Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1681 CRITICAL 136 HIGH 590 MEDIUM 803 LOW 151
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • 商用ライセンス有り
  • Linux

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
921 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 5 127 172 17
922 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 44 314 444 50
923 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 92 270 270 46
924 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 73 169 210 55
925 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
926 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
927 Red Hat Enterprise Linux 3 3.0 0 33 44 17
928 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
921 6.5
4.3
MEDIUM
Network
Lack of correct bounds checking in Skia in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. CWE-125
Out-of-bounds Read
CVE-2019-5798 cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 13:45
2019-05-24
Show GitHub Exploit DB Packet Storm
922 7.8
6.8
HIGH
Local
It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript file could use this flaw in order to, fo… NVD-CWE-noinfo
CVE-2019-3839 cpe:2.3:o:redhat:enterprise_linux:6.0:*
cpe:2.3:o:redhat:enterprise_linux:5.0:*
2024-11-21 13:42
2019-05-17
Show GitHub Exploit DB Packet Storm
923 7.5
5.0
HIGH
Network
A denial of service vulnerability exists when .NET Framework and .NET Core improperly process RegEx strings, aka '.NET Framework and .NET Core Denial of Service Vulnerability'. This CVE ID is unique … CWE-400
 Uncontrolled Resource Consumption
CVE-2019-0820 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:17
2019-05-17
Show GitHub Exploit DB Packet Storm
924 5.5
2.1
MEDIUM
Local
fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block, which might allow local users to obtain sensitive information by reading unini… CWE-908
 Use of Uninitialized Resource
CVE-2019-11833 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:21
2019-05-15
Show GitHub Exploit DB Packet Storm
925 3.3
2.1
LOW
Local
The do_hidp_sock_ioctl function in net/bluetooth/hidp/sock.c in the Linux kernel before 5.0.15 allows a local user to obtain potentially sensitive information from kernel stack memory via a HIDPCONNA… NVD-CWE-noinfo
CVE-2019-11884 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:21
2019-05-11
Show GitHub Exploit DB Packet Storm
926 7.0
6.9
HIGH
Local
An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read access to /proc/ioports after the ipmi_si module is removed, related to drivers/char/ipmi/ipmi_… CWE-416
 Use After Free
CVE-2019-11811 cpe:2.3:o:redhat:enterprise_linux:7.0:* 2024-11-21 13:21
2019-05-7
Show GitHub Exploit DB Packet Storm
927 7.1
3.6
HIGH
Local
An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c. A local attacker may use this flaw to read beyond the end… CWE-193
 Off-by-one Error
CVE-2019-10131 cpe:2.3:o:redhat:enterprise_linux:7.0:* 2024-11-21 13:18
2019-05-1
Show GitHub Exploit DB Packet Storm
928 8.8
6.8
HIGH
Network
Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. This vulnerability affects Firefox < 66.0.1, Firefox ESR… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-9810 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:52
2019-04-27
Show GitHub Exploit DB Packet Storm
929 9.8
7.5
CRITICAL
Network
The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value can then be used by JavaScript to achieve memory c… CWE-787
 Out-of-bounds Write
CVE-2019-9792 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:52
2019-04-27
Show GitHub Exploit DB Packet Storm
930 9.8
7.5
CRITICAL
Network
The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just-in-time (JIT) compiler and when the con… CWE-843
Type Confusion
CVE-2019-9791 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:52
2019-04-27
Show GitHub Exploit DB Packet Storm