Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1680 CRITICAL 135 HIGH 590 MEDIUM 803 LOW 151
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • Linux
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
1641 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 4 127 172 17
1642 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 43 314 444 50
1643 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 91 270 270 46
1644 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 72 169 210 55
1645 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
1646 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
1647 Red Hat Enterprise Linux 3 3.0 0 33 44 17
1648 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
1641 -
7.5
HIGH Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file. NVD-CWE-Other
CVE-2004-0817 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2017-10-11 10:29
2004-12-31
Show GitHub Exploit DB Packet Storm
1642 -
10.0
HIGH Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to execute arbitrary code via wide… NVD-CWE-Other
CVE-2004-0904 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2017-10-11 10:29
2004-12-31
Show GitHub Exploit DB Packet Storm
1643 -
4.6
MEDIUM Certain USB drivers in the Linux 2.4 kernel use the copy_to_user function on uninitialized structures, which could allow local users to obtain sensitive information by reading memory that was not cle… NVD-CWE-Other
CVE-2004-0685 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2017-10-11 10:29
2004-12-23
Show GitHub Exploit DB Packet Storm
1644 -
7.5
HIGH Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code v… NVD-CWE-Other
CVE-2004-0803 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2017-10-11 10:29
2004-12-23
Show GitHub Exploit DB Packet Storm
1645 -
5.0
MEDIUM Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java classes via JavaScript and (2) do not properly restrict access to certain Java classes from the Java… NVD-CWE-Other
CVE-2004-1145 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2017-10-11 10:29
2004-12-15
Show GitHub Exploit DB Packet Storm
1646 -
5.0
MEDIUM Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 through 0.10.7 allows remote attackers to cause a denial of service (application crash). NVD-CWE-Other
CVE-2004-1139 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-02-14 10:17
2004-12-15
Show GitHub Exploit DB Packet Storm
1647 -
5.0
MEDIUM Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed SMB packet. NVD-CWE-Other
CVE-2004-1142 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-02-14 10:17
2004-12-15
Show GitHub Exploit DB Packet Storm
1648 -
2.1
LOW Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported files in kernel 2.4. NVD-CWE-Other
CVE-2004-0497 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2017-10-11 10:29
2004-12-6
Show GitHub Exploit DB Packet Storm
1649 -
10.0
HIGH The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attackers to bypass authentication. NVD-CWE-Other
CVE-2004-0607 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2017-10-11 10:29
2004-12-6
Show GitHub Exploit DB Packet Storm
1650 -
5.0
MEDIUM The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abort) via an integer overflow. NVD-CWE-Other
CVE-2004-0633 cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux:3.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-02-14 10:17
2004-12-6
Show GitHub Exploit DB Packet Storm