Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1707 CRITICAL 141 HIGH 599 MEDIUM 814 LOW 152
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • Linux
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
301 Red Hat Enterprise Linux 10.2 10.2 May 19, 2026 May 20, 2025 8 20 16 3
302 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 10 136 183 18
303 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 49 323 454 51
304 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 97 279 280 47
305 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 77 172 212 56
306 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
307 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
308 Red Hat Enterprise Linux 3 3.0 0 33 44 17
309 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
301 7.8
-
HIGH
Local
A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Es… CWE-190
 Integer Overflow or Wraparound
CVE-2023-0179 cpe:2.3:o:redhat:enterprise_linux:9.0:* 2024-11-21 16:36
2023-03-28
Show GitHub Exploit DB Packet Storm
302 7.8
-
HIGH
Local
A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write … CWE-416
 Use After Free
CVE-2023-0494 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.1:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 16:37
2023-03-28
Show GitHub Exploit DB Packet Storm
303 7.1
-
HIGH
Local
A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. This issue could occur when assoc_info->req_len d… CWE-125
Out-of-bounds Read
CVE-2023-1380 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 16:39
2023-03-28
Show GitHub Exploit DB Packet Storm
304 6.6
-
MEDIUM
Physics
A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device. This flaw allows a local user to crash or potentially esc… CWE-787
 Out-of-bounds Write
CVE-2023-1073 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 16:38
2023-03-28
Show GitHub Exploit DB Packet Storm
305 6.8
-
MEDIUM
Network
A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal file in a volume with a symlink while exporting the volume, allowing for acces… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2023-0778 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 16:37
2023-03-28
Show GitHub Exploit DB Packet Storm
306 2.3
-
LOW
Local
A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local account can leak kernel stack information when issuing commands to the /dev/infiniba… NVD-CWE-noinfo
CVE-2021-3923 cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 15:22
2023-03-28
Show GitHub Exploit DB Packet Storm
307 3.3
-
LOW
Local
A flaw was found in KVM. When calling the KVM_GET_DEBUGREGS ioctl, on 32-bit systems, there might be some uninitialized portions of the kvm_debugregs structure that could be copied to userspace, caus… CWE-665
 Improper Initialization
CVE-2023-1513 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 16:39
2023-03-24
Show GitHub Exploit DB Packet Storm
308 5.5
-
MEDIUM
Local
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file … CWE-20
 Improper Input Validation 
CVE-2023-1289 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 16:38
2023-03-24
Show GitHub Exploit DB Packet Storm
309 8.6
-
HIGH
Network
A flaw was found in the c-ares package. The ares_set_sortlist is missing checks about the validity of the input string, which allows a possible arbitrary length stack overflow. This issue may cause a… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2022-4904 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 16:36
2023-03-7
Show GitHub Exploit DB Packet Storm
310 8.8
-
HIGH
Network
A vulnerability was found in WebKit. The flaw is triggered when processing maliciously crafted web content that may lead to arbitrary code execution. Improved memory handling addresses the multiple m… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-8720 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 13:50
2023-03-7
Show GitHub Exploit DB Packet Storm