Red Hat 9433 Published by

Red Hat recently published a large collection of security advisories that patch vulnerabilities across dozens of essential enterprise software packages. These releases target everything from legacy RHEL 6 extended support environments to modern RHEL 10 deployments, with notable updates covering the Linux kernel, .NET runtimes, OpenShift Container Platform, and everyday utilities like Firefox and Thunderbird. Security analysts have categorized each advisory by impact level, assigning critical or important ratings that rely on standard CVSS scoring to guide infrastructure teams through urgent remediation steps. Administrators must verify their current software versions against the official errata lists and deploy the necessary patches immediately to prevent potential exploitation in live systems.

RHSA-2026:25058: Important: poppler security update
RHSA-2026:25051: Important: libyang security update
RHSA-2026:25030: Important: postgresql-jdbc security update
RHSA-2026:25015: Important: firefox security update
RHSA-2026:25014: Important: thunderbird security update
RHSA-2026:24992: Important: compat-libtiff3 security update
RHSA-2026:24987: Important: qt6-qtdeclarative security update
RHSA-2026:24984: Important: poppler security update
RHSA-2026:24985: Important: poppler security update
RHSA-2026:24983: Important: firefox security update
RHSA-2026:25068: Important: flatpak security update
RHSA-2026:25049: Critical: samba security update
RHSA-2026:24502: Important: Red Hat build of Quarkus 3.33.2 release and security update
RHSA-2026:23808: Important: Red Hat build of Quarkus 3.27.4 release and security update
RHSA-2026:25052: Moderate: mysql:8.4 security update
RHSA-2026:25063: Important: openssh security update
RHSA-2026:25057: Important: mod_http2 security update
RHSA-2026:25028: Moderate: kernel security update
RHSA-2026:23244: Important: OpenShift Container Platform 4.19.33 packages and security update
RHSA-2026:23245: Important: OpenShift Container Platform 4.19.33 bug fix and security update
RHSA-2026:25173: Important: rsync security update
RHSA-2026:25172: Important: rsync security update
RHSA-2026:25171: Important: bind9.16 security update
RHSA-2026:25170: Important: rsync security update
RHSA-2026:25149: Important: rsync security update
RHSA-2026:25113: Important: .NET 9.0 security update
RHSA-2026:25110: Important: .NET 8.0 security update
RHSA-2026:25121: Critical: kernel security update
RHSA-2026:25114: Important: .NET 10.0 security update
RHSA-2026:25115: Important: .NET 10.0 security update
RHSA-2026:25112: Important: .NET 9.0 security update
RHSA-2026:25125: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update
RHSA-2026:25111: Important: .NET 8.0 security update
RHSA-2026:25126: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update
RHSA-2026:25120: Critical: kernel-rt security update
RHSA-2026:25095: Important: kernel security update
RHSA-2026:25098: Moderate: Red Hat build of Keycloak 26.6.3 Update
RHSA-2026:25097: Moderate: Red Hat build of Keycloak 26.6.3 Images Update
RHSA-2026:25092: Important: libsndfile security update
RHSA-2026:25090: Important: httpd:2.4 security update
RHSA-2026:25089: Important: HawtIO 4.4.0 for Red Hat build of Apache Camel 4 Release and security update.
RHSA-2026:25083: Important: bind9.16 security update




RHSA-2026:25058: Important: poppler security update


An update for poppler is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25058: Important: poppler security update



RHSA-2026:25051: Important: libyang security update


An update for libyang is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25051: Important: libyang security update



RHSA-2026:25030: Important: postgresql-jdbc security update


An update for postgresql-jdbc is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25030: Important: postgresql-jdbc security update



RHSA-2026:25015: Important: firefox security update


An update for firefox is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25015: Important: firefox security update



RHSA-2026:25014: Important: thunderbird security update


An update for thunderbird is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25014: Important: thunderbird security update



RHSA-2026:24992: Important: compat-libtiff3 security update


An update for compat-libtiff3 is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:24992: Important: compat-libtiff3 security update



RHSA-2026:24987: Important: qt6-qtdeclarative security update


An update for qt6-qtdeclarative is now available for Red Hat Enterprise Linux 10.0 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:24987: Important: qt6-qtdeclarative security update



RHSA-2026:24984: Important: poppler security update


An update for poppler is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:24984: Important: poppler security update



RHSA-2026:24985: Important: poppler security update


An update for poppler is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:24985: Important: poppler security update



RHSA-2026:24983: Important: firefox security update


An update for firefox is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:24983: Important: firefox security update



RHSA-2026:25068: Important: flatpak security update


An update for flatpak is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25068: Important: flatpak security update



RHSA-2026:25049: Critical: samba security update


An update for samba is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25049: Critical: samba security update



RHSA-2026:24502: Important: Red Hat build of Quarkus 3.33.2 release and security update


An update is now available for Red Hat build of Quarkus.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. For more information, see the CVE links in the References section.


RHSA-2026:24502: Important: Red Hat build of Quarkus 3.33.2 release and security update



RHSA-2026:23808: Important: Red Hat build of Quarkus 3.27.4 release and security update


An update is now available for Red Hat build of Quarkus.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. For more information, see the CVE links in the References section.


RHSA-2026:23808: Important: Red Hat build of Quarkus 3.27.4 release and security update



RHSA-2026:25052: Moderate: mysql:8.4 security update


An update for the mysql:8.4 module is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25052: Moderate: mysql:8.4 security update



RHSA-2026:25063: Important: openssh security update


An update for openssh is now available for Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25063: Important: openssh security update



RHSA-2026:25057: Important: mod_http2 security update


An update for mod_http2 is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25057: Important: mod_http2 security update



RHSA-2026:25028: Moderate: kernel security update


An update for kernel is now available for Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25028: Moderate: kernel security update



RHSA-2026:23244: Important: OpenShift Container Platform 4.19.33 packages and security update


Red Hat OpenShift Container Platform release 4.19.33 is now available with updates to packages and images that fix several bugs and add enhancements.

This release includes a security update for Red Hat OpenShift Container Platform 4.19.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:23244: Important: OpenShift Container Platform 4.19.33 packages and security update



RHSA-2026:23245: Important: OpenShift Container Platform 4.19.33 bug fix and security update


Red Hat OpenShift Container Platform release 4.19.33 is now available with updates to packages and images that fix several bugs and add enhancements.

This release includes a security update for Red Hat OpenShift Container Platform 4.19.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:23245: Important: OpenShift Container Platform 4.19.33 bug fix and security update



RHSA-2026:25173: Important: rsync security update


An update for rsync is now available for Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25173: Important: rsync security update



RHSA-2026:25172: Important: rsync security update


An update for rsync is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25172: Important: rsync security update



RHSA-2026:25171: Important: bind9.16 security update


An update for bind9.16 is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25171: Important: bind9.16 security update



RHSA-2026:25170: Important: rsync security update


An update for rsync is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25170: Important: rsync security update



RHSA-2026:25149: Important: rsync security update


An update for rsync is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25149: Important: rsync security update



RHSA-2026:25113: Important: .NET 9.0 security update


An update for .NET 9.0 is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25113: Important: .NET 9.0 security update



RHSA-2026:25110: Important: .NET 8.0 security update


An update for .NET 8.0 is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25110: Important: .NET 8.0 security update



RHSA-2026:25121: Critical: kernel security update


An update for kernel is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25121: Critical: kernel security update



RHSA-2026:25114: Important: .NET 10.0 security update


An update for .NET 10.0 is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25114: Important: .NET 10.0 security update



RHSA-2026:25115: Important: .NET 10.0 security update


An update for .NET 10.0 is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25115: Important: .NET 10.0 security update



RHSA-2026:25112: Important: .NET 9.0 security update


An update for .NET 9.0 is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25112: Important: .NET 9.0 security update



RHSA-2026:25125: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update


A security update is now available for Red Hat JBoss Enterprise Application Platform 8.1. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25125: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update



RHSA-2026:25111: Important: .NET 8.0 security update


An update for .NET 8.0 is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25111: Important: .NET 8.0 security update



RHSA-2026:25126: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update


A security update is now available for Red Hat JBoss Enterprise Application Platform 8.1. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25126: Important: Red Hat JBoss Enterprise Application Platform 8.1.6 security update



RHSA-2026:25120: Critical: kernel-rt security update


An update for kernel-rt is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25120: Critical: kernel-rt security update



RHSA-2026:25095: Important: kernel security update


An update for kernel is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25095: Important: kernel security update



RHSA-2026:25098: Moderate: Red Hat build of Keycloak 26.6.3 Update


New Red Hat build of Keycloak 26.6.3 packages are available from the Customer Portal


RHSA-2026:25098: Moderate: Red Hat build of Keycloak 26.6.3 Update



RHSA-2026:25097: Moderate: Red Hat build of Keycloak 26.6.3 Images Update


New images are available for Red Hat build of Keycloak 26.6.3 and Red Hat build of Keycloak 26.6.3 Operator, running on OpenShift Container Platform


RHSA-2026:25097: Moderate: Red Hat build of Keycloak 26.6.3 Images Update



RHSA-2026:25092: Important: libsndfile security update


An update for libsndfile is now available for Red Hat Enterprise Linux 10.0 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25092: Important: libsndfile security update



RHSA-2026:25090: Important: httpd:2.4 security update


An update for the httpd:2.4 module is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25090: Important: httpd:2.4 security update



RHSA-2026:25089: Important: HawtIO 4.4.0 for Red Hat build of Apache Camel 4 Release and security update.


HawtIO 4.4.0 for Red Hat build of Apache Camel 4 GA Release is now available.

The purpose of this text-only errata is to inform you about the enhancements that improve your developer experience and ensure the security and stability of your products.

Red Hat Product Security has rated this update as having a security impact of
Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25089: Important: HawtIO 4.4.0 for Red Hat build of Apache Camel 4 Release and security update.



RHSA-2026:25083: Important: bind9.16 security update


An update for bind9.16 is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


RHSA-2026:25083: Important: bind9.16 security update