CVE-2026-19411: Red Hat Enterprise Linux 7

Low severity, CVSS 3.9. EPSS: 0.1% chance of exploitation in the next 30 days.

A NULL pointer vulnerability has been found in the the shim application of dp.c library. A missing NULL pointer could allow attackers to perform a denial of service attack on a system that uses shim application for UEFI bootloader.

Affected products

Published 2026-08-10. Last modified 2026-08-14.