Записи linaro
9 опубликованных записей вендора linaro.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 66,7 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-20 Improper Input Validation3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-94 Improper Control of Generation of Code ('Code Injection')2
- CWE-190 Integer Overflow or Wraparound1
- CWE-776 Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2022-45132Эксплойта нет | In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-submitted Jinja2 temlinaro · lava · CWE-94 | Критическая9,8 | — | 2,0 % | 18 нояб. 2022 г. |
39Наблюдать | CVE-2026-37540Эксплойта нет | OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing.linaro · openamp · CWE-190 | Критическая9,8 | — | 0,4 % | 1 мая 2026 г. |
36Наблюдать | CVE-2018-12565Эксплойта нет | An issue was discovered in Linaro LAVA before 2018.5.post1.linaro · lava · CWE-20 | Высокая8,8 | — | 2,5 % | 19 июн. 2018 г. |
35Наблюдать | CVE-2022-42902Эксплойта нет | In Linaro Automated Validation Architecture (LAVA) before 2022.10, there is dynamic code execution in lava_server/lavatable.py.linaro · lava · CWE-94 | Высокая8,8 | — | 1,4 % | 12 окт. 2022 г. |
31Наблюдать | CVE-2017-1000412Эксплойта нет | Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable to the bellcore attack in the LibTomCrypt code resulinaro · op-tee · CWE-200 | Высокая7,5 | — | 1,9 % | 2 янв. 2018 г. |
26Наблюдать | CVE-2018-12564Эксплойта нет | An issue was discovered in Linaro LAVA before 2018.5.post1.linaro · lava · CWE-20 | Средняя6,5 | — | 1,5 % | 19 июн. 2018 г. |
26Наблюдать | CVE-2022-44641Эксплойта нет | In Linaro Automated Validation Architecture (LAVA) before 2022.11, users with valid credentials can submit crafted XMLRPC requests that causlinaro · lava · CWE-776 | Средняя6,5 | — | 1,0 % | 18 нояб. 2022 г. |
26Наблюдать | CVE-2018-12563Эксплойта нет | An issue was discovered in Linaro LAVA before 2018.5.post1.linaro · lava · CWE-20 | Средняя6,5 | — | 0,9 % | 19 июн. 2018 г. |
23Наблюдать | CVE-2017-1000413Эксплойта нет | Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery parts of libMPA ilinaro · op-tee · CWE-200 | Средняя5,9 | — | 1,6 % | 2 янв. 2018 г. |
- CVE-2022-4513240В плане
In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-submitted Jinja2 tem
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %linaro · lava18 нояб. 2022 г.
- CVE-2026-3754039Наблюдать
OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing.
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %linaro · openamp1 мая 2026 г.
- CVE-2018-1256536Наблюдать
An issue was discovered in Linaro LAVA before 2018.5.post1.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %linaro · lava19 июн. 2018 г.
- CVE-2022-4290235Наблюдать
In Linaro Automated Validation Architecture (LAVA) before 2022.10, there is dynamic code execution in lava_server/lavatable.py.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %linaro · lava12 окт. 2022 г.
- CVE-2017-100041231Наблюдать
Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable to the bellcore attack in the LibTomCrypt code resu
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %linaro · op-tee2 янв. 2018 г.
- CVE-2018-1256426Наблюдать
An issue was discovered in Linaro LAVA before 2018.5.post1.
СредняяCVSS 6,5Эксплойта нетEPSS 2 %linaro · lava19 июн. 2018 г.
- CVE-2022-4464126Наблюдать
In Linaro Automated Validation Architecture (LAVA) before 2022.11, users with valid credentials can submit crafted XMLRPC requests that caus
СредняяCVSS 6,5Эксплойта нетEPSS 1 %linaro · lava18 нояб. 2022 г.
- CVE-2018-1256326Наблюдать
An issue was discovered in Linaro LAVA before 2018.5.post1.
СредняяCVSS 6,5Эксплойта нетEPSS 1 %linaro · lava19 июн. 2018 г.
- CVE-2017-100041323Наблюдать
Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery parts of libMPA i
СредняяCVSS 5,9Эксплойта нетEPSS 2 %linaro · op-tee2 янв. 2018 г.