Enterprise Linux Tus

Vendor:

First CVE: Jul 20, 2014 · Active for 12 years

24
Total CVEs
More Total CVEs than 96% of tracked products
2.2
Avg CVEs / Year
Higher CVE frequency than 76% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 46% of tracked products
12.5%
KEV Rate
Higher KEV Rate than 99% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Enterprise Linux Tus over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 20, 2014
12 years ago
Most Recent CVE
Apr 22, 2026
97 days ago

CVE Severity & Scoring

Enterprise Linux Tus24 CVEs
All CVEs353,173 CVEs
LowMediumHighCritical
Attack Vector
Local7 (29.2%)
Network15 (62.5%)
Unknown1 (4.2%)
Physical0 (0.0%)
Adjacent Network1 (4.2%)
Attack Complexity
Low16 (66.7%)
High7 (29.2%)
Unknown1 (4.2%)
User Interaction
None22 (91.7%)
Unknown1 (4.2%)
Required1 (4.2%)
Privileges Required
Low12 (50.0%)
High1 (4.2%)
None10 (41.7%)
Unknown1 (4.2%)

Top CVEs

Signals from CVEs in this product scope (24 CVEs).

24 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the c
Apr 22, 20267.899YESYES
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature
Nov 10, 20167.095YESYES
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Proc
Jul 30, 20258.876YESNO
Go before 1.8.4 and 1.9.x before 1.9.1 allows "go get" remote command execution. Using custom domains, it is possible to arrange things so that example.com/pkg1 points to a Subvers
Oct 5, 20179.835NONO
A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds checking in the XkbSetCompatMap() function can cause an unsigned short overflow. If a
Oct 30, 20257.330NONO
A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup. The software frees certain data structures without properly detachin
Oct 30, 20257.329NONO
A flaw was found in the ptp4l program of the linuxptp package. A missing length check when forwarding a PTP message between ports allows a remote attacker to cause an information l
Jul 9, 20218.829NONO
A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cause possible privilege escalation.
Feb 18, 20228.127NONO
urllib in Python 2.x through 2.7.16 supports the local_file: scheme, which makes it easier for remote attackers to bypass protection mechanisms that blacklist file: URIs, as demons
Mar 23, 20199.127NONO
A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it fro
Jun 12, 20248.125NONO

Exploit Exposure

Signals from CVEs in this product scope (24 CVEs).

CISA KEV
3 CVEs
12.5% of CVEs· 99th percentile
Metasploit
1 CVE
4.2% of CVEs· 97th percentile
Nuclei
1 CVE
4.2% of CVEs· 97th percentile
ExploitDB
1 CVE
4.2% of CVEs· 85th percentile

Social Chatter

Signals from CVEs in this product scope (24 CVEs).

Media Mentions

Signals from CVEs in this product scope (24 CVEs).

Top CNAs Publishing CVEs For Enterprise Linux Tus

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
8.867.316.6%21
8.697.613.1%21
8.487.43.6%00
8.287.43.6%00
7.746.65.0%00
7.637.66.2%00
7.315.07.1%00
6.517.083.0%11