Altlinux is a Linux distribution with a niche footprint, where the recorded vulnerability exposure centers on the core operating system itself. The observed weakness classifications are not sufficiently specific to establish a durable pattern, reflecting either a sparse or heterogeneous set of underlying issues. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Altlinux over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-0699HIGH Multiple buffer overflows in the dissect_a11_radius function in the CDMA A11 (3G-A11) dissector (packet-3g-a11.c) for Ethereal 0.10.9 and earlier allow remote attackers to execute | Mar 8, 2005 | 7.5 | 21 | NO | NO |
CVE-2005-0605HIGH scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow. | Mar 2, 2005 | 7.5 | 21 | NO | NO |
CVE-2005-0638HIGH xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly qu | Mar 2, 2005 | 7.5 | 20 | NO | NO |
CVE-2005-0639HIGH Multiple vulnerabilities in xli before 1.17 may allow remote attackers to execute arbitrary code via "buffer management errors" from certain image properties, some of which may be | Mar 2, 2005 | 7.5 | 20 | NO | NO |
CVE-2005-0667MEDIUM Buffer overflow in Sylpheed before 1.0.3 and other versions before 1.9.5 allows remote attackers to execute arbitrary code via an e-mail message with certain headers containing non | Mar 7, 2005 | 5.1 | 16 | NO | NO |
CVE-2004-1145MEDIUM Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java classes via JavaScript and (2) do not properly restrict access to certain Java cl | Dec 15, 2004 | 5.0 | 16 | NO | NO |
CVE-2005-0398MEDIUM The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets. | Mar 14, 2005 | 5.0 | 15 | NO | NO |
CVE-2004-1139MEDIUM Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 through 0.10.7 allows remote attackers to cause a denial of service (application crash). | Dec 15, 2004 | 5.0 | 15 | NO | NO |
CVE-2004-1142MEDIUM Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed SMB packet. | Dec 15, 2004 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Altlinux.
Media articles that mention a CVE ID that affects a product developed by Altlinux — matched by CVE ID, not by vendor name.