Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1707 CRITICAL 141 HIGH 599 MEDIUM 814 LOW 152
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • Linux
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
1501 Red Hat Enterprise Linux 10.2 10.2 May 19, 2026 May 20, 2025 8 20 16 3
1502 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 10 136 183 18
1503 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 49 323 454 51
1504 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 97 279 280 47
1505 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 77 172 212 56
1506 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
1507 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
1508 Red Hat Enterprise Linux 3 3.0 0 33 44 17
1509 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
1501 -
1.2
LOW The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2313 cpe:2.3:o:redhat:enterprise_linux:5:* 2024-11-21 10:38
2012-06-13
Show GitHub Exploit DB Packet Storm
1502 6.5
6.1
MEDIUM
Adjacent
The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) … CWE-20
 Improper Input Validation 
CVE-2011-3363 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:30
2012-05-25
Show GitHub Exploit DB Packet Storm
1503 8.8
8.3
HIGH
Adjacent
Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denial of service (memory corruption) or possibly have … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-3191 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:29
2012-05-25
Show GitHub Exploit DB Packet Storm
1504 9.1
6.4
CRITICAL
Network
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote… NVD-CWE-Other
CVE-2011-3188 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:29
2012-05-25
Show GitHub Exploit DB Packet Storm
1505 7.5
7.8
HIGH
Network
The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for each destination, which makes it easier for remote attackers to cause a denial o… NVD-CWE-Other
CVE-2011-2699 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:28
2012-05-25
Show GitHub Exploit DB Packet Storm
1506 -
7.2
HIGH Multiple buffer overflows in net/wireless/nl80211.c in the Linux kernel before 2.6.39.2 allow local users to gain privileges by leveraging the CAP_NET_ADMIN capability during scan operations with a l… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-2517 cpe:2.3:o:redhat:enterprise_linux:5.0:* 2024-11-21 10:28
2012-05-25
Show GitHub Exploit DB Packet Storm
1507 7.8
7.2
HIGH
Local
The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and .set methods, which allows local users to cause a denial of service (NULL poin… CWE-476
 NULL Pointer Dereference
CVE-2012-1097 cpe:2.3:o:redhat:enterprise_linux:4.0:* 2024-11-21 10:36
2012-05-17
Show GitHub Exploit DB Packet Storm
1508 5.5
4.9
MEDIUM
Local
Integer overflow in the oom_badness function in mm/oom_kill.c in the Linux kernel before 3.1.8 on 64-bit platforms allows local users to cause a denial of service (memory consumption or process termi… CWE-190
 Integer Overflow or Wraparound
CVE-2011-4097 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:31
2012-05-17
Show GitHub Exploit DB Packet Storm
1509 5.5
4.9
MEDIUM
Local
The m_stop function in fs/proc/task_mmu.c in the Linux kernel before 2.6.39 allows local users to cause a denial of service (OOPS) via vectors that trigger an m_start error. CWE-476
 NULL Pointer Dereference
CVE-2011-3637 cpe:2.3:o:redhat:enterprise_linux:6.0:* 2024-11-21 10:30
2012-05-17
Show GitHub Exploit DB Packet Storm
1510 -
4.3
MEDIUM wiretap/iptrace.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a long packet in an AIX iptrace file. CWE-20
 Improper Input Validation 
CVE-2012-0067 cpe:2.3:o:redhat:enterprise_linux:5:* 2024-11-21 10:34
2012-04-11
Show GitHub Exploit DB Packet Storm