Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1680 CRITICAL 135 HIGH 590 MEDIUM 803 LOW 151
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • 商用ライセンス有り
  • Linux

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
1471 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 4 127 172 17
1472 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 43 314 444 50
1473 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 91 270 270 46
1474 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 72 169 210 55
1475 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
1476 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
1477 Red Hat Enterprise Linux 3 3.0 0 33 44 17
1478 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
1471 -
7.5
HIGH Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and po… CWE-787
 Out-of-bounds Write
CVE-2012-2665 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:39
2012-08-7
Show GitHub Exploit DB Packet Storm
1472 -
4.3
MEDIUM PostgreSQL 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 truncates the common name to only 32 characters when verifying SSL certificates, which allows remote attackers to spoof conn… CWE-20
CWE-295
 Improper Input Validation 
Improper Certificate Validation 
CVE-2012-0867 cpe:2.3:o:redhat:enterprise_linux:5.0:* 2024-11-21 10:35
2012-07-19
Show GitHub Exploit DB Packet Storm
1473 -
7.5
HIGH Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (application c… CWE-189
Numeric Errors
CVE-2012-1149 cpe:2.3:o:redhat:enterprise_linux:5.0:* 2024-11-21 10:36
2012-06-22
Show GitHub Exploit DB Packet Storm
1474 -
1.2
LOW The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2313 cpe:2.3:o:redhat:enterprise_linux:5:* 2024-11-21 10:38
2012-06-13
Show GitHub Exploit DB Packet Storm
1475 6.5
6.1
MEDIUM
Adjacent
The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) … CWE-20
 Improper Input Validation 
CVE-2011-3363 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:30
2012-05-25
Show GitHub Exploit DB Packet Storm
1476 8.8
8.3
HIGH
Adjacent
Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denial of service (memory corruption) or possibly have … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-3191 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:29
2012-05-25
Show GitHub Exploit DB Packet Storm
1477 9.1
6.4
CRITICAL
Network
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote… NVD-CWE-Other
CVE-2011-3188 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:29
2012-05-25
Show GitHub Exploit DB Packet Storm
1478 7.5
7.8
HIGH
Network
The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for each destination, which makes it easier for remote attackers to cause a denial o… NVD-CWE-Other
CVE-2011-2699 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:28
2012-05-25
Show GitHub Exploit DB Packet Storm
1479 -
7.2
HIGH Multiple buffer overflows in net/wireless/nl80211.c in the Linux kernel before 2.6.39.2 allow local users to gain privileges by leveraging the CAP_NET_ADMIN capability during scan operations with a l… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2517 cpe:2.3:o:redhat:enterprise_linux:5.0:* 2024-11-21 10:28
2012-05-25
Show GitHub Exploit DB Packet Storm
1480 7.8
7.2
HIGH
Local
The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and .set methods, which allows local users to cause a denial of service (NULL poin… CWE-476
 NULL Pointer Dereference
CVE-2012-1097 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:36
2012-05-17
Show GitHub Exploit DB Packet Storm