Redhat Enterprise Linux vulnerabilities
1,864 known vulnerabilities affecting redhat/enterprise_linux.
Total CVEs
1,864
CISA KEV
23
actively exploited
Public exploits
96
Exploited in wild
44
Severity breakdown
CRITICAL167HIGH643MEDIUM895LOW159
Vulnerabilities
Page 66 of 94
CVE-2004-0750P4HIGHCVSS 7.5v3.02004-10-20
CVE-2004-0750 [HIGH] CVE-2004-0750: Unknown vulnerability in redhat-config-nfs before 1.0.13, when shares are exported to multiple hosts
Unknown vulnerability in redhat-config-nfs before 1.0.13, when shares are exported to multiple hosts, can produce incorrect permissions and prevent the all_squash option from being applied.
nvd
CVE-2024-0690P4MEDIUMCVSS 5.5v8.0v9.02024-02-06
CVE-2024-0690 [MEDIUM] CWE-117 CVE-2024-0690: An information disclosure flaw was found in ansible-core due to a failure to respect the ANSIBLE_NO_
An information disclosure flaw was found in ansible-core due to a failure to respect the ANSIBLE_NO_LOG configuration in some scenarios. Information is still included in the output in certain tasks, such as loop items. Depending on the task, this issue may include sensitive information, such as decrypted secret values.
nvd
CVE-2024-1151P4MEDIUMCVSS 5.5v8.0v9.02024-02-11
CVE-2024-1151 [MEDIUM] CWE-121 CVE-2024-1151: A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs
A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursively calls into the code block. The OVS module does not validate the stack depth, pushing too many frames and causing a stack overflow. As a result, this can lead to a crash or other related issues.
nvd
CVE-2026-59089P4MEDIUMCVSS 5.5v8.0v9.02026-07-06
CVE-2026-59089 [MEDIUM] CWE-190 CVE-2026-59089: A flaw was found in GIMP. The PlayStation TIM loader, responsible for handling PlayStation image fil
A flaw was found in GIMP. The PlayStation TIM loader, responsible for handling PlayStation image files, incorrectly calculates the size of the Color Look-Up Table (CLUT) due to an integer overflow. This occurs when multiplying num_colors and num_cluts, both 16-bit unsigned short integers, resulting in a value exceeding the maximum integer limit. An
nvd
CVE-2026-0967P4MEDIUMCVSS 5.5v9.0v10.02026-03-26
CVE-2026-0967 [MEDIUM] CWE-1333 CVE-2026-0967: A flaw was found in libssh. A remote attacker, by controlling client configuration files or known_ho
A flaw was found in libssh. A remote attacker, by controlling client configuration files or known_hosts files, could craft specific hostnames that when processed by the `match_pattern()` function can lead to inefficient regular expression backtracking. This can cause timeouts and resource exhaustion, resulting in a Denial of Service (DoS) for the cli
nvd
CVE-2026-2625P4MEDIUMCVSS 5.5v9.0v10.02026-04-03
CVE-2026-2625 [MEDIUM] CWE-347 CVE-2026-2625: A flaw was found in rust-rpm-sequoia. An attacker can exploit this vulnerability by providing a spec
A flaw was found in rust-rpm-sequoia. An attacker can exploit this vulnerability by providing a specially crafted Red Hat Package Manager (RPM) file. During the RPM signature verification process, this crafted file can trigger an error in the OpenPGP signature parsing code, leading to an unconditional termination of the rpm process. This issue results
nvd
CVE-2004-0081P4MEDIUMCVSS 5.0v3.02004-11-23
CVE-2004-0081 [MEDIUM] CVE-2004-0081: OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote atta
OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.
nvd
CVE-2023-33951P4MEDIUMCVSS 5.3v8.0v9.02023-07-24
CVE-2023-33951 [MEDIUM] CWE-413 CVE-2023-33951: A race condition vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists w
A race condition vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists within the handling of GEM objects. The issue results from improper locking when performing operations on an object. This flaw allows a local privileged user to disclose information in the context of the kernel.
nvd
CVE-2026-57965P4MEDIUMCVSS 5.1v6.0v7.0+3 more2026-06-29
CVE-2026-57965 [MEDIUM] CWE-190 CVE-2026-57965: A flaw was found in spice-vdagent. A malicious or compromised SPICE host can trigger an integer over
A flaw was found in spice-vdagent. A malicious or compromised SPICE host can trigger an integer overflow by sending a specially crafted message. This vulnerability can lead to a heap buffer overflow, causing the spice-vdagent daemon to crash and resulting in a Denial of Service (DoS) for the virtual machine. This issue requires the SPICE host to be
nvd
CVE-2022-0485P4MEDIUMCVSS 4.8v8.02022-08-29
CVE-2022-0485 [MEDIUM] CWE-252 CVE-2022-0485: A flaw was found in the copying tool `nbdcopy` of libnbd. When performing multi-threaded copies usin
A flaw was found in the copying tool `nbdcopy` of libnbd. When performing multi-threaded copies using asynchronous nbd calls, nbdcopy was blindly treating the completion of an asynchronous command as successful, rather than checking the *error parameter. This could result in the silent creation of a corrupted destination image.
nvd
CVE-2007-4130P4HIGHCVSS 7.2v4.02008-02-05
CVE-2007-4130 [HIGH] CWE-20 CVE-2007-4130: The Linux kernel 2.6.9 before 2.6.9-67 in Red Hat Enterprise Linux (RHEL) 4 on Itanium (ia64) does n
The Linux kernel 2.6.9 before 2.6.9-67 in Red Hat Enterprise Linux (RHEL) 4 on Itanium (ia64) does not properly handle page faults during NUMA memory access, which allows local users to cause a denial of service (panic) via invalid arguments to set_mempolicy in an MPOL_BIND operation.
nvd
CVE-2004-0495P4HIGHCVSS 7.2v2.1v3.02004-08-06
CVE-2004-0495 [HIGH] CVE-2004-0495: Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or
Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.
nvd
CVE-2006-5753P4HIGHCVSS 7.2v4.02007-01-30
CVE-2006-5753 [HIGH] CVE-2006-5753: Unspecified vulnerability in the listxattr system call in Linux kernel, when a "bad inode" is presen
Unspecified vulnerability in the listxattr system call in Linux kernel, when a "bad inode" is present, allows local users to cause a denial of service (data corruption) and possibly gain privileges via unknown vectors.
nvd
CVE-2021-3448P4MEDIUMCVSS 4.0v8.02021-04-08
CVE-2021-3448 [MEDIUM] CWE-358 CVE-2021-3448: A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a
A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This
nvd
CVE-2007-5964P4MEDIUMCVSS 6.9v5.02007-12-13
CVE-2007-5964 [MEDIUM] CWE-16 CVE-2007-5964: The default configuration of autofs 5 in some Linux distributions, such as Red Hat Enterprise Linux
The default configuration of autofs 5 in some Linux distributions, such as Red Hat Enterprise Linux (RHEL) 5, omits the nosuid option for the hosts (/net filesystem) map, which allows local users to gain privileges via a setuid program on a remote NFS server.
nvd
CVE-2011-2022P4MEDIUMCVSS 6.9v5.02011-05-09
CVE-2011-2022 [MEDIUM] CVE-2011-2022: The agp_generic_remove_memory function in drivers/char/agp/generic.c in the Linux kernel before 2.6.
The agp_generic_remove_memory function in drivers/char/agp/generic.c in the Linux kernel before 2.6.38.5 does not validate a certain start parameter, which allows local users to gain privileges or cause a denial of service (system crash) via a crafted AGPIOC_UNBIND agp_ioctl ioctl call, a different vulnerability than CVE-2011-1745.
nvd
CVE-2013-1976P4MEDIUMCVSS 6.9v5v6.02013-07-09
CVE-2013-1976 [MEDIUM] CWE-59 CVE-2013-1976: The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomca
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files via a symlink attack on (a) tomcat5-initd.log, (b) tomcat6-initd.log, (c) catalina.out, or (d) tomcat7-i
nvd
CVE-2011-3363P4MEDIUMCVSS 6.5v4.02012-05-24
CVE-2011-3363 [MEDIUM] CWE-20 CVE-2011-3363: The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly
The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) by placing a referral at the root of a share.
nvd
CVE-2023-5215P4MEDIUMCVSS 6.5v8.0v9.02023-09-28
CVE-2023-5215 [MEDIUM] CWE-241 CVE-2023-5215: A flaw was found in libnbd. A server can reply with a block size larger than 2^63 (the NBD spec stat
A flaw was found in libnbd. A server can reply with a block size larger than 2^63 (the NBD spec states the size is a 64-bit unsigned value). This issue could lead to an application crash or other unintended behavior for NBD clients that doesn't treat the return value of the nbd_get_size() function correctly.
nvd
CVE-2013-0311P4MEDIUMCVSS 6.5v6.02013-02-22
CVE-2013-0311 [MEDIUM] CVE-2013-0311: The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properl
The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host OS privileges by leveraging KVM guest OS privileges.
nvd