE-2026-15816Dracut: dracut: root code execution via unescaped error message written to sourced emergency hook script in die()7.5
- CVE-2026-18938P11-kit: integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems6.2
- CVE-2026-19079Policycoreutils: policycoreutils: toctou race condition in fixfiles allows arbitrary selinux label manipulation4.4
- CVE-2026-7867Udisks2: udisks2: local privilege escalation via as-user option spoofing7.8
- CVE-2026-18649Gst-plugins-good: gst-plugins-good: unbounded memory growth in rtph264depay and rtph265depay rtp depayloaders7.5
- CVE-2026-18839Popt-devel: popt-static: size_t underflow in singleoptionhelp2.2
- CVE-2026-44605Rpm: heap buffer overflow in ndb slot table parsing5.5
- CVE-2026-71227Libkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return5.1
- CVE-2026-71226Libkcapi: memory corruption via uncanceled aio requests on error in libkcapi's one-shot aio path7.3
- CVE-2026-71225Libkcapi: iv reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries6.5
- CVE-2026-18103Dhcp-server: dhcp-server: persistent denial of service due to buffer overflow via omapi4.9
- CVE-2026-68743Sssd: sssd: pam responder out-of-bounds read via unchecked auth_token_length in protocol v15.5
- CVE-2026-70368Stunnel: stack-based out-of-bounds read/write in stunnel s_vlog via oversized log message6.5
Product normalization is registry-driven with AI assist and human review. How it works