Skip to content
Red HatCVE-2026-19411

Red Hat Enterprise Linux: denial of service

Low3.9CVE-2026-19411 · Published Aug 10, 2026 · updated Aug 14, 2026

A NULL pointer vulnerability has been found in the the shim application of dp.c library. A missing NULL pointer could allow attackers to perform a denial of service attack on a system that uses shim application for UEFI bootloader.

Red Hat advisory

Affected versions

PackageAffectedFixed in
Red Hat Enterprise Linux 7
Product
all versionsNo fix yet
Red Hat Enterprise Linux 8
Product
all versionsNo fix yet
Red Hat Enterprise Linux 9
Product
all versionsNo fix yet
Details and references
CVSS 3.1
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:L/A:L
Severity from
the vendor (its own CVE record or advisory)
Weakness
CWE-476

More Red Hat advisories

All Red Hat
Advisory
Red Hat QEMU: memory corruption
Medium4.4Aug 10
Red Hat Enterprise Linux 10: privilege escalation
High7.8Aug 10
Red Hat OpenShift AI (RHOAI): denial of service
High8.5Aug 10
Red Hat OpenShift AI (RHOAI): remote code execution
Critical9.9Aug 10
Red Hat OpenShift AI (RHOAI): privilege escalation
High8.8Aug 10
Red Hat OpenShift AI (RHOAI): privilege escalation
High8.8Aug 10

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.