CVE coverage

AlmaLinux 8 CVE tracker

Noxen pulls AlmaLinux 8 CVE data from the same upstream sources Red Hat publishes against (RHEL 8 binary-compatible). NVD provides the upstream advisory; OSV's Red Hat ecosystem feed provides the rpm-level fix versions. AlmaLinux 8 has active maintenance through May 2029, so security errata land on the same cadence as RHEL 8.

Live

Headline numbers

  • Total CVE records (all distros)Loading…
  • Last buildLoading…
  • OSV records (RH ecosystem + others)Loading…
  • NVD records (cross-platform)Loading…

How matching works

What Noxen does for an AlmaLinux 8 host

  1. Reads /etc/os-release to confirm AlmaLinux 8 (RHEL 9 binary-compatible).
  2. Reads rpm -qa for installed packages, including epoch and release.
  3. Filters the local feed cache to OSV records tagged with ecosystem AlmaLinux:8 / Red Hat:8, plus NVD records whose CPE matches the installed packages.
  4. Compares installed vs fix versions using rpm version semantics (epoch:version-release).
  5. Emits findings only where the installed version is strictly older than the fix.

Live listings

Top recent critical CVEs (Red Hat ecosystem (RHEL / Rocky / AlmaLinux))

Most-recently-published critical CVEs in the Red Hat ecosystem (RHEL / Rocky / AlmaLinux). Auto-deduped to one row per CVE ID. Snapshot baked at ; live re-fetch on page load.

CVESev.CVSSSummaryPackageFix inPublished
RLSA-2026:10217critical9.0Important: golang security updategolang0:1.25.9-3.el10_1
RLSA-2026:10219critical9.0Important: golang security updategolang0:1.25.9-1.el9_7
RLSA-2026:10704critical9.0Important: go-toolset:rhel8 security updatedelve0:1.25.2-1.module+el8.10.0+40035+ee0a7047
RLSA-2025:17129critical9.1Important: idm:DL1 security updatebind-dyndb-ldap0:11.6-6.module+el8.10.0+1960+1ed527b3
RLSA-2026:2224critical9.4Critical: keylime security updatekeylime0:7.12.1-11.el9_7.4
RLSA-2026:2225critical9.4Critical: keylime security updatekeylime0:7.12.1-11.el10_1.4
RLSA-2026:1472critical9.8Important: openssl security updateopenssl1:3.5.1-7.el10_1
RLSA-2026:1473critical9.8Important: openssl security updateopenssl1:3.5.1-7.el9_7

Top recent high-severity CVEs (Red Hat ecosystem (RHEL / Rocky / AlmaLinux))

CVESev.CVSSSummaryPackageFix inPublished
RLSA-2026:17481high7.4Important: rsync security updatersync0:3.1.3-25.el8_10
RLSA-2026:16196high7.8Important: kernel-rt security updatekernel-rt0:4.18.0-553.124.1.rt7.465.el8_10
RLSA-2026:16252high8.2Important: jq security updatejq0:1.6-12.el8_10
RLSA-2026:16875high7.8Important: git-lfs security updategit-lfs0:3.4.1-10.el8_10
RLSA-2026:17533high7.8Important: gimp:2.8 security updategimp2:2.8.22-26.module+el8.10.0+40075+a21479b4.4
RLSA-2026:16195high7.8Important: kernel security updatekernel0:4.18.0-553.124.1.el8_10
RLSA-2026:16692high8.2Important: jq security updatejq0:1.7.1-11.el10_1.0.2
RLSA-2026:16062high7.8Important: kernel security updatekernel0:6.12.0-124.56.1.el10_1

New to severity terminology? CVE, CVSS, CWE, CPE explained.

Notable

Recent CVEs that AlmaLinux 8 fleets care about.

Scan an AlmaLinux 8 fleet with Noxen

Add your AlmaLinux 8 hosts via your existing ~/.ssh/config; Noxen reads rpm package state and matches against the live signed feed. No agent, no SaaS round-trip. $79 one-time.

← back to the CVE dashboard   AlmaLinux 9 →   Rocky 9 →