Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1680 CRITICAL 135 HIGH 590 MEDIUM 803 LOW 151
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • Linux
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
1231 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 4 127 172 17
1232 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 43 314 444 50
1233 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 91 270 270 46
1234 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 72 169 210 55
1235 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
1236 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
1237 Red Hat Enterprise Linux 3 3.0 0 33 44 17
1238 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
1231 7.4
4.3
HIGH
Network
Adobe Flash Player versions 26.0.0.137 and earlier have a security bypass vulnerability that leads to information disclosure when performing URL redirect. CWE-601
Open Redirect
CVE-2017-3085 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 12:24
2017-08-12
Show GitHub Exploit DB Packet Storm
1232 7.0
4.4
HIGH
Local
Multiple integer overflows in the block drivers in QEMU, possibly before 2.0.0, allow local users to cause a denial of service (crash) via a crafted catalog size in (1) the parallels_open function in… CWE-190
 Integer Overflow or Wraparound
CVE-2014-0143 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 11:01
2017-08-11
Show GitHub Exploit DB Packet Storm
1233 6.5
4.0
MEDIUM
Network
The mod_dontdothat component of the mod_dav_svn Apache module in Subversion as packaged in Red Hat Enterprise Linux 5.11 does not properly detect recursion during entity expansion, which allows remot… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-6312 cpe:2.3:o:redhat:enterprise_linux:5.11:* 2024-11-21 11:55
2017-07-17
Show GitHub Exploit DB Packet Storm
1234 7.5
5.0
HIGH
Network
There is an invalid free in Image::printIFDStructure that leads to a Segmentation fault in Exiv2 0.26. A crafted input will lead to a remote denial of service attack. CWE-416
 Use After Free
CVE-2017-9953 cpe:2.3:o:redhat:enterprise_linux:7.0:* 2024-11-21 12:37
2017-06-27
Show GitHub Exploit DB Packet Storm
1235 7.0
6.9
HIGH
Local
libffi requests an executable stack allowing attackers to more easily trigger arbitrary code execution by overwriting the stack. Please note that libffi is used by a number of other libraries. It was… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-1000376 cpe:2.3:o:redhat:enterprise_linux:7.0:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*
2024-11-21 12:04
2017-06-20
Show GitHub Exploit DB Packet Storm
1236 7.8
7.2
HIGH
Local
glibc contains a vulnerability that allows specially crafted LD_LIBRARY_PATH values to manipulate the heap/stack, causing them to alias, potentially resulting in arbitrary code execution. Please note… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-1000366 cpe:2.3:o:redhat:enterprise_linux:7.0:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 12:04
2017-06-20
Show GitHub Exploit DB Packet Storm
1237 8.8
9.3
HIGH
Network
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the Graphics class. Successful exploitation could lead to arbitrary code execution. CWE-787
 Out-of-bounds Write
CVE-2017-3074 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 12:24
2017-05-10
Show GitHub Exploit DB Packet Storm
1238 8.8
9.3
HIGH
Network
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when handling multiple mask properties of display objects, aka memory corruption. Successful exploi… CWE-416
 Use After Free
CVE-2017-3073 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 12:24
2017-05-10
Show GitHub Exploit DB Packet Storm
1239 8.8
9.3
HIGH
Network
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the BitmapData class. Successful exploitation could lead to arbitrary code execution. CWE-787
 Out-of-bounds Write
CVE-2017-3072 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 12:24
2017-05-10
Show GitHub Exploit DB Packet Storm
1240 8.8
9.3
HIGH
Network
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when masking display objects. Successful exploitation could lead to arbitrary code execution. CWE-416
 Use After Free
CVE-2017-3071 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 12:24
2017-05-10
Show GitHub Exploit DB Packet Storm