Linaro develops a narrowly scoped portfolio centered on trusted execution environment components and test infrastructure—notably OP-TEE, Trusted Firmware-M, and LAVA—that serve as foundational elements in ARM-based embedded and mobile systems. Vulnerabilities affecting the vendor skew toward serious outcomes, with a meaningful share reaching critical severity, and they recur through weakness classes including improper input validation, sensitive information exposure, and code-injection vectors that are characteristic of security-sensitive firmware and test frameworks. Defenders should monitor this vendor's advisories closely given the privileged role of these components in the system boot and trust chain; current severity and exploitation counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Linaro over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-37540CRITICAL OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing. In elf_loader.c, it performs multiplication of two attacker-controlled 16-bit va | May 1, 2026 | 9.8 | 37 | NO | NO |
CVE-2022-45132CRITICAL In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-submitted Jinja2 template. The REST API endpoint for validat | Nov 18, 2022 | 9.8 | 32 | NO | NO |
CVE-2018-12565HIGH An issue was discovered in Linaro LAVA before 2018.5.post1. Because of use of yaml.load() instead of yaml.safe_load() when parsing user data, remote code execution can occur. | Jun 19, 2018 | 8.8 | 27 | NO | NO |
CVE-2017-1000412HIGH Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable to the bellcore attack in the LibTomCrypt code resulting in compromised private RSA key. | Jan 2, 2018 | 7.5 | 25 | NO | NO |
CVE-2022-44641MEDIUM In Linaro Automated Validation Architecture (LAVA) before 2022.11, users with valid credentials can submit crafted XMLRPC requests that cause a recursive XML entity expansion, lead | Nov 18, 2022 | 6.5 | 23 | NO | NO |
CVE-2022-42902HIGH In Linaro Automated Validation Architecture (LAVA) before 2022.10, there is dynamic code execution in lava_server/lavatable.py. Due to improper input sanitization, an anonymous use | Oct 13, 2022 | 8.8 | 22 | NO | NO |
CVE-2017-1000413MEDIUM Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery parts of libMPA in OP-TEE resulting in a compromised priv | Jan 2, 2018 | 5.9 | 22 | NO | NO |
CVE-2018-12564MEDIUM An issue was discovered in Linaro LAVA before 2018.5.post1. Because of support for URLs in the submit page, a user can forge an HTTP request that will force lava-server-gunicorn to | Jun 19, 2018 | 6.5 | 21 | NO | NO |
CVE-2018-12563MEDIUM An issue was discovered in Linaro LAVA before 2018.5.post1. Because of support for file: URLs, a user can force lava-server-gunicorn to download any file from the filesystem if it' | Jun 19, 2018 | 6.5 | 17 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Linaro.
Media articles that mention a CVE ID that affects a product developed by Linaro — matched by CVE ID, not by vendor name.