Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1680 CRITICAL 135 HIGH 590 MEDIUM 803 LOW 151
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • Linux
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
1421 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 4 127 172 17
1422 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 43 314 444 50
1423 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 91 270 270 46
1424 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 72 169 210 55
1425 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
1426 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
1427 Red Hat Enterprise Linux 3 3.0 0 33 44 17
1428 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
1421 -
6.8
MEDIUM Heap-based buffer overflow in the curl_easy_unescape function in lib/escape.c in cURL and libcurl 7.7 through 7.30.0 allows remote attackers to cause a denial of service (application crash) or possib… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-2174 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5:*
2024-11-21 10:51
2013-07-31
Show GitHub Exploit DB Packet Storm
1422 -
7.8
HIGH The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remo… NVD-CWE-noinfo
CVE-2013-4854 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5:*
2024-11-21 10:56
2013-07-29
Show GitHub Exploit DB Packet Storm
1423 -
4.7
MEDIUM A certain Red Hat patch to the do_filp_open function in fs/namei.c in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle failure to obtain wri… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2188 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:51
2013-07-16
Show GitHub Exploit DB Packet Storm
1424 7.8
4.4
HIGH
Local
The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation of memory slots for use in a guest's physical address space, which allows loca… CWE-20
 Improper Input Validation 
CVE-2013-1943 cpe:2.3:o:redhat:enterprise_linux:5.0:* 2024-11-21 10:50
2013-07-16
Show GitHub Exploit DB Packet Storm
1425 -
5.7
MEDIUM A certain Red Hat patch to the KVM subsystem in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linux (RHEL) 6 does not properly implement the PV EOI feature, which allows guest O… CWE-362
Race Condition
CVE-2013-1935 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:50
2013-07-16
Show GitHub Exploit DB Packet Storm
1426 -
2.6
LOW The Tomcat 6 DIGEST authentication functionality as used in Red Hat Enterprise Linux 6 allows remote attackers to bypass intended access restrictions by performing a replay attack after a nonce becom… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2051 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:50
2013-07-10
Show GitHub Exploit DB Packet Storm
1427 -
6.9
MEDIUM The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow loca… CWE-59
Link Following
CVE-2013-1976 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5:*
2024-11-21 10:50
2013-07-10
Show GitHub Exploit DB Packet Storm
1428 -
6.9
MEDIUM A certain Red Hat patch for the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 allows local users to cause a denial of service (invalid free operation and system crash) or possibly gain pri… NVD-CWE-Other
CVE-2013-2224 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:51
2013-07-5
Show GitHub Exploit DB Packet Storm
1429 -
2.1
LOW The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10 allows local users to obtain sensitive information from kernel memory via a read operation on a malfun… CWE-200
Information Exposure
CVE-2013-2164 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5:*
cpe:2.3:o:redhat:enterprise_linux:5…
2024-11-21 10:51
2013-07-5
Show GitHub Exploit DB Packet Storm
1430 -
5.7
MEDIUM A certain Red Hat patch to the vlan_hwaccel_do_receive function in net/8021q/vlan_core.c in the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 allows remote attackers to cause a denial of s… CWE-399
 Resource Management Errors
CVE-2011-3593 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:30
2013-06-8
Show GitHub Exploit DB Packet Storm