Red Hat issued patches for multiple Linux kernel vulnerabilities enabling privilege…
Red Hat issued patches for multiple Linux kernel vulnerabilities enabling privilege escalation, data confidentiality breaches, security bypass, and denial of service across RHEL versions 8-10.
CERT-FR has published an advisory regarding multiple vulnerabilities discovered in Red Hat Enterprise Linux kernel packages. The flaws affect a wide range of RHEL distributions across versions 8, 9, and 10, spanning multiple architectures including x86_64, ARM64, IBM z Systems (s390x), and Power (ppc64le). The vulnerabilities enable several attack vectors: privilege escalation, confidential data exposure, security policy bypass, and denial of service conditions.
Red Hat released seven security bulletins between June 1-4, 2026 (RHSA-2026:22334, 22900, 22940, 22964, 23258, 23329, 23395) addressing twenty CVEs spanning years 2024-2026. The affected systems include standard RHEL installations, CodeReady Linux Builder repositories, and specialized support channels such as Extended Update Support (EUS), Extended Life Cycle (ELC), Update Services for SAP Solutions, and Advanced Update Support (AUS) variants.
Organizations running Red Hat Enterprise Linux should prioritize patching according to their support channel and architecture. The breadth of affected versions and the nature of kernel-level vulnerabilities—particularly privilege escalation—warrant expedited remediation. Administrators should consult the referenced Red Hat security bulletins for their specific platform and apply patches through standard yum/dnf update procedures.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0694
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free