Linux records
19,389 published records for vendor linux.
Researcher profile
- Entered KEV
- 89 · 0.5%
- Weaponized
- 144 · 0.7%
- Pre-auth RCE
- 1,207
- With a fix record
- 86%
- Median publish → KEV
- 1615 days
Recurring classes
- CWE-476 NULL Pointer Dereference2,294
- CWE-416 Use After Free2,119
- CWE-401 Missing Release of Memory after Effective Lifetime1,191
- CWE-125 Out-of-bounds Read831
- CWE-787 Out-of-bounds Write819
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')620
The weakness classes this vendor ships most often: where to look.
CWEAll records
10,000+ records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
99Now | CVE-2022-22954Weaponized | VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection.vmware · identity manager · CWE-94 | Critical9.8 | KEV | 100.0% | Apr 11, 2022 |
99Now | CVE-2022-47986Weaponized | IBM Aspera Faspex code executionibm · aspera faspex · CWE-502 | Critical9.8 | KEV | 100.0% | Feb 17, 2023 |
99Now | CVE-2015-3113Weaponized | Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11adobe · flash player · CWE-787 | Critical9.8 | KEV | 99.9% | Jun 23, 2015 |
99Now | CVE-2014-0497Weaponized | Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 1adobe · flash player · CWE-191 | Critical9.8 | KEV | 99.9% | Feb 5, 2014 |
99Now | CVE-2015-5119Weaponized | Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296adobe · flash player · CWE-416 | Critical9.8 | KEV | 99.3% | Jul 8, 2015 |
98Now | CVE-2015-0313Weaponized | Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before adobe · flash player · CWE-416 | Critical9.8 | KEV | 95.3% | Feb 2, 2015 |
97Now | CVE-2015-5122Weaponized | Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0adobe · flash player · CWE-416 | Critical9.8 | KEV | 94.0% | Jul 14, 2015 |
96Now | CVE-2025-34028Weaponized | Commvault Command Center Innovation Release <= 11.38.25 Unathenticated Install Package Path Traversalcommvault · commvault · CWE-22 | Critical9.3 | KEV | 97.6% | Apr 22, 2025 |
95Now | CVE-2011-0611Weaponized | Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.adobe · flash player · CWE-843 | High8.8 | KEV | 99.4% | Apr 13, 2011 |
95Now | CVE-2015-0311Weaponized | Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and throuadobe · flash player | Critical9.8 | KEV | 85.6% | Jan 23, 2015 |
91Now | CVE-2015-3043Weaponized | Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attadobe · flash player · CWE-787 | Critical9.8 | KEV | 73.9% | Apr 14, 2015 |
90Now | CVE-2022-30333Weaponized | RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrarlab · unrar · CWE-22 | High7.5 | KEV | 99.1% | May 9, 2022 |
89Now | CVE-2022-0847Weaponized | A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe linux · linux kernel · CWE-665 | High7.8 | KEV | 92.8% | Mar 10, 2022 |
89Now | CVE-2012-0754Weaponized | Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.xadobe · flash player · CWE-787 | High8.1 | KEV | 91.2% | Feb 16, 2012 |
88Now | CVE-2018-15982Weaponized | Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability.adobe · flash player · CWE-416 | High7.8 | KEV | 89.6% | Jan 18, 2019 |
88Now | CVE-2018-4878Weaponized | A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161.adobe · flash player · CWE-416 | High7.8 | KEV | 89.5% | Feb 6, 2018 |
87Now | CVE-2013-0640Weaponized | Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allow remote attackers to execute arbitrary code or cadobe · acrobat · CWE-787 | High7.8 | KEV | 86.9% | Feb 13, 2013 |
85Now | CVE-2021-22555Weaponized | Heap Out-Of-Bounds Write in Netfilter IP6T_SO_SET_REPLACElinux · linux kernel · CWE-787 | High7.8 | KEV | 78.7% | Jul 7, 2021 |
85Now | CVE-2015-8651Weaponized | Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on adobe · air sdk · CWE-190 | High8.8 | KEV | 67.7% | Dec 28, 2015 |
83Now | CVE-2016-5195Weaponized | Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect halinux · linux kernel · CWE-362 | High7.0 | KEV | 83.5% | Nov 10, 2016 |
82Now | CVE-2012-1535Weaponized | Unspecified vulnerability in Adobe Flash Player before 11.3.300.271 on Windows and Mac OS X and before 11.2.202.238 on Linux allows remote aadobe · flash player · CWE-20 | High7.8 | KEV | 70.4% | Aug 15, 2012 |
82Now | CVE-2026-2441Weaponized | Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a cragoogle · chrome · CWE-416 | High8.8 | KEV | 55.1% | Feb 13, 2026 |
81Now | CVE-2015-7645Weaponized | Adobe Flash Player 18.x through 18.0.0.252 and 19.x through 19.0.0.207 on Windows and OS X and 11.x through 11.2.202.535 on Linux allows remadobe · flash player | High7.8 | KEV | 65.3% | Oct 15, 2015 |
81Now | CVE-2016-0984Weaponized | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2adobe · flash player · CWE-416 | High8.8 | KEV | 54.5% | Feb 10, 2016 |
80Now | CVE-2011-0609Weaponized | Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier onadobe · flash player | High7.8 | KEV | 63.5% | Mar 15, 2011 |
- CVE-2022-2295499Now
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection.
CriticalCVSS 9.8KEVWeaponizedEPSS 100%vmware · identity managerApr 11, 2022
- CVE-2022-4798699Now
IBM Aspera Faspex code execution
CriticalCVSS 9.8KEVWeaponizedEPSS 100%ibm · aspera faspexFeb 17, 2023
- CVE-2015-311399Now
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11
CriticalCVSS 9.8KEVWeaponizedEPSS 100%adobe · flash playerJun 23, 2015
- CVE-2014-049799Now
Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 1
CriticalCVSS 9.8KEVWeaponizedEPSS 100%adobe · flash playerFeb 5, 2014
- CVE-2015-511999Now
Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296
CriticalCVSS 9.8KEVWeaponizedEPSS 99%adobe · flash playerJul 8, 2015
- CVE-2015-031398Now
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before
CriticalCVSS 9.8KEVWeaponizedEPSS 95%adobe · flash playerFeb 2, 2015
- CVE-2015-512297Now
Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0
CriticalCVSS 9.8KEVWeaponizedEPSS 94%adobe · flash playerJul 14, 2015
- CVE-2025-3402896Now
Commvault Command Center Innovation Release <= 11.38.25 Unathenticated Install Package Path Traversal
CriticalCVSS 9.3KEVWeaponizedEPSS 98%commvault · commvaultApr 22, 2025
- CVE-2011-061195Now
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.
HighCVSS 8.8KEVWeaponizedEPSS 99%adobe · flash playerApr 13, 2011
- CVE-2015-031195Now
Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and throu
CriticalCVSS 9.8KEVWeaponizedEPSS 86%adobe · flash playerJan 23, 2015
- CVE-2015-304391Now
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows att
CriticalCVSS 9.8KEVWeaponizedEPSS 74%adobe · flash playerApr 14, 2015
- CVE-2022-3033390Now
RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonst
HighCVSS 7.5KEVWeaponizedEPSS 99%rarlab · unrarMay 9, 2022
- CVE-2022-084789Now
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe
HighCVSS 7.8KEVWeaponizedEPSS 93%linux · linux kernelMar 10, 2022
- CVE-2012-075489Now
Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.x
HighCVSS 8.1KEVWeaponizedEPSS 91%adobe · flash playerFeb 16, 2012
- CVE-2018-1598288Now
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability.
HighCVSS 7.8KEVWeaponizedEPSS 90%adobe · flash playerJan 18, 2019
- CVE-2018-487888Now
A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161.
HighCVSS 7.8KEVWeaponizedEPSS 90%adobe · flash playerFeb 6, 2018
- CVE-2013-064087Now
Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allow remote attackers to execute arbitrary code or c
HighCVSS 7.8KEVWeaponizedEPSS 87%adobe · acrobatFeb 13, 2013
- CVE-2021-2255585Now
Heap Out-Of-Bounds Write in Netfilter IP6T_SO_SET_REPLACE
HighCVSS 7.8KEVWeaponizedEPSS 79%linux · linux kernelJul 7, 2021
- CVE-2015-865185Now
Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on
HighCVSS 8.8KEVWeaponizedEPSS 68%adobe · air sdkDec 28, 2015
- CVE-2016-519583Now
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect ha
HighCVSS 7.0KEVWeaponizedEPSS 84%linux · linux kernelNov 10, 2016
- CVE-2012-153582Now
Unspecified vulnerability in Adobe Flash Player before 11.3.300.271 on Windows and Mac OS X and before 11.2.202.238 on Linux allows remote a
HighCVSS 7.8KEVWeaponizedEPSS 70%adobe · flash playerAug 15, 2012
- CVE-2026-244182Now
Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a cra
HighCVSS 8.8KEVWeaponizedEPSS 55%google · chromeFeb 13, 2026
- CVE-2015-764581Now
Adobe Flash Player 18.x through 18.0.0.252 and 19.x through 19.0.0.207 on Windows and OS X and 11.x through 11.2.202.535 on Linux allows rem
HighCVSS 7.8KEVWeaponizedEPSS 65%adobe · flash playerOct 15, 2015
- CVE-2016-098481Now
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2
HighCVSS 8.8KEVWeaponizedEPSS 55%adobe · flash playerFeb 10, 2016
- CVE-2011-060980Now
Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on
HighCVSS 7.8KEVWeaponizedEPSS 64%adobe · flash playerMar 15, 2011