Redhat Enterprise Linux vulnerabilities
1,864 known vulnerabilities affecting redhat/enterprise_linux.
Total CVEs
1,864
CISA KEV
23
actively exploited
Public exploits
96
Exploited in wild
44
Severity breakdown
CRITICAL167HIGH643MEDIUM895LOW159
Vulnerabilities
Page 64 of 94
CVE-2021-3569P4MEDIUMCVSS 5.5v8.02021-06-03
CVE-2021-3569 [MEDIUM] CWE-120 CVE-2021-3569: A stack corruption bug was found in libtpms in versions before 0.7.2 and before 0.8.0 while decrypti
A stack corruption bug was found in libtpms in versions before 0.7.2 and before 0.8.0 while decrypting data using RSA. This flaw could result in a SIGBUS (bad memory access) and termination of swtpm. The highest threat from this vulnerability is to system availability.
nvd
CVE-2023-3750P4MEDIUMCVSS 5.3v9.02023-07-24
CVE-2023-3750 [MEDIUM] CWE-667 CVE-2023-3750: A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same object from another thread. This issue could allow clients connecting to the read-only socket to crash the libvirt daemon.
nvd
CVE-2025-46399P4MEDIUMCVSS 5.5v6.0v7.0+2 more2025-04-23
CVE-2025-46399 [MEDIUM] CWE-476 CVE-2025-46399: A flaw was found in fig2dev. This vulnerability allows availability via local input manipulation via
A flaw was found in fig2dev. This vulnerability allows availability via local input manipulation via genge_itp_spline function.
nvd
CVE-2025-46400P4MEDIUMCVSS 5.5v6.0v7.0+2 more2025-04-23
CVE-2025-46400 [MEDIUM] CWE-476 CVE-2025-46400: In xfig diagramming tool, a segmentation fault while running fig2dev allows an attacker to availabil
In xfig diagramming tool, a segmentation fault while running fig2dev allows an attacker to availability via local input manipulation via read_arcobject function.
nvd
CVE-2021-3446P4MEDIUMCVSS 5.5v8.02021-03-25
CVE-2021-3446 [MEDIUM] CWE-327 CVE-2021-3446: A flaw was found in libtpms in versions before 0.8.2. The commonly used integration of libtpms with
A flaw was found in libtpms in versions before 0.8.2. The commonly used integration of libtpms with OpenSSL contained a vulnerability related to the returned IV (initialization vector) when certain symmetric ciphers were used. Instead of returning the last IV it returned the initial IV to the caller, thus weakening the subsequent encryption and decrypt
nvd
CVE-2023-1672P4MEDIUMCVSS 5.3v8.0v9.02023-07-11
CVE-2023-1672 [MEDIUM] CWE-362 CVE-2023-1672: A race condition exists in the Tang server functionality for key generation and key rotation. This f
A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.
nvd
CVE-2020-35513P4MEDIUMCVSS 4.9v7.02021-01-26
CVE-2020-35513 [MEDIUM] CWE-271 CVE-2020-35513: A flaw incorrect umask during file or directory modification in the Linux kernel NFS (network file s
A flaw incorrect umask during file or directory modification in the Linux kernel NFS (network file system) functionality was found in the way user create and delete object using NFSv4.2 or newer if both simultaneously accessing the NFS by the other process that is not using new NFSv4.2. A user with access to the NFS could use this flaw to starve the
nvd
CVE-2024-49395P4MEDIUMCVSS 5.3v8.0v9.02024-11-12
CVE-2024-49395 [MEDIUM] CWE-1230 CVE-2024-49395: In mutt and neomutt, PGP encryption does not use the --hidden-recipient mode which may leak the Bcc
In mutt and neomutt, PGP encryption does not use the --hidden-recipient mode which may leak the Bcc email header field by inferring from the recipients info.
nvd
CVE-2023-5868P4MEDIUMCVSS 4.3v8.0v9.02023-12-10
CVE-2023-5868 [MEDIUM] CWE-686 CVE-2023-5868: A memory disclosure vulnerability was found in PostgreSQL that allows remote users to access sensiti
A memory disclosure vulnerability was found in PostgreSQL that allows remote users to access sensitive information by exploiting certain aggregate function calls with 'unknown'-type arguments. Handling 'unknown'-type values from string literals without type designation can disclose bytes, potentially revealing notable and confidential information. Thi
nvd
CVE-2013-1813P4HIGHCVSS 7.2v6.02013-11-23
CVE-2013-1813 [HIGH] CWE-264 CVE-2013-1813: util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creatin
util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creating nested directories under /dev/, which allows local users to have unknown impact and attack vectors.
nvd
CVE-2021-32672P4MEDIUMCVSS 4.3v8.02021-10-04
CVE-2021-32672 [MEDIUM] CWE-125 CVE-2021-32672: Redis is an open source, in-memory database that persists on disk. When using the Redis Lua Debugger
Redis is an open source, in-memory database that persists on disk. When using the Redis Lua Debugger, users can send malformed requests that cause the debugger’s protocol parser to read data beyond the actual buffer. This issue affects all versions of Redis with Lua debugging support (3.2 or newer). The problem is fixed in versions 6.2.6, 6.0.16 and
nvd
CVE-2004-1070P4HIGHCVSS 7.2v2.1v3.02005-01-10
CVE-2004-1070 [HIGH] CVE-2004-1070: The load_elf_binary function in the binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4
The load_elf_binary function in the binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly check return values from calls to the kernel_read function, which may allow local users to modify sensitive memory in a setuid program and execute arbitrary code.
nvd
CVE-2018-20662P4MEDIUMCVSS 6.5v8.02019-01-03
CVE-2018-20662 [MEDIUM] CWE-20 CVE-2018-20662: In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (applica
In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.
nvd
CVE-2005-3629P4HIGHCVSS 7.2v3.0v4.02005-12-31
CVE-2005-3629 [HIGH] CVE-2005-3629: initscripts in Red Hat Enterprise Linux 4 does not properly handle certain environment variables whe
initscripts in Red Hat Enterprise Linux 4 does not properly handle certain environment variables when /sbin/service is executed, which allows local users with sudo permissions for /sbin/service to gain root privileges via unknown vectors.
nvd
CVE-2020-14318P4MEDIUMCVSS 4.3v7.0v8.02020-12-03
CVE-2020-14318 [MEDIUM] CWE-266 CVE-2020-14318: A flaw was found in the way samba handled file and directory permissions. An authenticated user coul
A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and directory information which otherwise would be unavailable to the attacker.
nvd
CVE-2012-4546P4MEDIUMCVSS 4.3v6.02013-04-03
CVE-2012-4546 [MEDIUM] CWE-16 CVE-2012-4546: The default configuration for IPA servers in Red Hat Enterprise Linux 6, when revoking a certificate
The default configuration for IPA servers in Red Hat Enterprise Linux 6, when revoking a certificate from an Identity Management replica, does not properly update another Identity Management replica, which causes inconsistent Certificate Revocation Lists (CRLs) to be used and might allow remote attackers to bypass intended access restrictions via a rev
nvd
CVE-2024-9675P4MEDIUMCVSS 4.4v8.0v9.02024-10-09
CVE-2024-9675 [MEDIUM] CWE-22 CVE-2024-9675: A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified path
A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified paths for the cache are within our cache directory, allowing a `RUN` instruction in a Container file to mount an arbitrary directory from the host (read/write) into the container as long as those files can be accessed by the user running Buildah.
nvd
CVE-2022-4144P4MEDIUMCVSS 6.5v8.02022-11-29
CVE-2022-4144 [MEDIUM] CWE-125 CVE-2022-4144: An out-of-bounds read flaw was found in the QXL display device emulation in QEMU. The qxl_phys2virt(
An out-of-bounds read flaw was found in the QXL display device emulation in QEMU. The qxl_phys2virt() function does not check the size of the structure pointed to by the guest physical address, potentially reading past the end of the bar space into adjacent pages. A malicious guest user could use this flaw to crash the QEMU process on the host causing
nvd
CVE-2005-0667P4MEDIUMCVSS 5.1v2.12005-03-07
CVE-2005-0667 [MEDIUM] CVE-2005-0667: Buffer overflow in Sylpheed before 1.0.3 and other versions before 1.9.5 allows remote attackers to
Buffer overflow in Sylpheed before 1.0.3 and other versions before 1.9.5 allows remote attackers to execute arbitrary code via an e-mail message with certain headers containing non-ASCII characters that are not properly handled when the user replies to the message.
nvd
CVE-2013-1854P4MEDIUMCVSS 5.0v6.02013-03-19
CVE-2013-1854 [MEDIUM] CWE-20 CVE-2013-1854: The Active Record component in Ruby on Rails 2.3.x before 2.3.18, 3.1.x before 3.1.12, and 3.2.x bef
The Active Record component in Ruby on Rails 2.3.x before 2.3.18, 3.1.x before 3.1.12, and 3.2.x before 3.2.13 processes certain queries by converting hash keys to symbols, which allows remote attackers to cause a denial of service via crafted input to a where method.
nvd