Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1680 CRITICAL 135 HIGH 590 MEDIUM 803 LOW 151
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • Linux
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
1501 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 4 127 172 17
1502 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 43 314 444 50
1503 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 91 270 270 46
1504 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 72 169 210 55
1505 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
1506 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
1507 Red Hat Enterprise Linux 3 3.0 0 33 44 17
1508 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
1501 7.8
7.2
HIGH
Local
The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from u… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2010-3904 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5.0:*
2026-04-22 02:29
2010-12-7
Show GitHub Exploit DB Packet Storm
1502 9.8
9.3
CRITICAL
Network
ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-f… CWE-416
 Use After Free
CVE-2010-2941 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5.0:*
2024-11-21 10:17
2010-11-6
Show GitHub Exploit DB Packet Storm
1503 8.8
6.8
HIGH
Network
Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as used in Google Chrome before 5.0.375.70, allows remote attackers to obtain sensi… CWE-193
 Off-by-one Error
CVE-2010-1773 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:15
2010-09-25
Show GitHub Exploit DB Packet Storm
1504 8.8
6.8
HIGH
Network
Use-after-free vulnerability in page/Geolocation.cpp in WebCore in WebKit before r59859, as used in Google Chrome before 5.0.375.70, allows remote attackers to execute arbitrary code or cause a denia… CWE-416
 Use After Free
CVE-2010-1772 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:15
2010-09-25
Show GitHub Exploit DB Packet Storm
1505 -
4.3
MEDIUM LibTIFF in Red Hat Enterprise Linux (RHEL) 3 on x86_64 platforms, as used in tiff2rgba, attempts to process image data even when the required compression functionality is not configured, which allows… CWE-20
 Improper Input Validation 
CVE-2010-2598 cpe:2.3:o:redhat:enterprise_linux:3:ga
cpe:2.3:o:redhat:enterprise_linux:3:ga
cpe:2.3:o:redhat:enterprise_linux:3…
2024-11-21 10:16
2010-07-2
Show GitHub Exploit DB Packet Storm
1506 -
2.6
LOW The MMIO instruction decoder in the Xen hypervisor in the Linux kernel 2.6.18 in Red Hat Enterprise Linux (RHEL) 5 allows guest OS users to cause a denial of service (32-bit guest OS crash) via vecto… CWE-20
 Improper Input Validation 
CVE-2010-0730 cpe:2.3:o:redhat:enterprise_linux:5:ga
cpe:2.3:o:redhat:enterprise_linux:5:ga
cpe:2.3:o:redhat:enterprise_linux:5…
2018-10-11 04:53
2010-05-12
Show GitHub Exploit DB Packet Storm
1507 -
4.9
MEDIUM The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX lo… CWE-399
 Resource Management Errors
CVE-2010-0727 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5.0:*
2020-08-8 00:13
2010-03-17
Show GitHub Exploit DB Packet Storm
1508 -
6.9
MEDIUM A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local users to use ptrace on an arbitrary process, and consequently gain privileges, via … CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-0729 cpe:2.3:o:redhat:enterprise_linux:4:* 2017-09-19 10:30
2010-03-17
Show GitHub Exploit DB Packet Storm
1509 7.5
4.3
HIGH
Network
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4, when kqueue or epol… CWE-416
 Use After Free
CVE-2010-0302 cpe:2.3:o:redhat:enterprise_linux:5.0:* 2024-02-3 11:22
2010-03-6
Show GitHub Exploit DB Packet Storm
1510 -
1.9
LOW A certain Red Hat configuration step for the qla2xxx driver in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when N_Port ID Virtualization (NPIV) hardware is used, sets world-writable… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-3556 cpe:2.3:o:redhat:enterprise_linux:5:* 2023-02-13 11:20
2010-01-28
Show GitHub Exploit DB Packet Storm