Linux

Vendor:

First CVE: Dec 19, 1994 · Active for 31 years

252
Total CVEs
More Total CVEs than 100% of tracked products
11.0
Avg CVEs / Year
Higher CVE frequency than 96% of tracked products
6.3
Avg CVSS
Higher Avg CVSS than 26% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Linux over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 19, 1994
31 years ago
Most Recent CVE
Jun 18, 2025
401 days ago

CVE Severity & Scoring

Linux252 CVEs
All CVEs352,294 CVEs
LowMediumHighCritical
Attack Vector
Local5 (2.0%)
Network19 (7.5%)
Unknown227 (90.1%)
Physical0 (0.0%)
Adjacent Network1 (0.4%)
Attack Complexity
Low18 (7.1%)
High7 (2.8%)
Unknown227 (90.1%)
User Interaction
None24 (9.5%)
Unknown227 (90.1%)
Required1 (0.4%)
Privileges Required
Low8 (3.2%)
High2 (0.8%)
None15 (6.0%)
Unknown227 (90.1%)

Top CVEs

Signals from CVEs in this product scope (252 CVEs).

252 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
Dec 19, 200010.084NOYES
The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password that allows remote attackers to execute arbitrary commands.
Apr 24, 200010.081NOYES
A Unix account has a default, null, blank, or missing password.
Mar 1, 19987.572NOYES
Apache on Red Hat Linux with with the UserDir directive enabled generates different error codes when a username exists and there is no public_html directory and when the username d
Sep 12, 20015.068NOYES
The passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary commands via shell metacharacters.
Apr 24, 200010.066NOYES
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
Feb 9, 199910.060NOYES
Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.
Jul 24, 20037.557NOYES
Unspecified vulnerability in the dpwinsup module (dpwinsup.dll) for dpwingad (dpwingad.exe) in HP Data Protector Express and Express SSE 3.x before build 47065, and Express and Exp
May 14, 20097.256NOYES
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
Oct 12, 199810.056NOYES
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
Dec 4, 19969.855NONO

Exploit Exposure

Signals from CVEs in this product scope (252 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
5 CVEs
2.0% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
80 CVEs
31.7% of CVEs· 90th percentile

Social Chatter

Signals from CVEs in this product scope (252 CVEs).

Media Mentions

Signals from CVEs in this product scope (252 CVEs).

Top CNAs Publishing CVEs For Linux

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
9.0306.54.5%07
8.0216.44.7%04
7.3346.74.7%06
7.2376.23.9%07
7.1376.13.5%08
7.0535.54.5%015
6.2e34.10.7%02
6.2626.36.2%029
6.1435.83.4%023
6.0546.44.7%029
5.2327.53.3%018
5.1237.75.6%012
5.0218.08.5%012
4.2227.25.7%012
4.1168.39.5%09
4.0197.98.4%011
3.0.347.37.4%02
2.4.235.02.3%00
2.147.97.7%03
2.0.3425.01.8%00