Enterprise Linux Compute Node Eus
Vendor:
First CVE: Aug 12, 2015 · Active for 10 years
7
Total CVEs
More Total CVEs than 83% of tracked products
1.8
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
6.0
Avg CVSS
Higher Avg CVSS than 21% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Enterprise Linux Compute Node Eus over time
Volume of CVEsAvg CVSS Base Score
First CVE
Aug 12, 2015
10 years ago
Most Recent CVE
Sep 20, 2019
2,500 days ago
CVE Severity & Scoring
Enterprise Linux Compute Node Eus7 CVEs
14%
57%
29%
All CVEs352,427 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local5 (71.4%)
Network0 (0.0%)
Unknown2 (28.6%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (42.9%)
High2 (28.6%)
Unknown2 (28.6%)
User Interaction
None4 (57.1%)
Unknown2 (28.6%)
Required1 (14.3%)
Privileges Required
Low4 (57.1%)
High0 (0.0%)
None1 (14.3%)
Unknown2 (28.6%)
Top CVEs
Signals from CVEs in this product scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-5165HIGH The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecifie | Aug 12, 2015 | 9.3 | 28 | NO | NO |
CVE-2015-3214MEDIUM The pit_ioport_read in i8254.c in the Linux kernel before 2.6.33 and QEMU before 2.3.1 does not distinguish between read lengths and write lengths, which might allow guest OS users | Aug 31, 2015 | 6.9 | 27 | NO | YES |
CVE-2019-14816HIGH There is heap-based buffer overflow in kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows local users to cause a denial of serv | Sep 20, 2019 | 7.8 | 25 | NO | NO |
CVE-2019-6454MEDIUM An issue was discovered in sd-bus in systemd 239. bus_process_object() in libsystemd/sd-bus/bus-objects.c allocates a variable-length stack buffer for temporarily storing the objec | Mar 21, 2019 | 5.5 | 21 | NO | NO |
CVE-2017-15129MEDIUM A use-after-free vulnerability was found in network namespaces code affecting the Linux kernel before 4.14.11. The function get_net_ns_by_id() in net/core/net_namespace.c does not | Jan 9, 2018 | 4.7 | 19 | NO | NO |
An out of bounds read was discovered in systemd-journald in the way it parses log messages that terminate with a colon ':'. A local attacker can use this flaw to disclose process m | Jan 11, 2019 | 3.3 | 17 | NO | NO |
CVE-2015-4170MEDIUM Race condition in the ldsem_cmpxchg function in drivers/tty/tty_ldsem.c in the Linux kernel before 3.13-rc4-next-20131218 allows local users to cause a denial of service (ldsem_dow | May 2, 2016 | 4.7 | 14 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (7 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
14.3% of CVEs· 89th percentile
Social Chatter
Signals from CVEs in this product scope (7 CVEs).
Media Mentions
Signals from CVEs in this product scope (7 CVEs).
Top CNAs Publishing CVEs For Enterprise Linux Compute Node Eus
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 7.7 | 2 | 8.1 | 7.4% | 0 | 1 |
| 7.6 | 4 | 6.8 | 4.2% | 0 | 1 |
| 7.5 | 3 | 7.2 | 5.6% | 0 | 1 |
| 7.4 | 3 | 7.0 | 5.1% | 0 | 1 |
| 7.3 | 2 | 8.1 | 7.4% | 0 | 1 |
| 7.2 | 2 | 8.1 | 7.4% | 0 | 1 |
| 7.1 | 3 | 7.0 | 5.1% | 0 | 1 |