Standards Based Linux Instrumentation maintains system management and instrumentation tools for enterprise Linux environments, centered on the SBLIM SFCB (Small Footprint CIM Broker) and related CIM client implementations. The vulnerability exposure reflects the complexity of file-system and memory-handling operations required for low-level system introspection, with recurring weakness classes including link-following conditions and buffer-boundary issues. Current exposure counts and severity details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Standards Based Linux Instrumentation over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-2054HIGH Integer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB 1.3.4 through 1.3.7, when the configuration sets httpMaxContentLength to a zero value, allows remote attackers to cau | Jun 15, 2010 | 10.0 | 31 | NO | NO |
CVE-2010-1937HIGH Heap-based buffer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB before 1.3.8 might allow remote attackers to execute arbitrary code via a Content-Length HTTP header that s | Jun 15, 2010 | 10.0 | 30 | NO | NO |
CVE-2012-2328MEDIUM internal/cimxml/sax/NodeFactory.java in Standards-Based Linux Instrumentation for Manageability (SBLIM) Common Information Model (CIM) Client (aka sblim-cim-client2) before 2.1.12 | Feb 10, 2014 | 5.0 | 19 | NO | NO |
CVE-2009-0416MEDIUM The SSL certificate setup program (genSslCert.sh) in Standards Based Linux Instrumentation for Manageability (SBLIM) sblim-sfcb 1.3.2 allows local users to overwrite arbitrary file | Feb 3, 2009 | 6.9 | 18 | NO | NO |
CVE-2012-3381MEDIUM sfcb in sblim-sfcb places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working | Aug 17, 2012 | 4.4 | 17 | NO | NO |
CVE-2005-3144MEDIUM httpAdapter.c in sblim-sfcb before 0.9.2 allows remote attackers to cause a denial of service via long HTTP headers. | Oct 5, 2005 | 5.0 | 17 | NO | NO |
CVE-2015-5185MEDIUM The lookupProviders function in providerMgr.c in sblim-sfcb 1.3.4 and 1.3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) v | Sep 28, 2015 | 5.0 | 16 | NO | NO |
CVE-2005-3145MEDIUM httpAdapter.c in sblim-sfcb before 0.9.2 allows remote attackers to cause a denial of service (resource consumption) by connecting to sblim-sfcb but not sending any data. | Oct 5, 2005 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Standards Based Linux Instrumentation.
Media articles that mention a CVE ID that affects a product developed by Standards Based Linux Instrumentation — matched by CVE ID, not by vendor name.