Archlinux
5 CVEs tracked since 2025. Since Jan 2025, none of them reached CISA KEV.
Archlinux CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2025-01 | 5 | 0 |
Products
The products that kept showing up in Archlinux's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 6 most recently published vulnerabilities affecting Archlinux.
- CVE-2024-12084Rsync: heap buffer overflow in rsync due to improper checksum length handling9.8
- CVE-2024-12087Rsync: path traversal vulnerability in rsync6.5
- CVE-2024-12088Rsync: --safe-links option bypass leads to path traversal6.5
- CVE-2024-12086Rsync: rsync server leaks arbitrary client files6.1
- CVE-2024-12085Rsync: info leak via uninitialized stack contents7.5
- CVE-2020-5291Privilege escalation in setuid mode via user namespaces in Bubblewrap7.2
The record
- Peak rank
- #155 in Jan 2025
- Busiest month shown
- Jan 2025, 5 CVEs
- Months with a KEV entry
- 0 since Jan 2025
- Monthly snapshots
- 1 since 2025