Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Red Hat Enterprise Linux Number Of NVD 1707 CRITICAL 141 HIGH 599 MEDIUM 814 LOW 152
URL https://www.redhat.com/technologies/linux-platforms/enterprise-linux
Explanation Full support is 5.5 years from release.
Maintenance support (security updates only) is for 3.5 years.
After that, extended support is available for a fee.
Tag
  • Linux
  • 商用ライセンス有り

Add Information URL
No Type Name URL
1 https://access.redhat.com/ja/articles/16476
2 https://access.redhat.com/support/policy/updates/errata
3 https://access.redhat.com/articles/3078
4 https://access.redhat.com/security
5 https://access.redhat.com/errata/#/?q=&p=1&sort=portal_publication_date%20desc&rows=10&portal_advisory_type=Security%20Advisory

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
321 Red Hat Enterprise Linux 10.2 10.2 May 19, 2026 May 20, 2025 8 20 16 3
322 Red Hat Enterprise Linux 9 9.7 Nov. 11, 2025 May 17, 2022 10 136 183 18
323 Red Hat Enterprise Linux 8 8.10 May 22, 2024 May 7, 2019 May 30, 2029 49 323 454 51
324 Red Hat Enterprise Linux 7 7.9 Sept. 29, 2020 Dec. 11, 2013 Aug. 6, 2020 June 30, 2024 97 279 280 47
325 Red Hat Enterprise Linux 6 6.10 June 19, 2018 Nov. 9, 2010 May 10, 2022 Nov. 30, 2020 June 30, 2024 77 172 212 56
326 Red Hat Enterprise Linux 5 5.11 Sept. 16, 2014 March 15, 2007 March 31, 2017 Nov. 30, 2020 24 59 89 40
327 Red Hat Enterprise Linux 4 4.5 Feb. 29, 2012 March 31, 2017 5 30 29 16
328 Red Hat Enterprise Linux 3 3.0 0 33 44 17
329 Red Hat Enterprise Linux 2 2.1 Update 7 April 28, 2005 0 32 37 6
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
321 7.8
-
HIGH
Local
A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue may lead to memory problems. CWE-787
 Out-of-bounds Write
CVE-2022-3715 cpe:2.3:o:redhat:enterprise_linux:9.0:* 2024-11-21 16:20
2023-01-6
Show GitHub Exploit DB Packet Storm
322 7.1
-
HIGH
Local
When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bitmap size. As consequence an attacker can craft an… - CVE-2022-3775 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 16:20
2022-12-20
Show GitHub Exploit DB Packet Storm
323 7.8
-
HIGH
Local
A vulnerability was found in X.Org. This security flaw occurs because the XkbCopyNames function left a dangling pointer to freed memory, resulting in out-of-bounds memory access on subsequent XkbGetK… CWE-416
 Use After Free
CVE-2022-4283 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 16:34
2022-12-15
Show GitHub Exploit DB Packet Storm
324 6.5
-
MEDIUM
Local
An out-of-bounds read flaw was found in the QXL display device emulation in QEMU. The qxl_phys2virt() function does not check the size of the structure pointed to by the guest physical address, poten… - CVE-2022-4144 cpe:2.3:o:redhat:enterprise_linux:8.0:* 2024-11-21 16:34
2022-11-30
Show GitHub Exploit DB Packet Storm
325 5.1
-
MEDIUM
Local
A vulnerability was found in keylime. This security issue happens in some circumstances, due to some improperly handled exceptions, there exists the possibility that a rogue agent could create errors… - CVE-2022-3500 cpe:2.3:o:redhat:enterprise_linux:9.0:* 2024-11-21 16:19
2022-11-23
Show GitHub Exploit DB Packet Storm
326 5.5
-
MEDIUM
Local
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format… - CVE-2022-3821 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 16:20
2022-11-9
Show GitHub Exploit DB Packet Storm
327 7.5
-
HIGH
Network
A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2022-2963 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
2024-11-21 16:01
2022-10-15
Show GitHub Exploit DB Packet Storm
328 6.5
-
MEDIUM
Network
A flaw was found In 389-ds-base. When the Content Synchronization plugin is enabled, an authenticated user can reach a NULL pointer dereference using a specially crafted query. This flaw allows an au… CWE-476
 NULL Pointer Dereference
CVE-2022-2850 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 16:01
2022-10-15
Show GitHub Exploit DB Packet Storm
329 7.1
-
HIGH
Local
An incorrect handling of the supplementary groups in the Buildah container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to … - CVE-2022-2990 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 16:02
2022-09-13
Show GitHub Exploit DB Packet Storm
330 7.1
-
HIGH
Local
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to t… - CVE-2022-2989 cpe:2.3:o:redhat:enterprise_linux:9.0:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*
cpe:2.3:o:redhat:enterprise_linux…
2024-11-21 16:02
2022-09-13
Show GitHub Exploit DB Packet Storm