Redhat Enterprise Linux vulnerabilities
1,853 known vulnerabilities affecting redhat/enterprise_linux.
Total CVEs
1,853
CISA KEV
23
actively exploited
Public exploits
96
Exploited in wild
44
Severity breakdown
CRITICAL167HIGH638MEDIUM890LOW158
Vulnerabilities
Page 53 of 93
CVE-2019-2778P4MEDIUMCVSS 5.4v8.02019-07-23
CVE-2019-2778 [MEDIUM] CVE-2019-2778: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privile
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2013-4282P4MEDIUMCVSS 5.0v5v6.02013-11-02
CVE-2013-4282 [MEDIUM] CWE-119 CVE-2013-4282: Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0 allo
Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0 allows remote attackers to cause a denial of service (crash) via a long password in a SPICE ticket.
nvd
CVE-2024-49393P4MEDIUMCVSS 5.9v8.0v9.02024-11-12
CVE-2024-49393 [MEDIUM] CWE-347 CVE-2024-49393: In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which al
In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of the recipients to compromise message confidentiality.
nvd
CVE-2005-1760P4HIGHCVSS 7.5v2.1v3.0+1 more2005-06-13
CVE-2005-1760 [HIGH] CVE-2005-1760: sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the pass
sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the password for a proxy server in plaintext and allows local users to gain privileges.
nvd
CVE-2023-51765P4MEDIUMCVSS 5.3v8.0v9.02023-12-24
CVE-2023-51765 [MEDIUM] CWE-345 CVE-2023-51765: sendmail through 8.17.2 allows SMTP smuggling in certain configurations. Remote attackers can use a
sendmail through 8.17.2 allows SMTP smuggling in certain configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because sendmail supports . but some other popular e-mail servers do not. This is resolved in 8.18
nvd
CVE-2023-5366P4MEDIUMCVSS 5.5v7.02023-10-06
CVE-2023-5366 [MEDIUM] CWE-345 CVE-2023-5366: A flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertisement packets between virtual m
A flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertisement packets between virtual machines to bypass OpenFlow rules. This issue may allow a local attacker to create specially crafted packets with a modified or spoofed target IP address field that can redirect ICMPv6 traffic to arbitrary IP addresses.
nvd
CVE-2022-0852P4MEDIUMCVSS 5.5v6.0v7.0+1 more2022-08-29
CVE-2022-0852 [MEDIUM] CWE-359 CVE-2022-0852: There is a flaw in convert2rhel. convert2rhel passes the Red Hat account password to subscription-ma
There is a flaw in convert2rhel. convert2rhel passes the Red Hat account password to subscription-manager via the command line, which could allow unauthorized users locally on the machine to view the password via the process command line via e.g. htop or ps. The specific impact varies upon the privileges of the Red Hat account in question, but it coul
nvd
CVE-2011-2525P4HIGHCVSS 7.8v4.02012-02-02
CVE-2011-2525 [HIGH] CWE-476 CVE-2011-2525: The qdisc_notify function in net/sched/sch_api.c in the Linux kernel before 2.6.35 does not prevent
The qdisc_notify function in net/sched/sch_api.c in the Linux kernel before 2.6.35 does not prevent tc_fill_qdisc function calls referencing builtin (aka CQ_F_BUILTIN) Qdisc structures, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via a crafted call.
nvd
CVE-2012-1097P4HIGHCVSS 7.8v4.02012-05-17
CVE-2012-1097 [HIGH] CWE-476 CVE-2012-1097: The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the
The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and .set methods, which allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a (1) PTRACE_GETREGSET or (2) PTRACE_SETREGSET ptrace call.
nvd
CVE-2026-12969P4MEDIUMCVSS 5.3v10.02026-06-23
CVE-2026-12969 [MEDIUM] CWE-125 CVE-2026-12969: An out-of-bounds read vulnerability exists in dnsmasq's find_soa() function in src/rfc1035.c. When p
An out-of-bounds read vulnerability exists in dnsmasq's find_soa() function in src/rfc1035.c. When parsing NS section records, extract_name() is called with extrabytes=0, failing to validate that 10 additional bytes exist for fixed-length DNS record fields. A remote attacker controlling a DNS zone can exploit this via a crafted NXDOMAIN response to
nvd
CVE-2019-11135P4MEDIUMCVSS 6.5v8.02019-11-14
CVE-2019-11135 [MEDIUM] CWE-385 CVE-2019-11135: TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authentic
TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.
nvd
CVE-2019-10131P4HIGHCVSS 7.1v7.02019-04-30
CVE-2019-10131 [HIGH] CWE-193 CVE-2019-10131: An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the format
An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c. A local attacker may use this flaw to read beyond the end of the buffer or to crash the program.
nvd
CVE-2018-10877P4MEDIUMCVSS 6.5v7.02018-07-18
CVE-2018-10877 [MEDIUM] CWE-125 CVE-2018-10877: Linux kernel ext4 filesystem is vulnerable to an out-of-bound access in the ext4_ext_drop_refs() fun
Linux kernel ext4 filesystem is vulnerable to an out-of-bound access in the ext4_ext_drop_refs() function when operating on a crafted ext4 filesystem image.
nvd
CVE-2011-3632P4HIGHCVSS 7.1v5.0v6.02019-11-26
CVE-2011-3632 [HIGH] CWE-59 CVE-2011-3632: Hardlink before 0.1.2 operates on full file system objects path names which can allow a local attack
Hardlink before 0.1.2 operates on full file system objects path names which can allow a local attacker to use this flaw to conduct symlink attacks.
nvd
CVE-2019-3459P4MEDIUMCVSS 6.5v5.0v6.0+2 more2019-04-11
CVE-2019-3459 [MEDIUM] CWE-125 CVE-2019-3459: A heap address information leak while using L2CAP_GET_CONF_OPT was discovered in the Linux kernel be
A heap address information leak while using L2CAP_GET_CONF_OPT was discovered in the Linux kernel before 5.1-rc1.
nvd
CVE-2014-8080P4MEDIUMCVSS 5.0v6.0v7.02014-11-03
CVE-2014-8080 [MEDIUM] CVE-2014-8080: The REXML parser in Ruby 1.9.x before 1.9.3-p550, 2.0.x before 2.0.0-p594, and 2.1.x before 2.1.4 al
The REXML parser in Ruby 1.9.x before 1.9.3-p550, 2.0.x before 2.0.0-p594, and 2.1.x before 2.1.4 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document, aka an XML Entity Expansion (XEE) attack.
nvd
CVE-2020-2732P4MEDIUMCVSS 6.8v7.0v8.02020-04-08
CVE-2020-2732 [MEDIUM] CWE-200 CVE-2020-2732: A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 gue
A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.
nvd
CVE-2023-1729P4MEDIUMCVSS 6.5v7.0v8.0+1 more2023-05-15
CVE-2023-1729 [MEDIUM] CWE-119 CVE-2023-1729: A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted
A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.
nvd
CVE-2019-3877P4MEDIUMCVSS 6.1v7.02019-03-27
CVE-2019-3877 [MEDIUM] CWE-601 CVE-2019-3877: A vulnerability was found in mod_auth_mellon before v0.14.2. An open redirect in the logout URL allo
A vulnerability was found in mod_auth_mellon before v0.14.2. An open redirect in the logout URL allows requests with backslashes to pass through by assuming that it is a relative URL, while the browsers silently convert backslash characters into forward slashes treating them as an absolute URL. This mismatch allows an attacker to bypass the redirect U
nvd
CVE-2023-40745P4MEDIUMCVSS 6.5v8.0v9.02023-10-05
CVE-2023-40745 [MEDIUM] CWE-190 CVE-2023-40745: LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of
LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application crash) or possibly execute an arbitrary code via a crafted tiff image, which triggers a heap-based buffer overflow.
nvd