Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1680 CRITICAL 135 HIGH 590 MEDIUM 803 LOW 151
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • 商用ライセンス有り
  • Linux

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
501 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 4 127 172 17
502 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 43 314 444 50
503 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 91 270 270 46
504 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 72 169 210 55
505 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
506 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
507 Red Hat Enterprise Linux 3 3.0 0 33 44 17
508 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
501 3.8
2.1
LOW
Local
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the tftp_input() function and could occur while processing a udp packet that is sm… - CVE-2021-3595 cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 15:21
2021-06-16
Show GitHub Exploit DB Packet Storm
502 3.8
2.1
LOW
Local
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp_input() function and could occur while processing a udp packet that is sma… - CVE-2021-3594 cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 15:21
2021-06-16
Show GitHub Exploit DB Packet Storm
503 3.8
2.1
LOW
Local
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp6_input() function and could occur while processing a udp packet that is sm… CWE-824
 Access of Uninitialized Pointer
CVE-2021-3593 cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 15:21
2021-06-16
Show GitHub Exploit DB Packet Storm
504 3.8
2.1
LOW
Local
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the bootp_input() function and could occur while processing a udp packet that is s… CWE-824
 Access of Uninitialized Pointer
CVE-2021-3592 cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 15:21
2021-06-16
Show GitHub Exploit DB Packet Storm
505 5.7
2.7
MEDIUM
Adjacent
Improper access control in BlueZ may allow an authenticated user to potentially enable information disclosure via adjacent access. NVD-CWE-Other
CVE-2021-0129 cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*
2024-11-21 14:42
2021-06-10
Show GitHub Exploit DB Packet Storm
506 5.9
4.3
MEDIUM
Network
A flaw was found in tpm2-tools in versions before 5.1.1 and before 4.3.2. tpm2_import used a fixed AES key for the inner wrapper, potentially allowing a MITM attacker to unwrap the inner portion and … CWE-798
 Use of Hard-coded Credentials
CVE-2021-3565 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 15:21
2021-06-4
Show GitHub Exploit DB Packet Storm
507 5.5
2.1
MEDIUM
Local
A stack corruption bug was found in libtpms in versions before 0.7.2 and before 0.8.0 while decrypting data using RSA. This flaw could result in a SIGBUS (bad memory access) and termination of swtpm.… CWE-787
 Out-of-bounds Write
CVE-2021-3569 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 15:21
2021-06-3
Show GitHub Exploit DB Packet Storm
508 6.5
2.1
MEDIUM
Local
The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NULL dereference) when the command header 'ad->cur_cmd' is null. CWE-476
 NULL Pointer Dereference
CVE-2019-12067 cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 13:22
2021-06-3
Show GitHub Exploit DB Packet Storm
509 6.0
3.6
MEDIUM
Local
A flaw was found in the Linux kernel. An index buffer overflow during Direct IO write leading to the NFS client to crash. In some cases, a reach out of the index after one memory allocation by kmallo… CWE-787
 Out-of-bounds Write
CVE-2020-10742 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 13:55
2021-06-2
Show GitHub Exploit DB Packet Storm
510 6.7
7.2
MEDIUM
Local
A flaw null pointer dereference in the Nitro Enclaves kernel driver was found in the way that Enclaves VMs forces closures on the enclave file descriptor. A local user of a host machine could use thi… CWE-476
CWE-416
 NULL Pointer Dereference
 Use After Free
CVE-2021-3543 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 15:21
2021-06-1
Show GitHub Exploit DB Packet Storm