Turbolinux has a concentrated vulnerability footprint across a range of desktop and server Linux distributions, including its flagship Server, Workstation, and Home editions, positioning it as a moderately visible entry in the Linux distribution landscape. The vendor's disclosures frequently acquire public exploit code, reflecting the broad applicability of kernel and system-library vulnerabilities across Linux variants. The recurring disclosure pattern centers on placeholder classifications rather than detailed weakness mappings, a common characteristic of legacy or historically archived Linux distribution advisories, limiting structural insight into the underlying attack vectors. Defenders should treat Turbolinux patches for core OS components as broadly applicable to deployed instances; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Turbolinux over time
Signals from CVEs in this vendor scope (40 CVEs).
40 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2003-0694HIGH The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c. | Oct 6, 2003 | 10.0 | 73 | NO | YES |
CVE-2003-0681HIGH A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has | Oct 6, 2003 | 7.5 | 45 | NO | YES |
CVE-2000-0844HIGH Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via fun | Nov 14, 2000 | 10.0 | 44 | NO | YES |
CVE-2000-0170HIGH Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable. | Feb 26, 2000 | 7.2 | 28 | NO | YES |
CVE-2000-0438HIGH Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint parameter. | May 22, 2000 | 7.2 | 27 | NO | YES |
CVE-2000-0172HIGH The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges. | Mar 3, 2000 | 7.2 | 27 | NO | YES |
CVE-2000-0052HIGH Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack. | Jan 4, 2000 | 7.2 | 27 | NO | YES |
CVE-1999-0948HIGH Buffer overflow in uum program for Canna input system allows local users to gain root privileges. | Nov 2, 1999 | 7.2 | 27 | NO | YES |
CVE-1999-0949HIGH Buffer overflow in canuum program for Canna input system allows local users to gain root privileges. | Nov 2, 1999 | 7.2 | 27 | NO | YES |
CVE-2005-3625HIGH Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams t | Dec 31, 2005 | 10.0 | 26 | NO | NO |
Signals from CVEs in this vendor scope (40 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Turbolinux.
Media articles that mention a CVE ID that affects a product developed by Turbolinux — matched by CVE ID, not by vendor name.