The Linux Audit Project maintains the audit framework and userspace tools for Linux kernel auditing, a narrowly scoped but foundational component for system logging and compliance monitoring. The observed vulnerability pattern centers on improper input validation within the audit daemon and related utilities, reflecting the complexity of parsing diverse audit event formats and configuration inputs. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Linux Audit Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-5186MEDIUM Audit before 2.4.4 in Linux does not sanitize escape characters in filenames. | Sep 6, 2017 | 5.3 | 16 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Linux Audit Project.
Media articles that mention a CVE ID that affects a product developed by Linux Audit Project — matched by CVE ID, not by vendor name.