CVE Tools

Illumos

4 CVEs tracked since 2012. Since Jun 2012, none of them reached CISA KEV.

Illumos CVEs per month

Jun 2012 to Mar 2017. Point at a month, or focus the strip and use the arrow keys.
Illumos CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2012-0610
2012-07null or fewer
2012-08null or fewer
2012-09null or fewer
2012-10null or fewer
2012-11null or fewer
2012-12null or fewer
2013-01null or fewer
2013-02null or fewer
2013-03null or fewer
2013-04null or fewer
2013-05null or fewer
2013-06null or fewer
2013-07null or fewer
2013-08null or fewer
2013-09null or fewer
2013-10null or fewer
2013-11null or fewer
2013-12null or fewer
2014-01null or fewer
2014-02null or fewer
2014-03null or fewer
2014-04null or fewer
2014-05null or fewer
2014-06null or fewer
2014-07null or fewer
2014-08null or fewer
2014-09null or fewer
2014-10null or fewer
2014-11null or fewer
2014-12null or fewer
2015-0110
2015-02null or fewer
2015-03null or fewer
2015-04null or fewer
2015-05null or fewer
2015-06null or fewer
2015-07null or fewer
2015-08null or fewer
2015-09null or fewer
2015-10null or fewer
2015-11null or fewer
2015-12null or fewer
2016-01null or fewer
2016-02null or fewer
2016-03null or fewer
2016-04null or fewer
2016-05null or fewer
2016-06null or fewer
2016-07null or fewer
2016-08null or fewer
2016-09null or fewer
2016-10null or fewer
2016-11null or fewer
2016-12null or fewer
2017-01null or fewer
2017-02null or fewer
2017-0320

Products

The products that kept showing up in Illumos's monthly top three, with their CVEs summed over those months.

  1. Illumos43 months
  2. Osnet-incorporation21 month

Latest CVEs

The 10 most recently published vulnerabilities affecting Illumos.

  1. CVE-2026-15422SCTP needs to better-check INIT ACK chunk parameters—
  2. CVE-2026-15449TOCTOU double copyin in illumos dld ioctl handling causes kernel heap corruption—
  3. CVE-2023-31284illumos illumos-gate before 676abcb has a stack buffer overflow in /dev/net, leading to privilege escalation via a stat on a long file name in /dev/net.7.8
  4. CVE-2021-43395An issue was discovered in illumos before f859e7171bb5db34321e45585839c6c3200ebb90, OmniOS Community Edition r151038, OpenIndiana Hipster 2021.04, and SmartOS 20210923. A local unprivileged user ca...5.5
  5. CVE-2019-9579An issue was discovered in Illumos in Nexenta NexentaStor 4.0.5 and 5.1.2, and other products. The SMB server allows an attacker to have unintended access, e.g., an attacker with WRITE_XATTR can ch...8.1
  6. CVE-2020-27678An issue was discovered in illumos before 2020-10-22, as used in OmniOS before r151030by, r151032ay, and r151034y and SmartOS before 20201022. There is a buffer overflow in parse_user_name in lib/l...9.8
  7. CVE-2016-6561illumos smbsrv NULL pointer dereference allows system crash.7.5
  8. CVE-2016-6560illumos osnet-incorporation bcopy() and bzero() implementations make signed instead of unsigned comparisons allowing a system crash.8.6
  9. CVE-2014-9491The devzvol_readdir function in illumos does not check the return value of a strchr call, which allows remote attackers to cause a denial of service (NULL pointer dereference and panic) via unspeci...5.0
  10. CVE-2012-0217The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracle Solaris 11 and earlier; illumos before r13724; Joyent ...7.2

The record

Peak rank
#104 in Jun 2012
Busiest month shown
Mar 2017, 2 CVEs
Months with a KEV entry
0 since Jun 2012
Monthly snapshots
3 since 2012
Illumos's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store