Skip to content
Noroxi

Corosync records

5 published records for vendor corosync.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
80%
Median publish → KEV
No record has entered KEV

Records by year

  1. 18
  2. 25
  3. 26

Bar: total · dark part: CISA KEV.

All records

5 records
  • Corosync through 3.1.9, if encryption is disabled or the attacker knows the encryption key, has a stack-based buffer overflow in orf_token_e

    CriticalCVSS 9.8No exploitEPSS 0%

    corosync · corosyncMar 21, 2025

  • Corosync: corosync: denial of service and information disclosure via crafted udp packet

    HighCVSS 8.2No exploitEPSS 1%

    corosync · corosyncApr 1, 2026

  • CVE-2018-1084
    31Monitor

    corosync before version 2.4.4 is vulnerable to an integer overflow in exec/totemcrypto.c.

    HighCVSS 7.5No exploitEPSS 3%

    corosync · corosyncApr 12, 2018

  • Corosync: corosync: denial of service via integer overflow in join message validation

    HighCVSS 7.5No exploitEPSS 1%

    corosync · corosyncApr 1, 2026

  • CVE-2013-0250
    21Monitor

    The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote a

    MediumCVSS 5.0No exploitEPSS 3%

    corosync · corosyncJun 6, 2014