Smartos
Vendor:
First CVE: Jun 12, 2012 · Active for 14 years
14
Total CVEs
More Total CVEs than 91% of tracked products
2.3
Avg CVEs / Year
Higher CVE frequency than 73% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 43% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Smartos over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 12, 2012
14 years ago
Most Recent CVE
Dec 26, 2022
1,306 days ago
CVE Severity & Scoring
Smartos14 CVEs
21%
71%
All CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local12 (85.7%)
Network1 (7.1%)
Unknown1 (7.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low6 (42.9%)
High7 (50.0%)
Unknown1 (7.1%)
User Interaction
None13 (92.9%)
Unknown1 (7.1%)
Required0 (0.0%)
Privileges Required
Low12 (85.7%)
High0 (0.0%)
None1 (7.1%)
Unknown1 (7.1%)
Top CVEs
Signals from CVEs in this product scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-0217HIGH The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracle Solaris 11 and earlier; illumos befor | Jun 12, 2012 | 7.2 | 65 | NO | YES |
CVE-2020-27678CRITICAL An issue was discovered in illumos before 2020-10-22, as used in OmniOS before r151030by, r151032ay, and r151034y and SmartOS before 20201022. There is a buffer overflow in parse_u | Oct 26, 2020 | 9.8 | 30 | NO | NO |
CVE-2016-8733HIGH An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFS_ | Dec 14, 2016 | 8.8 | 28 | NO | NO |
CVE-2016-9032HIGH An exploitable buffer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFS_A | Dec 14, 2016 | 7.0 | 24 | NO | NO |
CVE-2018-1171HIGH This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An attacker must first obtain the | Mar 19, 2018 | 7.0 | 23 | NO | NO |
CVE-2018-1166HIGH This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An attacker must first obtain the | Feb 21, 2018 | 7.8 | 23 | NO | NO |
CVE-2018-1165HIGH This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An attacker must first obtain the | Feb 21, 2018 | 7.0 | 22 | NO | NO |
CVE-2016-9040MEDIUM An exploitable denial of service exists in the the Joyent SmartOS OS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command H | Sep 7, 2018 | 5.5 | 21 | NO | NO |
CVE-2021-43395MEDIUM An issue was discovered in illumos before f859e7171bb5db34321e45585839c6c3200ebb90, OmniOS Community Edition r151038, OpenIndiana Hipster 2021.04, and SmartOS 20210923. A local unp | Dec 26, 2022 | 5.5 | 20 | NO | NO |
CVE-2016-9031HIGH An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFS_ | Dec 14, 2016 | 7.8 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (14 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
7.1% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
7.1% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (14 CVEs).
Media Mentions
Signals from CVEs in this product scope (14 CVEs).
Top CNAs Publishing CVEs For Smartos
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 20210923 | 1 | 5.5 | 0.3% | 0 | 0 |
| 20170803-20170803t064301z | 1 | 7.0 | 0.4% | 0 | 0 |
| 20170803 | 2 | 7.4 | 0.4% | 0 | 0 |
| 20161110t013148z | 6 | 6.6 | 0.5% | 0 | 0 |