Vulnerabilities > Redhat > Enterprise Linux Server EUS > 6.4.z

DATE CVE VULNERABILITY TITLE RISK
2013-05-21 CVE-2012-6137 Credentials Management vulnerability in Redhat products
rhn-migrate-classic-to-rhsm tool in Red Hat subscription-manager does not verify the Red Hat Network Classic server's X.509 certificate when migrating to a Certificate-based Red Hat Network, which allows remote man-in-the-middle attackers to obtain sensitive information such as user credentials.
network
redhat CWE-255
4.3
2013-01-25 CVE-2012-5689 Improper Input Validation vulnerability in multiple products
ISC BIND 9.8.x through 9.8.4-P1 and 9.9.x through 9.9.2-P1, in certain configurations involving DNS64 with a Response Policy Zone that lacks an AAAA rewrite rule, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query for an AAAA record.
7.1