Redhat Enterprise Linux vulnerabilities
1,853 known vulnerabilities affecting redhat/enterprise_linux.
Total CVEs
1,853
CISA KEV
23
actively exploited
Public exploits
96
Exploited in wild
44
Severity breakdown
CRITICAL167HIGH638MEDIUM890LOW158
Vulnerabilities
Page 57 of 93
CVE-2023-39193P4MEDIUMCVSS 6.0v8.0v9.02023-10-09
CVE-2023-39193 [MEDIUM] CWE-125 CVE-2023-39193: A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate
A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an out-of-bounds read, leading to a crash or information disclosure.
nvd
CVE-2023-39189P4MEDIUMCVSS 6.0v8.0v9.02023-10-09
CVE-2023-39189 [MEDIUM] CWE-125 CVE-2023-39189: A flaw was found in the Netfilter subsystem in the Linux kernel. The nfnl_osf_add_callback function
A flaw was found in the Netfilter subsystem in the Linux kernel. The nfnl_osf_add_callback function did not validate the user mode controlled opt_num field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an out-of-bounds read, leading to a crash or information disclosure.
nvd
CVE-2021-42779P4MEDIUMCVSS 5.3v7.0v8.02022-04-18
CVE-2021-42779 [MEDIUM] CWE-416 CVE-2021-42779: A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.
A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.
nvd
CVE-2023-6918P4MEDIUMCVSS 5.3v8.0v9.02023-12-19
CVE-2023-6918 [MEDIUM] CWE-252 CVE-2023-6918: A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemen
A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case,
nvd
CVE-2022-0487P4MEDIUMCVSS 5.5v8.02022-02-04
CVE-2022-0487 [MEDIUM] CWE-416 CVE-2022-0487: A use-after-free vulnerability was found in rtsx_usb_ms_drv_remove in drivers/memstick/host/rtsx_usb
A use-after-free vulnerability was found in rtsx_usb_ms_drv_remove in drivers/memstick/host/rtsx_usb_ms.c in memstick in the Linux kernel. In this flaw, a local attacker with a user privilege may impact system Confidentiality. This flaw affects kernel versions prior to 5.14 rc1.
nvd
CVE-2023-5871P4MEDIUMCVSS 5.3v9.02023-11-27
CVE-2023-5871 [MEDIUM] CWE-617 CVE-2023-5871: A flaw was found in libnbd, due to a malicious Network Block Device (NBD), a protocol for accessing
A flaw was found in libnbd, due to a malicious Network Block Device (NBD), a protocol for accessing Block Devices such as hard disks over a Network. This issue may allow a malicious NBD server to cause a Denial of Service.
nvd
CVE-2025-46398P4MEDIUMCVSS 5.5v6.0v7.0+1 more2025-04-23
CVE-2025-46398 [MEDIUM] CWE-121 CVE-2025-46398: In xfig diagramming tool, a stack-overflow while running fig2dev allows memory corruption via local
In xfig diagramming tool, a stack-overflow while running fig2dev allows memory corruption via local input manipulation via read_objects function.
nvd
CVE-2026-11819P4MEDIUMCVSS 5.5v10.02026-06-23
CVE-2026-11819 [MEDIUM] CWE-532 CVE-2026-11819: Module: plugins/modules/keyring_info.py CVSS 3.1: 5.5 MEDIUM — AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Module: plugins/modules/keyring_info.py
CVSS 3.1: 5.5 MEDIUM — AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Issue: The module retrieves a passphrase from the OS native keyring (GNOME Keyring, macOS Keychain, Windows Credential Manager) and places it directly into result["passphrase"] with no output suppression, no no_log protection, and no documentation warn
nvd
CVE-2026-26104P4MEDIUMCVSS 5.5v10.02026-02-25
CVE-2026-26104 [MEDIUM] CWE-862 CVE-2026-26104: A flaw was found in the udisks storage management daemon that allows unprivileged users to back up L
A flaw was found in the udisks storage management daemon that allows unprivileged users to back up LUKS encryption headers without authorization. The issue occurs because a privileged D-Bus method responsible for exporting encryption metadata does not perform a policy check. As a result, sensitive cryptographic metadata can be read and written to at
nvd
CVE-2011-2942P4MEDIUMCVSS 6.8v52013-06-08
CVE-2011-2942 [MEDIUM] CVE-2011-2942: A certain Red Hat patch to the __br_deliver function in net/bridge/br_forward.c in the Linux kernel
A certain Red Hat patch to the __br_deliver function in net/bridge/br_forward.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by leveraging connectivity to a network interface that uses an Ethernet bridge
nvd
CVE-2013-4566P4MEDIUMCVSS 4.0v5v6.02013-12-12
CVE-2013-4566 [MEDIUM] CWE-264 CVE-2013-4566: mod_nss 1.0.8 and earlier, when NSSVerifyClient is set to none for the server/vhost context, does no
mod_nss 1.0.8 and earlier, when NSSVerifyClient is set to none for the server/vhost context, does not enforce the NSSVerifyClient setting in the directory context, which allows remote attackers to bypass intended access restrictions.
nvd
CVE-2026-5673P4HIGHCVSS 7.1v6.0v7.0+3 more2026-04-06
CVE-2026-5673 [HIGH] CWE-125 CVE-2026-5673: A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AV
A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AVI (Audio Video Interleave) parser, specifically in the avi_parse_input_file() function. A local attacker could exploit this by tricking a user into opening a specially crafted AVI file containing a truncated header sub-chunk. This could lead to a denial-o
nvd
CVE-2019-19076P4MEDIUMCVSS 5.9v8.02019-11-18
CVE-2019-19076 [MEDIUM] CWE-401 CVE-2019-19076: A memory leak in the nfp_abm_u32_knode_replace() function in drivers/net/ethernet/netronome/nfp/abm/
A memory leak in the nfp_abm_u32_knode_replace() function in drivers/net/ethernet/netronome/nfp/abm/cls.c in the Linux kernel before 5.3.6 allows attackers to cause a denial of service (memory consumption), aka CID-78beef629fd9. NOTE: This has been argued as not a valid vulnerability. The upstream commit 78beef629fd9 was reverted
nvd
CVE-2021-3696P4MEDIUMCVSS 4.5v8.0v8.1+2 more2022-07-06
CVE-2021-3696 [MEDIUM] CWE-787 CVE-2021-3696: A heap out-of-bounds write may heppen during the handling of Huffman tables in the PNG reader. This
A heap out-of-bounds write may heppen during the handling of Huffman tables in the PNG reader. This may lead to data corruption in the heap space. Confidentiality, Integrity and Availablity impact may be considered Low as it's very complex to an attacker control the encoding and positioning of corrupted Huffman entries to achieve results such as arbitr
nvd
CVE-2019-19242P4MEDIUMCVSS 5.9v8.02019-11-27
CVE-2019-19242 [MEDIUM] CWE-476 CVE-2019-19242: SQLite 3.30.1 mishandles pExpr->y.pTab, as demonstrated by the TK_COLUMN case in sqlite3ExprCodeTarg
SQLite 3.30.1 mishandles pExpr->y.pTab, as demonstrated by the TK_COLUMN case in sqlite3ExprCodeTarget in expr.c.
nvd
CVE-2024-0607P4MEDIUMCVSS 6.6v8.0v9.02024-01-18
CVE-2024-0607 [MEDIUM] CWE-229 CVE-2024-0607: A flaw was found in the Netfilter subsystem in the Linux kernel. The issue is in the nft_byteorder_e
A flaw was found in the Netfilter subsystem in the Linux kernel. The issue is in the nft_byteorder_eval() function, where the code iterates through a loop and writes to the `dst` array. On each iteration, 8 bytes are written, but `dst` is an array of u32, so each element only has space for 4 bytes. That means every iteration overwrites part of the pre
nvd
CVE-2025-5915P4MEDIUMCVSS 6.6v6.0v7.0+3 more2025-06-09
CVE-2025-5915 [MEDIUM] CWE-122 CVE-2025-5915: A vulnerability has been identified in the libarchive library. This flaw can lead to a heap buffer o
A vulnerability has been identified in the libarchive library. This flaw can lead to a heap buffer over-read due to the size of a filter block potentially exceeding the Lempel-Ziv-Storer-Schieber (LZSS) window. This means the library may attempt to read beyond the allocated memory buffer, which can result in unpredictable program behavior, crashes (de
nvd
CVE-2019-3825P4MEDIUMCVSS 6.4v7.02019-02-06
CVE-2019-3825 [MEDIUM] CWE-287 CVE-2019-3825: A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, a
A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user's session.
nvd
CVE-2012-5630P4MEDIUMCVSS 6.3v5.0v6.02019-11-25
CVE-2012-5630 [MEDIUM] CWE-367 CVE-2012-5630: libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and remov
libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees.
nvd
CVE-2022-1280P4MEDIUMCVSS 6.3v8.02022-04-13
CVE-2022-1280 [MEDIUM] CWE-416 CVE-2022-1280: A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Lin
A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a race problem. This flaw allows a local user privilege attacker to cause a denial of service (DoS) or a kernel information leak.
nvd