# Red Hat patches multiple Linux kernel flaws

Published: 2026-07-17 · Severity: medium · Sectors: technology
Canonical: https://vorant.io/reports/a3dca51b-1631-5b85-a0b7-8704d32e5b11/red-hat-patches-multiple-linux-kernel-flaws

> ANSSI advisory details numerous Red Hat Enterprise Linux kernel vulnerabilities enabling code execution, privilege escalation, and denial of service.

ANSSI (CERT-FR) issued advisory CERTFR-2026-AVI-0899 covering a large batch of vulnerabilities discovered in the Linux kernel as shipped by Red Hat across multiple product lines, including Red Hat Enterprise Linux (versions 8, 9, and 10) and CodeReady Linux Builder across ARM64, IBM z Systems, Power (ppc64le), and x86_64 architectures. The advisory aggregates over a dozen Red Hat Security Advisories (RHSAs) published between July 10 and July 17, 2026, and references approximately 30 CVEs affecting kernel components.

The vulnerabilities collectively enable a range of impacts including arbitrary code execution, privilege escalation, remote denial of service, data integrity and confidentiality breaches, and security policy bypass. No specific exploitation in the wild is mentioned in the advisory; it is a routine vendor patch notification. Red Hat has released fixes across all affected product editions, and administrators are directed to apply the corresponding RHSA patches referenced in the documentation.

Given the broad scope of affected Red Hat Enterprise Linux editions (spanning multiple architectures and long-term support variants including Extended Update Support and Extended Life Cycle), organizations running RHEL should prioritize patching per their asset criticality and exposure, particularly for systems exposed to untrusted local users or network-facing kernel-dependent services.

## Mentioned in this report

- Vulnerabilities: CVE-2025-38653, CVE-2025-68183, CVE-2025-68724, CVE-2025-71066, CVE-2025-71089, CVE-2026-31408, CVE-2026-31411, CVE-2026-31613, CVE-2026-31684, CVE-2026-43027, CVE-2026-43074, CVE-2026-43279, CVE-2026-43330, CVE-2026-43414, CVE-2026-43499, CVE-2026-45984, CVE-2026-46086, CVE-2026-46113, CVE-2026-46116, CVE-2026-46135, CVE-2026-46152, CVE-2026-46173, CVE-2026-46189, CVE-2026-46209, CVE-2026-46242, CVE-2026-46316, CVE-2026-53016, CVE-2026-53166, CVE-2026-53266, CVE-2026-53359

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0899

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/a3dca51b-1631-5b85-a0b7-8704d32e5b11/red-hat-patches-multiple-linux-kernel-flaws.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
