Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1680 CRITICAL 135 HIGH 590 MEDIUM 803 LOW 151
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • Linux
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
781 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 4 127 172 17
782 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 43 314 444 50
783 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 91 270 270 46
784 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 72 169 210 55
785 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
786 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
787 Red Hat Enterprise Linux 3 3.0 0 33 44 17
788 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
781 9.8
7.5
CRITICAL
Network
The plural form formula in ngettext family of calls in php-gettext before 1.0.12 allows remote attackers to execute arbitrary code. CWE-20
 Improper Input Validation 
CVE-2015-8980 cpe:2.3:o:redhat:enterprise_linux:5.0:* 2024-11-21 11:39
2019-11-5
Show GitHub Exploit DB Packet Storm
782 9.8
7.5
CRITICAL
Network
An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when parsing JSON requests. CWE-20
 Improper Input Validation 
CVE-2013-4409 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:55
2019-11-5
Show GitHub Exploit DB Packet Storm
783 7.8
4.6
HIGH
Local
The scipy.weave component in SciPy before 0.12.1 creates insecure temporary directories. CWE-269
 Improper Privilege Management
CVE-2013-4251 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:55
2019-11-5
Show GitHub Exploit DB Packet Storm
784 7.8
7.2
HIGH
Local
There is a possible tty hijacking in shadow 4.x before 4.1.5 and sudo 1.x before 1.7.4 via "su - user -c program". The user session can be escaped to the parent session by using the TIOCSTI ioctl to … CWE-20
 Improper Input Validation 
CVE-2005-4890 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5:*
cpe:2.3:o:redhat:enterprise_linux:4…
2024-11-21 09:05
2019-11-5
Show GitHub Exploit DB Packet Storm
785 8.1
4.9
HIGH
Network
php-symfony2-Validator has loss of information during serialization CWE-20
 Improper Input Validation 
CVE-2013-4751 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:56
2019-11-1
Show GitHub Exploit DB Packet Storm
786 5.5
4.3
MEDIUM
Local
evince is missing a check on number of pages which can lead to a segmentation fault CWE-20
 Improper Input Validation 
CVE-2013-3718 cpe:2.3:o:redhat:enterprise_linux:5.0:* 2024-11-21 10:54
2019-11-1
Show GitHub Exploit DB Packet Storm
787 7.5
5.0
HIGH
Network
An exploitable denial-of-service vulnerability exists in the X509 certificate parser of Python.org Python 2.7.11 / 3.6.6. A specially crafted X509 certificate can cause a NULL pointer dereference, re… CWE-476
 NULL Pointer Dereference
CVE-2019-5010 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:44
2019-11-1
Show GitHub Exploit DB Packet Storm
788 9.8
7.5
CRITICAL
Network
In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain configurations of FPM setup it is possible to cause FPM module to write past allocated buffers into the space … CWE-787
 Out-of-bounds Write
CVE-2019-11043 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:20
2019-10-29
Show GitHub Exploit DB Packet Storm
789 7.5
5.0
HIGH
Network
Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to process network traffic containing an invalid DSA public key. There are several attack scenarios, such as traffic from a client … CWE-436
 Interpretation Conflict
CVE-2019-17596 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:32
2019-10-25
Show GitHub Exploit DB Packet Storm
790 9.1
6.4
CRITICAL
Network
From Eclipse OpenJ9 0.15 to 0.16, access to diagnostic operations such as causing a GC or creating a diagnostic file are permitted without any privilege checks. CWE-269
 Improper Privilege Management
CVE-2019-17631 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:32
2019-10-18
Show GitHub Exploit DB Packet Storm