Linux Workstation

Vendor:

First CVE: Nov 14, 2018 · Active for 7 years

44
Total CVEs
More Total CVEs than 97% of tracked products
44.0
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
7.5
Avg CVSS
Higher Avg CVSS than 59% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Linux Workstation over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 14, 2018
7 years ago
Most Recent CVE
Dec 11, 2018
2,782 days ago

CVE Severity & Scoring

Linux Workstation44 CVEs
All CVEs352,231 CVEs
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network44 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low43 (97.7%)
High1 (2.3%)
Unknown0 (0.0%)
User Interaction
None0 (0.0%)
Unknown0 (0.0%)
Required44 (100.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None44 (100.0%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (44 CVEs).

44 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
An integer overflow on 32-bit systems in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML
Dec 4, 20188.843NOYES
Incorrect refcounting in AppCache in Google Chrome prior to 70.0.3538.67 allowed a remote attacker to perform a sandbox escape via a crafted HTML page.
Nov 14, 20189.629NONO
Incorrect handing of paths leading to a use after free in Skia in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploit heap corruption via a crafted
Dec 11, 20188.828NONO
Inline metadata in GarbageCollection in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Dec 4, 20188.828NONO
An integer overflow that lead to a heap buffer-overflow in Skia in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code inside a sandbox via a c
Dec 4, 20188.828NONO
An iterator-invalidation bug in PDFium in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file.
Dec 4, 20188.828NONO
A use-after-free in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
Dec 4, 20188.828NONO
A double-eviction in the Incognito mode cache that lead to a user-after-free in Networking Disk Cache in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute a
Dec 4, 20188.828NONO
Re-entry of a destructor in Networking Disk Cache in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code via a crafted HTML page.
Dec 4, 20188.828NONO
A heap buffer overflow in WebGL in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.
Nov 14, 20188.828NONO

Exploit Exposure

Signals from CVEs in this product scope (44 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
2.3% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (44 CVEs).

Media Mentions

Signals from CVEs in this product scope (44 CVEs).

Top CNAs Publishing CVEs For Linux Workstation

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
6.0447.51.9%01