Red Hat 9391 Published by

Red Hat Product Security has released a wave of updates targeting security flaws in several key enterprise products. These advisories cover widely used tools including Firefox, Thunderbird, and multiple .NET versions running on RHEL systems ranging from version 7 to 10. While most advisories carry an Important rating, specific OpenShift packages are assigned lower severity levels instead. System administrators need to review the reference links within each erratum to determine which patches apply to their specific infrastructure.

RHSA-2026:7243: Important: OpenShift Container Platform 4.19.28 bug fix and security update
RHSA-2026:8427: Important: firefox security update
RHSA-2026:8469: Important: .NET 8.0 security update
RHSA-2026:8468: Important: .NET 8.0 security update
RHSA-2026:8472: Important: .NET 9.0 security update
RHSA-2026:8470: Important: .NET 8.0 security update
RHSA-2026:8459: Important: thunderbird security update
RHSA-2026:8458: Important: freerdp security update
RHSA-2026:8456: Important: osbuild-composer security update
RHSA-2026:8434: Important: rhc security update
RHSA-2026:7238: Moderate: OpenShift Container Platform 4.13.65 packages and security update
RHSA-2026:7239: Important: OpenShift Container Platform 4.13.65 bug fix and security update
RHSA-2026:8492: Important: libarchive security update
RHSA-2026:8474: Important: .NET 9.0 security update
RHSA-2026:8471: Important: .NET 10.0 security update
RHSA-2026:8610: Important: perl-XML-Parser security update
RHSA-2026:8608: Important: perl-XML-Parser security update
RHSA-2026:8609: Important: perl-XML-Parser security update
RHSA-2026:8578: Important: perl-XML-Parser security update
RHSA-2026:8577: Important: perl-XML-Parser security update
RHSA-2026:8548: Important: nghttp2 security update
RHSA-2026:8547: Important: nghttp2 security update
RHSA-2026:8545: Important: nghttp2 security update
RHSA-2026:8546: Important: nghttp2 security update
RHSA-2026:8538: Important: nghttp2 security update
RHSA-2026:8540: Important: nghttp2 security update
RHSA-2026:8539: Important: nghttp2 security update
RHSA-2026:8541: Important: nghttp2 security update
RHSA-2026:8534: Important: libarchive security update
RHSA-2026:8517: Important: libarchive security update
RHSA-2026:8521: Important: libarchive security update
RHSA-2026:8510: Important: libarchive security update
RHSA-2026:8509: Important: Red Hat AMQ Broker 7.14.0 release and security update
RHSA-2026:8473: Important: .NET 10.0 security update
RHSA-2026:8475: Important: .NET 9.0 security update
RHSA-2026:8467: Important: .NET 10.0 security update
RHSA-2026:8457: Important: freerdp security update




RHSA-2026:7243: Important: OpenShift Container Platform 4.19.28 bug fix and security update


Red Hat OpenShift Container Platform release 4.19.28 is now available with updates to packages and images that fix several bugs and add enhancements.

This release includes a security update for Red Hat OpenShift Container Platform 4.19.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:7243: Important: OpenShift Container Platform 4.19.28 bug fix and security update



RHSA-2026:8427: Important: firefox security update


An update for firefox is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8427: Important: firefox security update



RHSA-2026:8469: Important: .NET 8.0 security update


An update for .NET 8.0 is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8469: Important: .NET 8.0 security update



RHSA-2026:8468: Important: .NET 8.0 security update


An update for .NET 8.0 is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8468: Important: .NET 8.0 security update



RHSA-2026:8472: Important: .NET 9.0 security update


An update for .NET 9.0 is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8472: Important: .NET 9.0 security update



RHSA-2026:8470: Important: .NET 8.0 security update


An update for .NET 8.0 is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8470: Important: .NET 8.0 security update



RHSA-2026:8459: Important: thunderbird security update


An update for thunderbird is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8459: Important: thunderbird security update



RHSA-2026:8458: Important: freerdp security update


An update for freerdp is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8458: Important: freerdp security update



RHSA-2026:8456: Important: osbuild-composer security update


An update for osbuild-composer is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8456: Important: osbuild-composer security update



RHSA-2026:8434: Important: rhc security update


An update for rhc is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8434: Important: rhc security update



RHSA-2026:7238: Moderate: OpenShift Container Platform 4.13.65 packages and security update


Red Hat OpenShift Container Platform release 4.13.65 is now available with updates to packages and images that fix several bugs and add enhancements.

This release includes a security update for Red Hat OpenShift Container Platform 4.13.

Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:7238: Moderate: OpenShift Container Platform 4.13.65 packages and security update



RHSA-2026:7239: Important: OpenShift Container Platform 4.13.65 bug fix and security update


Red Hat OpenShift Container Platform release 4.13.65 is now available with updates to packages and images that fix several bugs and add enhancements.

This release includes a security update for Red Hat OpenShift Container Platform 4.13.

Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:7239: Important: OpenShift Container Platform 4.13.65 bug fix and security update



RHSA-2026:8492: Important: libarchive security update


An update for libarchive is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8492: Important: libarchive security update



RHSA-2026:8474: Important: .NET 9.0 security update


An update for .NET 9.0 is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8474: Important: .NET 9.0 security update



RHSA-2026:8471: Important: .NET 10.0 security update


An update for .NET 10.0 is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8471: Important: .NET 10.0 security update



RHSA-2026:8610: Important: perl-XML-Parser security update


An update for perl-XML-Parser is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, and Red Hat Enterprise Linux 8.6 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8610: Important: perl-XML-Parser security update



RHSA-2026:8608: Important: perl-XML-Parser security update


An update for perl-XML-Parser is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8608: Important: perl-XML-Parser security update



RHSA-2026:8609: Important: perl-XML-Parser security update


An update for perl-XML-Parser is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8609: Important: perl-XML-Parser security update



RHSA-2026:8578: Important: perl-XML-Parser security update


An update for perl-XML-Parser is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8578: Important: perl-XML-Parser security update



RHSA-2026:8577: Important: perl-XML-Parser security update


An update for perl-XML-Parser is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8577: Important: perl-XML-Parser security update



RHSA-2026:8548: Important: nghttp2 security update


An update for nghttp2 is now available for Red Hat Enterprise Linux 9.6 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8548: Important: nghttp2 security update



RHSA-2026:8547: Important: nghttp2 security update


An update for nghttp2 is now available for Red Hat Enterprise Linux 9.4 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8547: Important: nghttp2 security update



RHSA-2026:8545: Important: nghttp2 security update


An update for nghttp2 is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8545: Important: nghttp2 security update



RHSA-2026:8546: Important: nghttp2 security update


An update for nghttp2 is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8546: Important: nghttp2 security update



RHSA-2026:8538: Important: nghttp2 security update


An update for nghttp2 is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, and Red Hat Enterprise Linux 8.6 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8538: Important: nghttp2 security update



RHSA-2026:8540: Important: nghttp2 security update


An update for nghttp2 is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8540: Important: nghttp2 security update



RHSA-2026:8539: Important: nghttp2 security update


An update for nghttp2 is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8539: Important: nghttp2 security update



RHSA-2026:8541: Important: nghttp2 security update


An update for nghttp2 is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8541: Important: nghttp2 security update



RHSA-2026:8534: Important: libarchive security update


An update for libarchive is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8534: Important: libarchive security update



RHSA-2026:8517: Important: libarchive security update


An update for libarchive is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8517: Important: libarchive security update



RHSA-2026:8521: Important: libarchive security update


An update for libarchive is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8521: Important: libarchive security update



RHSA-2026:8510: Important: libarchive security update


An update for libarchive is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8510: Important: libarchive security update



RHSA-2026:8509: Important: Red Hat AMQ Broker 7.14.0 release and security update


Red Hat AMQ Broker 7.14.0 is now available from the Red Hat Customer Portal.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8509: Important: Red Hat AMQ Broker 7.14.0 release and security update



RHSA-2026:8473: Important: .NET 10.0 security update


An update for .NET 10.0 is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8473: Important: .NET 10.0 security update



RHSA-2026:8475: Important: .NET 9.0 security update


An update for .NET 9.0 is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8475: Important: .NET 9.0 security update



RHSA-2026:8467: Important: .NET 10.0 security update


An update for .NET 10.0 is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8467: Important: .NET 10.0 security update



RHSA-2026:8457: Important: freerdp security update


An update for freerdp is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:8457: Important: freerdp security update