Pulseaudio

Vendor:

First CVE: Apr 2, 2007 · Active for 19 years

8
Total CVEs
Bottom 1%
1.1
Avg CVEs / Year
Bottom 1%
5.7
Avg CVSS
Higher Avg CVSS than 21% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Pulseaudio over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 2, 2007
19 years ago
Most Recent CVE
Nov 23, 2024
611 days ago

CVE Severity & Scoring

Pulseaudio8 CVEs
All CVEs352,785 CVEs
LowMediumHigh
Attack Vector
Local3 (37.5%)
Network0 (0.0%)
Unknown5 (62.5%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (25.0%)
High1 (12.5%)
Unknown5 (62.5%)
User Interaction
None2 (25.0%)
Unknown5 (62.5%)
Required1 (12.5%)
Privileges Required
Low2 (25.0%)
High1 (12.5%)
None0 (0.0%)
Unknown5 (62.5%)

Top CVEs

Signals from CVEs in this product scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related to the application setting LD_BI
Jul 17, 20097.232NOYES
PulseAudio 0.9.5 allows remote attackers to cause a denial of service (daemon crash) via (1) a PA_PSTREAM_DESCRIPTOR_LENGTH value of FRAME_SIZE_MAX_ALLOW sent on TCP port 9875, whi
Apr 2, 20077.832NOYES
The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3) setuid, and (4) seteuid calls when atte
Jan 29, 20087.222NONO
Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail conditio
Nov 19, 20206.120NONO
The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on
Mar 18, 20106.918NONO
Ubuntu's implementation of pulseaudio can be crashed by a malicious program if a bluetooth headset is connected.
Nov 23, 20244.013NONO
An Ubuntu-specific modification to Pulseaudio to provide security mediation for Snap-packaged applications was found to have a bypass of intended access restriction for snaps which
May 15, 20203.312NONO
The pa_rtp_recv function in modules/rtp/rtp.c in the module-rtp-recv module in PulseAudio 5.0 and earlier allows remote attackers to cause a denial of service (assertion failure an
Jun 11, 20142.912NONO

Exploit Exposure

Signals from CVEs in this product scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
25.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (8 CVEs).

Media Mentions

Signals from CVEs in this product scope (8 CVEs).

Top CNAs Publishing CVEs For Pulseaudio

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
5.012.91.5%00
4.012.91.5%00
3.012.91.5%00
2.112.91.5%00
2.012.91.5%00
1.99.212.91.5%00
1.99.112.91.5%00
1.112.91.5%00
1.012.91.5%00
1\16.10.3%00
0.9.917.20.7%01
0.9.817.20.6%00
0.9.617.20.6%00
0.9.517.87.4%01
0.9.1916.90.3%00
0.9.1417.20.7%01
0.9.1027.00.5%01