Red Hat 9406 Published by

Red Hat has released a series of security advisories to address critical vulnerabilities across its enterprise software ecosystem. These updates target widely used packages like Firefox, the Linux kernel, and OpenShift Container Platform while covering multiple RHEL versions from seven through ten. Most of the patches carry an Important severity rating, though a few components such as corosync and capstone are classified as Moderate based on their Common Vulnerability Scoring System metrics. Administrators should review the detailed references for each advisory to apply the necessary fixes before those vulnerabilities can be exploited in production environments.

RHSA-2026:13922: Important: firefox security update
RHSA-2026:13917: Important: fence-agents security update
RHSA-2026:13811: Important: OpenShift Container Platform 4.21.14 bug fix and security update
RHSA-2026:13977: Important: firefox security update
RHSA-2026:13936: Important: kernel security update
RHSA-2026:13923: Moderate: capstone security update
RHSA-2026:13916: Important: fence-agents security update
RHSA-2026:14303: Important: thunderbird security update
RHSA-2026:14276: Important: Red Hat AMQ Broker 7.12.7 release and security update
RHSA-2026:14272: Important: Red Hat AMQ Broker 7.13.5 release and security update
RHSA-2026:14230: Important: kernel security update
RHSA-2026:14224: Important: LibRaw security update
RHSA-2026:14213: Moderate: corosync security update
RHSA-2026:14212: Moderate: corosync security update
RHSA-2026:14216: Moderate: corosync security update
RHSA-2026:14214: Moderate: corosync security update
RHSA-2026:14215: Moderate: corosync security update
RHSA-2026:14205: Moderate: corosync security update
RHSA-2026:14200: Important: git-lfs security update
RHSA-2026:14437: Important: sudo security update
RHSA-2026:14339: Important: kernel security update
RHSA-2026:14391: Important: Red Hat build of Cryostat security update
RHSA-2026:13727: Important: OpenShift Container Platform 4.18.40 bug fix and security update
RHSA-2026:14301: Important: kernel-rt security update
RHSA-2026:14228: Important: sudo security update
RHSA-2026:14223: Important: thunderbird security update
RHSA-2026:14210: Moderate: corosync security update
RHSA-2026:14211: Moderate: corosync security update




RHSA-2026:13922: Important: firefox security update


An update for firefox is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:13922: Important: firefox security update



RHSA-2026:13917: Important: fence-agents security update


An update for fence-agents is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:13917: Important: fence-agents security update



RHSA-2026:13811: Important: OpenShift Container Platform 4.21.14 bug fix and security update


Red Hat OpenShift Container Platform release 4.21.14 is now available with updates to packages and images that fix several bugs and add enhancements.

This release includes a security update for Red Hat OpenShift Container Platform 4.21.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:13811: Important: OpenShift Container Platform 4.21.14 bug fix and security update



RHSA-2026:13977: Important: firefox security update


An update for firefox is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:13977: Important: firefox security update



RHSA-2026:13936: Important: kernel security update


An update for kernel is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:13936: Important: kernel security update



RHSA-2026:13923: Moderate: capstone security update


An update for capstone is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:13923: Moderate: capstone security update



RHSA-2026:13916: Important: fence-agents security update


An update for fence-agents is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:13916: Important: fence-agents security update



RHSA-2026:14303: Important: thunderbird security update


An update for thunderbird is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14303: Important: thunderbird security update



RHSA-2026:14276: Important: Red Hat AMQ Broker 7.12.7 release and security update


Red Hat AMQ Broker 7.12.7 is now available from the Red Hat Customer Portal.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14276: Important: Red Hat AMQ Broker 7.12.7 release and security update



RHSA-2026:14272: Important: Red Hat AMQ Broker 7.13.5 release and security update


Red Hat AMQ Broker 7.13.5 is now available from the Red Hat Customer Portal.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14272: Important: Red Hat AMQ Broker 7.13.5 release and security update



RHSA-2026:14230: Important: kernel security update


An update for kernel is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, and Red Hat Enterprise Linux 8.6 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14230: Important: kernel security update



RHSA-2026:14224: Important: LibRaw security update


An update for LibRaw is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14224: Important: LibRaw security update



RHSA-2026:14213: Moderate: corosync security update


An update for corosync is now available for Red Hat Enterprise Linux 9.6 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14213: Moderate: corosync security update



RHSA-2026:14212: Moderate: corosync security update


An update for corosync is now available for Red Hat Enterprise Linux 9.4 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14212: Moderate: corosync security update



RHSA-2026:14216: Moderate: corosync security update


An update for corosync is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14216: Moderate: corosync security update



RHSA-2026:14214: Moderate: corosync security update


An update for corosync is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, and Red Hat Enterprise Linux 8.6 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14214: Moderate: corosync security update



RHSA-2026:14215: Moderate: corosync security update


An update for corosync is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14215: Moderate: corosync security update



RHSA-2026:14205: Moderate: corosync security update


An update for corosync is now available for Red Hat Enterprise Linux 10.0 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14205: Moderate: corosync security update



RHSA-2026:14200: Important: git-lfs security update


An update for git-lfs is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14200: Important: git-lfs security update



RHSA-2026:14437: Important: sudo security update


An update for sudo is now available for Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14437: Important: sudo security update



RHSA-2026:14339: Important: kernel security update


An update for kernel is now available for Red Hat Enterprise Linux 9.6 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14339: Important: kernel security update



RHSA-2026:14391: Important: Red Hat build of Cryostat security update


An update is now available for the Red Hat build of Cryostat 4 on RHEL 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14391: Important: Red Hat build of Cryostat security update



RHSA-2026:13727: Important: OpenShift Container Platform 4.18.40 bug fix and security update


Red Hat OpenShift Container Platform release 4.18.40 is now available with updates to packages and images that fix several bugs and add enhancements.

This release includes a security update for Red Hat OpenShift Container Platform 4.18.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:13727: Important: OpenShift Container Platform 4.18.40 bug fix and security update



RHSA-2026:14301: Important: kernel-rt security update


An update for kernel-rt is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14301: Important: kernel-rt security update



RHSA-2026:14228: Important: sudo security update


An update for sudo is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, and Red Hat Enterprise Linux 8.6 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14228: Important: sudo security update



RHSA-2026:14223: Important: thunderbird security update


An update for thunderbird is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14223: Important: thunderbird security update



RHSA-2026:14210: Moderate: corosync security update


An update for corosync is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14210: Moderate: corosync security update



RHSA-2026:14211: Moderate: corosync security update


An update for corosync is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:14211: Moderate: corosync security update