Redhat Enterprise Linux vulnerabilities
1,853 known vulnerabilities affecting redhat/enterprise_linux.
Total CVEs
1,853
CISA KEV
23
actively exploited
Public exploits
96
Exploited in wild
44
Severity breakdown
CRITICAL167HIGH638MEDIUM890LOW158
Vulnerabilities
Page 59 of 93
CVE-2022-30596P4MEDIUMCVSS 5.4v8.02022-05-18
CVE-2022-30596 [MEDIUM] CWE-79 CVE-2022-30596: A flaw was found in moodle where ID numbers displayed when bulk allocating markers to assignments re
A flaw was found in moodle where ID numbers displayed when bulk allocating markers to assignments required additional sanitizing to prevent a stored XSS risk.
nvd
CVE-2019-2816P4MEDIUMCVSS 4.8v8.02019-07-23
CVE-2019-2816 [MEDIUM] CVE-2019-2816: Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 7u221, 8u212, 11.0.3 and 12.0.1; Java SE Embedded: 8u211. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded.
nvd
CVE-2007-6282P4HIGHCVSS 7.1vas_4ves_4+1 more2008-05-08
CVE-2007-6282 [HIGH] CWE-16 CVE-2007-6282: The IPsec implementation in Linux kernel before 2.6.25 allows remote routers to cause a denial of se
The IPsec implementation in Linux kernel before 2.6.25 allows remote routers to cause a denial of service (crash) via a fragmented ESP packet in which the first fragment does not contain the entire ESP header and IV.
nvd
CVE-2008-1198P4HIGHCVSS 7.1v4.0v3.0+1 more2008-03-06
CVE-2008-1198 [HIGH] CVE-2008-1198: The default IPSec ifup script in Red Hat Enterprise Linux 3 through 5 configures racoon to use aggre
The default IPSec ifup script in Red Hat Enterprise Linux 3 through 5 configures racoon to use aggressive IKE mode instead of main IKE mode, which makes it easier for remote attackers to conduct brute force attacks by sniffing an unencrypted preshared key (PSK) hash.
nvd
CVE-2022-1016P4MEDIUMCVSS 5.5v8.0v9.02022-08-29
CVE-2022-1016 [MEDIUM] CWE-824 CVE-2022-1016: A flaw was found in the Linux kernel in net/netfilter/nf_tables_core.c:nft_do_chain, which can cause
A flaw was found in the Linux kernel in net/netfilter/nf_tables_core.c:nft_do_chain, which can cause a use-after-free. This issue needs to handle 'return' with proper preconditions, as it can lead to a kernel information leak problem caused by a local, unprivileged attacker.
nvd
CVE-2022-2905P4MEDIUMCVSS 5.5v8.02022-09-09
CVE-2022-2905 [MEDIUM] CWE-125 CVE-2022-2905: An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls
An out-of-bounds memory read flaw was found in the Linux kernel's BPF subsystem in how a user calls the bpf_tail_call function with a key larger than the max_entries of the map. This flaw allows a local user to gain unauthorized access to data.
nvd
CVE-2022-0175P4MEDIUMCVSS 5.5v8.02022-08-26
CVE-2022-0175 [MEDIUM] CWE-909 CVE-2022-0175: A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly in
A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly initialize memory when allocating a host-backed memory resource. A malicious guest could use this flaw to mmap from the guest kernel and read this uninitialized memory from the host, possibly leading to information disclosure.
nvd
CVE-2022-0851P4MEDIUMCVSS 5.5v7.0v8.02022-08-29
CVE-2022-0851 [MEDIUM] CWE-200 CVE-2022-0851: There is a flaw in convert2rhel. When the --activationkey option is used with convert2rhel, the acti
There is a flaw in convert2rhel. When the --activationkey option is used with convert2rhel, the activation key is subsequently passed to subscription-manager via the command line, which could allow unauthorized users locally on the machine to view the activation key via the process command line via e.g. htop or ps. The specific impact varies upon the
nvd
CVE-2023-4194P4MEDIUMCVSS 5.5v8.0v9.02023-08-07
CVE-2023-4194 [MEDIUM] CVE-2023-4194: A flaw was found in the Linux kernel's TUN/TAP functionality. This issue could allow a local user to
A flaw was found in the Linux kernel's TUN/TAP functionality. This issue could allow a local user to bypass network filters and gain unauthorized access to some resources. The original patches fixing CVE-2023-1076 are incorrect or incomplete. The problem is that the following upstream commits - a096ccca6e50 ("tun: tun_chr_open(): correctly initialize socket u
nvd
CVE-2022-3560P4MEDIUMCVSS 5.5v7.0v8.0+1 more2023-02-02
CVE-2022-3560 [MEDIUM] CWE-22 CVE-2022-3560: A flaw was found in pesign. The pesign package provides a systemd service used to start the pesign d
A flaw was found in pesign. The pesign package provides a systemd service used to start the pesign daemon. This service unit runs a script to set ACLs for /etc/pki/pesign and /run/pesign directories to grant access privileges to users in the 'pesign' group. However, the script doesn't check for symbolic links. This could allow an attacker to gain acces
nvd
CVE-2026-13595P4MEDIUMCVSS 5.3v7.0v8.0+2 more2026-06-29
CVE-2026-13595 [MEDIUM] CWE-416 CVE-2026-13595: A flaw was found in the libblkid library of util-linux. During nested partition probing, the BSD, Mi
A flaw was found in the libblkid library of util-linux. During nested partition probing, the BSD, Minix, Solaris x86, and UnixWare partition probers cache a raw pointer to a parent partition entry in a dynamically allocated array. When subsequent partition additions cause the array to be reallocated, this pointer becomes stale, leading to a heap use
nvd
CVE-2014-0150P4MEDIUMCVSS 4.9v6.02014-04-18
CVE-2014-0150 [MEDIUM] CWE-189 CVE-2014-0150: Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlie
Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table update request, which triggers a heap-based buffer overflow.
nvd
CVE-2018-20650P4MEDIUMCVSS 6.5v8.02019-01-01
CVE-2018-20650 [MEDIUM] CWE-20 CVE-2018-20650: A reachable Object::dictLookup assertion in Poppler 0.72.0 allows attackers to cause a denial of ser
A reachable Object::dictLookup assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to the lack of a check for the dict data type, as demonstrated by use of the FileSpec class (in FileSpec.cc) in pdfdetach.
nvd
CVE-2026-11791P4MEDIUMCVSS 5.0v7.0v8.0+2 more2026-06-18
CVE-2026-11791 [MEDIUM] CWE-416 CVE-2026-11791: A flaw was found in 389 Directory Server. During schema reload, the attr_syntax_swap_ht() function u
A flaw was found in 389 Directory Server. During schema reload, the attr_syntax_swap_ht() function unconditionally frees attribute syntax information nodes, bypassing the refcount-based deferred deletion used elsewhere in the attribute syntax subsystem. If an administrator triggers schema reload while concurrent LDAP query traffic is active, worker
nvd
CVE-2026-11790P4MEDIUMCVSS 4.9v7.0v8.0+2 more2026-06-09
CVE-2026-11790 [MEDIUM] CWE-400 CVE-2026-11790: A flaw was found in 389 Directory Server. The PBKDF2-SHA256 password storage plugin does not enforce
A flaw was found in 389 Directory Server. The PBKDF2-SHA256 password storage plugin does not enforce an upper bound on the iteration count extracted from stored password hashes. A privileged attacker who can modify a user's password hash can cause excessive CPU consumption during authentication, resulting in denial of service.
nvd
CVE-2023-6121P4MEDIUMCVSS 4.3v6.0v7.0+2 more2023-11-16
CVE-2023-6121 [MEDIUM] CWE-125 CVE-2023-6121: An out-of-bounds read vulnerability was found in the NVMe-oF/TCP subsystem in the Linux kernel. This
An out-of-bounds read vulnerability was found in the NVMe-oF/TCP subsystem in the Linux kernel. This issue may allow a remote attacker to send a crafted TCP packet, triggering a heap-based buffer overflow that results in kmalloc data being printed and potentially leaked to the kernel ring buffer (dmesg).
nvd
CVE-2019-3874P4MEDIUMCVSS 6.5v7.02019-03-25
CVE-2019-3874 [MEDIUM] CWE-400 CVE-2019-3874: The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem. An
The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem. An attacker can use this flaw to cause a denial of service attack. Kernel 3.10.x and 4.18.x branches are believed to be vulnerable.
nvd
CVE-2012-5521P4MEDIUMCVSS 6.5v5.0v6.02019-11-25
CVE-2012-5521 [MEDIUM] CWE-617 CVE-2012-5521: quagga (ospf6d) 0.99.21 has a DoS flaw in the way the ospf6d daemon performs routes removal
quagga (ospf6d) 0.99.21 has a DoS flaw in the way the ospf6d daemon performs routes removal
nvd
CVE-2018-19208P4MEDIUMCVSS 6.5v7.02018-11-12
CVE-2018-19208 [MEDIUM] CWE-476 CVE-2018-19208: In libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTabl
In libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTable in WP6ContentListener.cpp that will lead to a denial of service attack. This is related to WPXTable.h.
nvd
CVE-2010-0729P4MEDIUMCVSS 6.9v42010-03-16
CVE-2010-0729 [MEDIUM] CWE-264 CVE-2010-0729: A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platfo
A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local users to use ptrace on an arbitrary process, and consequently gain privileges, via vectors related to a missing ptrace_check_attach call.
nvd