Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Rpath

First CVE: Dec 7, 2006Active for: 20 yearsTotal CVEs: 19
34.0
VTI Score
Medium

Rpath is a modestly represented vendor whose vulnerability disclosures center on its Linux distribution and appliance platform products, positioning it as a niche participant in the embedded and specialized-system space. The recurring weakness classes—information exposure, link-following conditions, and memory-boundary issues—reflect the low-level system and filesystem mechanics inherent to Linux kernel and initialization infrastructure, and public exploit code has an elevated tendency to emerge for these disclosures. Live severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
19
Total CVEs
More Total CVEs than 96% of tracked vendors
0.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
6.5
Avg CVSS Score
Higher Avg CVSS Score than 41% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Rpath over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 7, 2006
19 years ago
Most Recent CVE
Jan 20, 2009
6,394 days ago

Products(6 total)

Top CVEs

Signals from CVEs in this vendor scope (19 CVEs).

19 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2007-5962HIGH
Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 through 8, and on Foresight Linux and rPath appliances, allows rem
May 22, 20087.134NOYES
CVE-2008-0411MEDIUM
Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file con
Feb 28, 20086.833NOYES
CVE-2006-6235HIGH
A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute arbitrary code via crafted OpenPGP packets
Dec 7, 200610.026NONO
CVE-2007-5116HIGH
Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching
Nov 7, 20077.523NONO
CVE-2007-1351HIGH
Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execut
Apr 6, 20078.523NONO
CVE-2008-5516HIGH
The web interface in git (gitweb) 1.5.x before 1.5.5 allows remote attackers to execute arbitrary commands via shell metacharacters related to git_search.
Jan 20, 20097.522NONO
CVE-2008-3138MEDIUM
The (1) PANA and (2) KISMET dissectors in Wireshark (formerly Ethereal) 0.99.3 through 1.0.0 allow remote attackers to cause a denial of service (application stop) via unknown vect
Jul 10, 20085.019NONO
CVE-2007-5194MEDIUM
The Chroot server in rMake 1.0.11 creates a /dev/zero device file with read/write permissions for the rMake user and the same minor device number as /dev/port, which might allow lo
Oct 4, 20076.919NONO
CVE-2007-4131MEDIUM
Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (sl
Aug 25, 20076.819NONO
CVE-2007-3106MEDIUM
lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via inv
Jul 26, 20076.819NONO
View all 19 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products19 CVEs
11%
53%
37%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown19 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown19 (100.0%)
User Interaction
None0 (0.0%)
Unknown19 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown19 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (19 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
10.5% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Rpath.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Rpath — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Rpath's Products

View all 2 CNAs →

Top CWEs