Gentoo-foundation-inc
643 CVEs tracked since 2002. Since Oct 2009, 1 of them reached CISA KEV.
Gentoo-foundation-inc CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2009-10 | 2 | 0 |
| 2009-11 | 1 | 0 |
| 2009-12 | null or fewer | |
| 2010-01 | 1 | 0 |
| 2010-02 | 6 | 0 |
| 2010-03 | 8 | 0 |
| 2010-04 | 5 | 0 |
| 2010-05 | 2 | 0 |
| 2010-06 | 13 | 0 |
| 2010-07 | 11 | 0 |
| 2010-08 | 17 | 0 |
| 2010-09 | 3 | 0 |
| 2010-10 | 2 | 0 |
| 2010-11 | 2 | 0 |
| 2010-12 | 7 | 0 |
| 2011-01 | 3 | 0 |
| 2011-02 | 7 | 0 |
| 2011-03 | 8 | 0 |
| 2011-04 | 10 | 0 |
| 2011-05 | 5 | 0 |
| 2011-06 | 8 | 0 |
| 2011-07 | 2 | 0 |
| 2011-08 | 2 | 0 |
| 2011-09 | 3 | 0 |
| 2011-10 | 8 | 0 |
| 2011-11 | 2 | 0 |
| 2011-12 | 3 | 0 |
| 2012-01 | 6 | 0 |
| 2012-02 | 4 | 0 |
| 2012-03 | 4 | 0 |
| 2012-04 | 9 | 0 |
| 2012-05 | 13 | 0 |
| 2012-06 | 17 | 0 |
| 2012-07 | 12 | 0 |
| 2012-08 | 8 | 0 |
| 2012-09 | 6 | 0 |
| 2012-10 | 2 | 0 |
| 2012-11 | 5 | 0 |
| 2012-12 | null or fewer | |
| 2013-01 | 3 | 0 |
| 2013-02 | 6 | 0 |
| 2013-03 | 12 | 0 |
| 2013-04 | 9 | 0 |
| 2013-05 | 3 | 0 |
| 2013-06 | 1 | 0 |
| 2013-07 | 2 | 0 |
| 2013-08 | 7 | 0 |
| 2013-09 | 6 | 0 |
| 2013-10 | 10 | 0 |
| 2013-11 | 7 | 0 |
| 2013-12 | 8 | 0 |
| 2014-01 | 14 | 0 |
| 2014-02 | 10 | 0 |
| 2014-03 | 10 | 0 |
| 2014-04 | 12 | 1 |
| 2014-05 | 9 | 0 |
| 2014-06 | null or fewer | |
| 2014-07 | 4 | 0 |
| 2014-08 | 2 | 0 |
| 2014-09 | 3 | 0 |
| 2014-10 | 5 | 0 |
| 2014-11 | 5 | 0 |
| 2014-12 | 2 | 0 |
Products
The products that kept showing up in Gentoo-foundation-inc's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Gentoo-foundation-inc.
- CVE-2024-3094Xz: malicious code in distributed source10.0
- CVE-2014-8117softmagic.c in file before 5.21 does not properly limit recursion, which allows remote attackers to cause a denial of service (CPU consumption or crash) via unspecified vectors.5.0
- CVE-2014-8104OpenVPN 2.x before 2.0.11, 2.1.x, 2.2.x before 2.2.3, and 2.3.x before 2.3.6 allows remote authenticated users to cause a denial of service (server crash) via a small control channel packet.6.8
- CVE-2014-8962Stack-based buffer overflow in stream_decoder.c in libFLAC before 1.3.1 allows remote attackers to execute arbitrary code via a crafted .flac file.7.5
- CVE-2014-7824D-Bus 1.3.0 through 1.6.x before 1.6.26, 1.8.x before 1.8.10, and 1.9.x before 1.9.2 allows local users to cause a denial of service (prevention of new connections and connection drop) by queuing t...2.1
- CVE-2014-3248Untrusted search path vulnerability in Puppet Enterprise 2.8 before 2.8.7, Puppet before 2.7.26 and 3.x before 3.6.2, Facter 1.6.x and 2.x before 2.0.2, Hiera before 1.3.4, and Mcollective before 2...6.2
- CVE-2014-3158Integer overflow in the getword function in options.c in pppd in Paul's PPP Package (ppp) before 2.4.7 allows attackers to "access privileged options" via a long word in an options file, which trig...7.5
- CVE-2014-3683Integer overflow in rsyslog before 7.6.7 and 8.x before 8.4.2 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of service (crash) via a large priority (PRI) value. NOTE: this...5.0
- CVE-2014-4877Absolute path traversal vulnerability in GNU Wget before 1.16, when recursion is enabled, allows remote FTP servers to write to arbitrary files, and consequently execute arbitrary code, via a LIST ...9.3
- CVE-2014-3636D-Bus 1.3.0 through 1.6.x before 1.6.24 and 1.8.x before 1.8.8 allows local users to (1) cause a denial of service (prevention of new connections and connection drop) by queuing the maximum number ...1.9
- CVE-2014-5270Libgcrypt before 1.5.4, as used in GnuPG and other products, does not properly perform ciphertext normalization and ciphertext randomization, which makes it easier for physically proximate attacker...2.1
- CVE-2014-5351The kadm5_randkey_principal_3 function in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) before 1.13 sends old keys in a response to a -randkey -keepold request, which allows...2.1
- CVE-2013-1436The XMonad.Hooks.DynamicLog module in xmonad-contrib before 0.11.2 allows remote attackers to execute arbitrary commands via a web page title, which activates the commands when the user clicks on t...7.5
- CVE-2014-3637D-Bus 1.3.0 through 1.6.x before 1.6.24 and 1.8.x before 1.8.8 does not properly close connections for processes that have terminated, which allows local users to cause a denial of service via a D-...2.1
- CVE-2014-3639The dbus-daemon in D-Bus before 1.6.24 and 1.8.x before 1.8.8 does not properly close old connections, which allows local users to cause a denial of service (incomplete connection consumption and p...2.1
The record
- Peak rank
- #3 in May 2009
- Busiest month shown
- Aug 2010, 17 CVEs
- Months with a KEV entry
- 1 since Oct 2009
- Monthly snapshots
- 118 since 2002