Zaal's vulnerability profile centers on its TGT product and is characterized by memory-safety issues, specifically improper buffer-bounds restriction and format-string handling. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zaal over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-0001MEDIUM Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, | Mar 15, 2011 | 5.0 | 19 | NO | NO |
CVE-2010-2221MEDIUM Multiple buffer overflows in the iSNS implementation in isns.c in (1) Linux SCSI target framework (aka tgt or scsi-target-utils) before 1.0.6, (2) iSCSI Enterprise Target (aka iscs | Jul 8, 2010 | 5.0 | 18 | NO | NO |
CVE-2010-0743MEDIUM Multiple format string vulnerabilities in isns.c in (1) Linux SCSI target framework (aka tgt or scsi-target-utils) 1.0.3, 0.9.5, and earlier and (2) iSCSI Enterprise Target (aka is | Apr 8, 2010 | 5.0 | 16 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zaal.
Media articles that mention a CVE ID that affects a product developed by Zaal — matched by CVE ID, not by vendor name.