Red Hat Enterprise Linux
Red Hat Enterprise Linux provides a flexible and stable foundation to support hybrid cloud innovation. Deploy applications and critical workloads faster with a consistent experience across physical, virtual, private, public cloud, and edge deployments.
Browse the latest documentation
10.2 Release NotesRelease Notes
Interactively installing RHEL from installation mediaInstalling RHEL
Upgrading from RHEL 9 to RHEL 10Upgrading and converting to RHEL
Composing a customized RHEL system imageComposing RHEL images using image builder
Automating system administration by using RHEL system rolesSystem administration
Security hardeningSecurity
Configuring and managing networkingNetworking
Latest security advisories
| Severity | Advisory/CVE | Synopsis | Date |
|---|---|---|---|
| Severity Important | Advisory/CVECVE-2026-79992 | Synopsis A flaw was found in Emacs TRAMP. A local attacker could exploit this vulnerability by processing maliciously crafted filenames. This occurs because TRAMP concatenates login arguments without proper sanitization, which are then passed to a local shell. Successful exploitation could lead to arbitrary code execution. | Date |
| Severity Moderate | Advisory/CVECVE-2026-56850 | Synopsis A flaw was found in Node.js. The HTTPS Agent, responsible for managing secure connections, can incorrectly reuse client identities across different requests. This occurs due to a technical issue with PFX object-array key collisions during connection reuse. As a result, a client's identity, established through mutual TLS (mTLS) authentication, could be mistakenly applied to another request, potentially leading to unauthorized access or identity spoofing. | Date |
| Severity Important | Advisory/CVECVE-2026-58043 | Synopsis A flaw in the Node.js Permission Model allows attackers to bypass --permission restrictions, enabling unauthorized read or write access to files and directories. | Date |
| Severity Low | Advisory/CVECVE-2026-56847 | Synopsis A flaw in the Node.js Permission Model allows trace_events.createTracing().enable() to bypass --allow-fs-write restrictions and write trace logs outside intended paths, potentially leading to unauthorized information disclosure. | Date |
| Severity Moderate | Advisory/CVECVE-2023-4010 | Synopsis A flaw was found in the USB Host Controller Driver framework in the Linux kernel. The usb_giveback_urb function has a logic loophole in its implementation. Due to the inappropriate judgment condition of the goto statement, the function cannot return under the input of a specific malformed descriptor file, so it falls into an endless loop, resulting in a denial of service. | Date |
Top resources
Get support
Support cases
Get answers quickly by opening a support case with us.
Live chat
Directly access our support engineers during weekday business hours.
Call or email
Speak directly with a Red Hat Support expert by phone or through email.