LinuxMint records
11 published records for vendor linuxmint.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 27.3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-59 Improper Link Resolution Before File Access ('Link Following')2
- CWE-20 Improper Input Validation1
- CWE-787 Out-of-bounds Write1
- CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')1
- CWE-502 Deserialization of Untrusted Data1
The weakness classes this vendor ships most often: where to look.
CWEAll records
11 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2024-36053No exploit | In the mintupload package through 4.2.0 for Linux Mint, service-name mishandling leads to command injection via shell metacharacters in checCWE-20 | Critical9.0 | — | 1.0% | May 19, 2024 |
33Monitor | CVE-2019-17080Proof of concept | mintinstall (aka Software Manager) 7.9.9 for Linux Mint allows code execution if a REVIEWS_CACHE file is controlled by an attacker, because linuxmint · mintinstall · CWE-502 | High7.8 | — | 8.2% | Oct 2, 2019 |
33Monitor | CVE-2018-13054No exploit | An issue was discovered in Cinnamon 1.9.2 through 3.8.6.debian · debian linux · CWE-59 | High8.1 | — | 2.2% | Jul 2, 2018 |
32Monitor | CVE-2019-20326Proof of concept | A heap-based buffer overflow in _cairo_image_surface_create_from_jpeg() in extensions/cairo_io/cairo-image-surface-jpeg.c in GNOME gThumb begnome · gthumb · CWE-787 | High7.8 | — | 2.1% | Mar 16, 2020 |
32Monitor | CVE-2023-44451Proof of concept | Linux Mint Xreader EPUB File Parsing Directory Traversal Remote Code Execution Vulnerabilitylinuxmint · xreader · CWE-22 | High7.8 | — | 1.8% | May 2, 2024 |
31Monitor | CVE-2023-29380No exploit | Warpinator before 1.6.0 allows remote file deletion via directory traversal in top_dir_basenames.linuxmint · warpinator · CWE-22 | High7.5 | — | 1.8% | May 28, 2023 |
31Monitor | CVE-2023-44452Proof of concept | Linux Mint Xreader CBT File Parsing Argument Injection Remote Code Execution Vulnerabilitylinuxmint · xreader · CWE-88 | High7.8 | — | 1.3% | May 2, 2024 |
30Monitor | CVE-2022-42725No exploit | Warpinator through 1.2.14 allows access outside of an intended directory, as demonstrated by symbolic directory links.linuxmint · warpinator · CWE-59 | High7.5 | — | 1.4% | Oct 10, 2022 |
30Monitor | CVE-2012-1567No exploit | LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintUpdate.linuxmint · linuxmint | High7.5 | — | 1.0% | Feb 7, 2020 |
30Monitor | CVE-2012-1566No exploit | LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintNanny.linuxmint · linuxmint | High7.5 | — | 0.9% | Feb 7, 2020 |
28Monitor | CVE-2014-1949No exploit | GTK+ 3.10.9 and earlier, as used in cinnamon-screensaver, gnome-screensaver, and other applications, allows physically proximate attackers tgnome · gtk · CWE-284 | High7.2 | — | 0.3% | Jan 16, 2015 |
- CVE-2024-3605336Monitor
In the mintupload package through 4.2.0 for Linux Mint, service-name mishandling leads to command injection via shell metacharacters in chec
CriticalCVSS 9.0No exploitEPSS 1%May 19, 2024
- CVE-2019-1708033Monitor
mintinstall (aka Software Manager) 7.9.9 for Linux Mint allows code execution if a REVIEWS_CACHE file is controlled by an attacker, because
HighCVSS 7.8Proof of conceptEPSS 8%linuxmint · mintinstallOct 2, 2019
- CVE-2018-1305433Monitor
An issue was discovered in Cinnamon 1.9.2 through 3.8.6.
HighCVSS 8.1No exploitEPSS 2%debian · debian linuxJul 2, 2018
- CVE-2019-2032632Monitor
A heap-based buffer overflow in _cairo_image_surface_create_from_jpeg() in extensions/cairo_io/cairo-image-surface-jpeg.c in GNOME gThumb be
HighCVSS 7.8Proof of conceptEPSS 2%gnome · gthumbMar 16, 2020
- CVE-2023-4445132Monitor
Linux Mint Xreader EPUB File Parsing Directory Traversal Remote Code Execution Vulnerability
HighCVSS 7.8Proof of conceptEPSS 2%linuxmint · xreaderMay 2, 2024
- CVE-2023-2938031Monitor
Warpinator before 1.6.0 allows remote file deletion via directory traversal in top_dir_basenames.
HighCVSS 7.5No exploitEPSS 2%linuxmint · warpinatorMay 28, 2023
- CVE-2023-4445231Monitor
Linux Mint Xreader CBT File Parsing Argument Injection Remote Code Execution Vulnerability
HighCVSS 7.8Proof of conceptEPSS 1%linuxmint · xreaderMay 2, 2024
- CVE-2022-4272530Monitor
Warpinator through 1.2.14 allows access outside of an intended directory, as demonstrated by symbolic directory links.
HighCVSS 7.5No exploitEPSS 1%linuxmint · warpinatorOct 10, 2022
- CVE-2012-156730Monitor
LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintUpdate.
HighCVSS 7.5No exploitEPSS 1%linuxmint · linuxmintFeb 7, 2020
- CVE-2012-156630Monitor
LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintNanny.
HighCVSS 7.5No exploitEPSS 1%linuxmint · linuxmintFeb 7, 2020
- CVE-2014-194928Monitor
GTK+ 3.10.9 and earlier, as used in cinnamon-screensaver, gnome-screensaver, and other applications, allows physically proximate attackers t
HighCVSS 7.2No exploitEPSS 0%gnome · gtkJan 16, 2015