# Red Hat Linux kernel flaws enable RCE

Published: 2026-06-12 · Severity: high
Canonical: https://vorant.io/reports/7a175619-20a6-4bea-b428-0bd33780f434/red-hat-linux-kernel-flaws-enable-rce

> Multiple vulnerabilities in Red Hat Enterprise Linux kernel allow remote code execution, privilege escalation, and denial of service across all supported versions.

The French CERT (CERT-FR) published an advisory detailing multiple vulnerabilities discovered in the Red Hat Enterprise Linux kernel affecting versions 7 through 10 across all architectures. The flaws impact Red Hat Enterprise Linux and CodeReady Linux Builder distributions for ARM64, x86_64, IBM z Systems, and Power architectures, including Extended Update Support and Extended Life Cycle versions.

The vulnerabilities enable several attack vectors including remote arbitrary code execution, privilege escalation, denial of service, security policy bypass, and compromise of data integrity and confidentiality. Red Hat released six security bulletins between June 10-11, 2026 addressing the issues through kernel updates. The advisory references 34 CVE identifiers spanning from 2023 to 2026, indicating both legacy flaws and recently discovered issues.

Organizations running any Red Hat Enterprise Linux version should prioritize applying the vendor-supplied patches immediately given the severity of remote code execution capabilities and the broad attack surface across enterprise deployments.

## Mentioned in this report

- Vulnerabilities: CVE-2023-53781, CVE-2025-21858, CVE-2025-40135, CVE-2025-40158, CVE-2025-40170, CVE-2025-68366, CVE-2025-68724, CVE-2025-71089, CVE-2025-71116, CVE-2026-22984, CVE-2026-22990, CVE-2026-23216, CVE-2026-23392, CVE-2026-23455, CVE-2026-31419, CVE-2026-31467, CVE-2026-31508, CVE-2026-31532, CVE-2026-31581, CVE-2026-31607, CVE-2026-31613, CVE-2026-31685, CVE-2026-43037, CVE-2026-43038, CVE-2026-43056, CVE-2026-43110, CVE-2026-43116, CVE-2026-43125, CVE-2026-43163, CVE-2026-43190, CVE-2026-43501, CVE-2026-45852, CVE-2026-46054, CVE-2026-46181

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0747

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/7a175619-20a6-4bea-b428-0bd33780f434/red-hat-linux-kernel-flaws-enable-rce.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
