linaro records
9 published records for vendor linaro.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 66.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-94 Improper Control of Generation of Code ('Code Injection')2
- CWE-190 Integer Overflow or Wraparound1
- CWE-776 Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2022-45132No exploit | In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-submitted Jinja2 temlinaro · lava · CWE-94 | Critical9.8 | — | 2.0% | Nov 18, 2022 |
39Monitor | CVE-2026-37540No exploit | OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing.linaro · openamp · CWE-190 | Critical9.8 | — | 0.4% | May 1, 2026 |
36Monitor | CVE-2018-12565No exploit | An issue was discovered in Linaro LAVA before 2018.5.post1.linaro · lava · CWE-20 | High8.8 | — | 2.5% | Jun 19, 2018 |
35Monitor | CVE-2022-42902No exploit | In Linaro Automated Validation Architecture (LAVA) before 2022.10, there is dynamic code execution in lava_server/lavatable.py.linaro · lava · CWE-94 | High8.8 | — | 1.4% | Oct 12, 2022 |
31Monitor | CVE-2017-1000412No exploit | Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable to the bellcore attack in the LibTomCrypt code resulinaro · op-tee · CWE-200 | High7.5 | — | 1.9% | Jan 2, 2018 |
26Monitor | CVE-2018-12564No exploit | An issue was discovered in Linaro LAVA before 2018.5.post1.linaro · lava · CWE-20 | Medium6.5 | — | 1.5% | Jun 19, 2018 |
26Monitor | CVE-2022-44641No exploit | In Linaro Automated Validation Architecture (LAVA) before 2022.11, users with valid credentials can submit crafted XMLRPC requests that causlinaro · lava · CWE-776 | Medium6.5 | — | 1.0% | Nov 18, 2022 |
26Monitor | CVE-2018-12563No exploit | An issue was discovered in Linaro LAVA before 2018.5.post1.linaro · lava · CWE-20 | Medium6.5 | — | 0.9% | Jun 19, 2018 |
23Monitor | CVE-2017-1000413No exploit | Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery parts of libMPA ilinaro · op-tee · CWE-200 | Medium5.9 | — | 1.6% | Jan 2, 2018 |
- CVE-2022-4513240Plan
In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-submitted Jinja2 tem
CriticalCVSS 9.8No exploitEPSS 2%linaro · lavaNov 18, 2022
- CVE-2026-3754039Monitor
OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing.
CriticalCVSS 9.8No exploitEPSS 0%linaro · openampMay 1, 2026
- CVE-2018-1256536Monitor
An issue was discovered in Linaro LAVA before 2018.5.post1.
HighCVSS 8.8No exploitEPSS 2%linaro · lavaJun 19, 2018
- CVE-2022-4290235Monitor
In Linaro Automated Validation Architecture (LAVA) before 2022.10, there is dynamic code execution in lava_server/lavatable.py.
HighCVSS 8.8No exploitEPSS 1%linaro · lavaOct 12, 2022
- CVE-2017-100041231Monitor
Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable to the bellcore attack in the LibTomCrypt code resu
HighCVSS 7.5No exploitEPSS 2%linaro · op-teeJan 2, 2018
- CVE-2018-1256426Monitor
An issue was discovered in Linaro LAVA before 2018.5.post1.
MediumCVSS 6.5No exploitEPSS 2%linaro · lavaJun 19, 2018
- CVE-2022-4464126Monitor
In Linaro Automated Validation Architecture (LAVA) before 2022.11, users with valid credentials can submit crafted XMLRPC requests that caus
MediumCVSS 6.5No exploitEPSS 1%linaro · lavaNov 18, 2022
- CVE-2018-1256326Monitor
An issue was discovered in Linaro LAVA before 2018.5.post1.
MediumCVSS 6.5No exploitEPSS 1%linaro · lavaJun 19, 2018
- CVE-2017-100041323Monitor
Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery parts of libMPA i
MediumCVSS 5.9No exploitEPSS 2%linaro · op-teeJan 2, 2018