Redhat Enterprise Linux vulnerabilities
1,853 known vulnerabilities affecting redhat/enterprise_linux.
Total CVEs
1,853
CISA KEV
23
actively exploited
Public exploits
96
Exploited in wild
44
Severity breakdown
CRITICAL167HIGH638MEDIUM890LOW158
Vulnerabilities
Page 35 of 93
CVE-2021-3497P3HIGHCVSS 7.8v7.0v8.02021-04-19
CVE-2021-3497 [HIGH] CWE-416 CVE-2021-3497: GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain
GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files.
nvd
CVE-2019-14816P3HIGHCVSS 7.8v5.0v6.0+4 more2019-09-20
CVE-2019-14816 [HIGH] CWE-122 CVE-2019-14816: There is heap-based buffer overflow in kernel, all versions up to, excluding 5.3, in the marvell wif
There is heap-based buffer overflow in kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows local users to cause a denial of service(system crash) or possibly execute arbitrary code.
nvd
CVE-2019-14814P3HIGHCVSS 7.8v5.0v6.0+2 more2019-09-20
CVE-2019-14814 [HIGH] CWE-122 CVE-2019-14814: There is heap-based buffer overflow in Linux kernel, all versions up to, excluding 5.3, in the marve
There is heap-based buffer overflow in Linux kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows local users to cause a denial of service(system crash) or possibly execute arbitrary code.
nvd
CVE-2018-10879P3HIGHCVSS 7.8v7.02018-07-26
CVE-2018-10879 [HIGH] CWE-416 CVE-2018-10879: A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause a use-after-free in e
A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause a use-after-free in ext4_xattr_set_entry function and a denial of service or unspecified other impact may occur by renaming a file in a crafted ext4 filesystem image.
nvd
CVE-2015-0294P3HIGHCVSS 7.5v5.0v7.02020-01-27
CVE-2015-0294 [HIGH] CWE-295 CVE-2015-0294: GnuTLS before 3.3.13 does not validate that the signature algorithms match when importing a certific
GnuTLS before 3.3.13 does not validate that the signature algorithms match when importing a certificate.
nvd
CVE-2024-7006P3HIGHCVSS 7.5v8.0v9.02024-08-12
CVE-2024-7006 [HIGH] CWE-476 CVE-2024-7006: A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an at
A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.
nvd
CVE-2019-8912P3HIGHCVSS 7.8v7.02019-02-18
CVE-2019-8912 [HIGH] CWE-416 CVE-2019-8912: In the Linux kernel through 4.20.11, af_alg_release() in crypto/af_alg.c neglects to set a NULL valu
In the Linux kernel through 4.20.11, af_alg_release() in crypto/af_alg.c neglects to set a NULL value for a certain structure member, which leads to a use-after-free in sockfs_setattr.
nvd
CVE-2023-2603P3HIGHCVSS 7.8v8.0v9.02023-06-06
CVE-2023-2603 [HIGH] CWE-190 CVE-2023-2603: A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead
A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB.
nvd
CVE-2019-14815P3HIGHCVSS 7.8v5v6.0+2 more2019-11-25
CVE-2019-14815 [HIGH] CWE-122 CVE-2019-14815: A vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params
A vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params() function of Marvell Wifi Driver.
nvd
CVE-2011-1145P3HIGHCVSS 7.8v4.0v5.0+1 more2019-11-14
CVE-2011-1145 [HIGH] CWE-120 CVE-2011-1145: The SQLDriverConnect() function in unixODBC before 2.2.14p2 have a possible buffer overflow conditio
The SQLDriverConnect() function in unixODBC before 2.2.14p2 have a possible buffer overflow condition when specifying a large value for SAVEFILE parameter in the connection string.
nvd
CVE-2017-15104P3HIGHCVSS 7.8v7.02017-12-18
CVE-2017-15104 [HIGH] CWE-552 CVE-2017-15104: An access flaw was found in Heketi 5, where the heketi.json configuration file was world readable. A
An access flaw was found in Heketi 5, where the heketi.json configuration file was world readable. An attacker having local access to the Heketi server could read plain-text passwords from the heketi.json file.
nvd
CVE-2010-4661P3HIGHCVSS 7.8v6.02019-11-13
CVE-2010-4661 [HIGH] CWE-434 CVE-2010-4661: udisks before 1.0.3 allows a local user to load arbitrary Linux kernel modules.
udisks before 1.0.3 allows a local user to load arbitrary Linux kernel modules.
nvd
CVE-2021-23177P3HIGHCVSS 7.8v8.02022-08-23
CVE-2021-23177 [HIGH] CWE-59 CVE-2021-23177: An improper link resolution flaw while extracting an archive can lead to changing the access control
An improper link resolution flaw while extracting an archive can lead to changing the access control list (ACL) of the target of the link. An attacker may provide a malicious archive to a victim user, who would trigger this flaw when trying to extract the archive. A local attacker may use this flaw to change the ACL of a file on the system and gain mor
nvd
CVE-2023-34318P3HIGHCVSS 7.8v6.0v7.02023-07-10
CVE-2023-34318 [HIGH] CWE-122 CVE-2023-34318: A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:1
A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:160:41. This flaw can lead to a denial of service, code execution, or information disclosure.
nvd
CVE-2026-41082P3HIGHCVSS 7.8v10.02026-04-16
CVE-2026-41082 [HIGH] CWE-24 CVE-2026-41082: In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach
In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.
nvd
CVE-2026-53009P3HIGHCVSS 7.8v7.0v8.0+2 more2026-06-24
CVE-2026-53009 [HIGH] CWE-415 CVE-2026-53009: In the Linux kernel, the following vulnerability has been resolved: ice: fix double-free of tx_buf
In the Linux kernel, the following vulnerability has been resolved:
ice: fix double-free of tx_buf skb
If ice_tso() or ice_tx_csum() fail, the error path in
ice_xmit_frame_ring() frees the skb, but the 'first' tx_buf still points
to it and is marked as valid (ICE_TX_BUF_SKB).
'next_to_use' remains unchanged, so the potential problem will
likely fix it
nvd
CVE-2026-53153P3HIGHCVSS 7.8v10.02026-06-25
CVE-2026-53153 [HIGH] CWE-820 CVE-2026-53153: In the Linux kernel, the following vulnerability has been resolved: mm/list_lru: drain before clear
In the Linux kernel, the following vulnerability has been resolved:
mm/list_lru: drain before clearing xarray entry on reparent
memcg_reparent_list_lrus() clears the dying memcg's xarray entry with
xas_store(&xas, NULL) before reparenting its per-node lists into the
parent. This opens a window where a concurrent list_lru_del() arriving
for the dying
nvd
CVE-2026-53145P3HIGHCVSS 7.8v7.0v8.0+2 more2026-06-25
CVE-2026-53145 [HIGH] CWE-367 CVE-2026-53145: In the Linux kernel, the following vulnerability has been resolved: drm/gem: Try to fix change_hand
In the Linux kernel, the following vulnerability has been resolved:
drm/gem: Try to fix change_handle ioctl, attempt 4
[airlied: just added some comments on how to reenable]
On-list because the cat is out of the bag and we're clearly not good
enough to figure this out in private. The story thus far:
5e28b7b94408 ("drm: Set old handle to NULL before
nvd
CVE-2024-6239P3HIGHCVSS 7.5v7.0v8.0+1 more2024-06-21
CVE-2024-6239 [HIGH] CWE-20 CVE-2024-6239: A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter wit
A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter with pdfinfo utility. By using certain malformed input files, an attacker could cause the utility to crash, leading to a denial of service.
nvd
CVE-2021-3752P3HIGHCVSS 7.1v7.0v8.02022-02-16
CVE-2021-3752 [HIGH] CWE-416 CVE-2021-3752: A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls conn
A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously due to a race condition. This flaw allows a user to crash the system or escalate their privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
nvd