CVE Tools

Mandrakesoft

136 CVEs tracked since 2000. Since Apr 2000, none of them reached CISA KEV.

Mandrakesoft CVEs per month

Apr 2000 to Feb 2008. Point at a month, or focus the strip and use the arrow keys.
Mandrakesoft CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2000-0440
2000-05null or fewer
2000-06null or fewer
2000-0740
2000-08null or fewer
2000-09null or fewer
2000-1050
2000-11null or fewer
2000-1210
2001-0170
2001-02null or fewer
2001-03null or fewer
2001-04null or fewer
2001-05170
2001-06null or fewer
2001-07null or fewer
2001-08null or fewer
2001-0990
2001-1010
2001-11null or fewer
2001-12null or fewer
2002-01null or fewer
2002-02null or fewer
2002-0320
2002-04null or fewer
2002-05null or fewer
2002-0660
2002-07null or fewer
2002-08null or fewer
2002-09null or fewer
2002-10null or fewer
2002-11null or fewer
2002-12null or fewer
2003-01null or fewer
2003-0210
2003-03null or fewer
2003-0420
2003-05null or fewer
2003-0610
2003-0710
2003-08null or fewer
2003-09null or fewer
2003-10null or fewer
2003-11null or fewer
2003-1210
2004-01null or fewer
2004-02null or fewer
2004-03null or fewer
2004-0410
2004-0510
2004-0650
2004-0760
2004-08null or fewer
2004-0990
2004-1070
2004-1180
2004-1270
2005-0140
2005-0260
2005-0310
2005-0410
2005-0520
2005-0630
2005-0720
2005-0830
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-0130
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-0420
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-10null or fewer
2007-1110
2007-12null or fewer
2008-0110
2008-0210

Products

The products that kept showing up in Mandrakesoft's monthly top three, with their CVEs summed over those months.

  1. Mandrake Linux13134 months
  2. Mandrake Linux Corporate Server5322 months
  3. Mandrake Multi Network Firewall1610 months
  4. Mandrake Single Network Firewall53 months
  5. Mandrake Lam-runtime11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Mandrakesoft.

  1. CVE-2008-0595dbus-daemon in D-Bus before 1.0.3, and 1.1.x before 1.1.20, recognizes send_interface attributes in allow directives in the security policy only for fully qualified method calls, which allows local...4.6
  2. CVE-2007-6284The xmlCurrentChar function in libxml2 before 2.6.31 allows context-dependent attackers to cause a denial of service (infinite loop) via XML containing invalid UTF-8 sequences.5.0
  3. CVE-2007-5116Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Uni...7.5
  4. CVE-2007-1352Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary code via a long first line in the fonts.dir file, which r...3.8
  5. CVE-2007-1351Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code ...8.5
  6. CVE-2007-0454Format string vulnerability in the afsacl.so VFS module in Samba 3.0.6 through 3.0.23d allows context-dependent attackers to execute arbitrary code via format string specifiers in a filename on an ...7.5
  7. CVE-2006-0745X.Org server (xorg-server) 1.0.0 and later, X11R6.9.0, and X11R7.0 inadvertently treats the address of the geteuid function as if it is the return value of a call to geteuid, which allows local use...7.2
  8. CVE-2005-3626Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that ...5.0
  9. CVE-2005-3625Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end premature...10.0
  10. CVE-2005-3624The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large i...5.0
  11. CVE-2002-2185The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, wh...4.9
  12. CVE-2004-2395Memory leak in passwd 0.68 allows local users to cause a denial of service (memory consumption) via a large number of failed read attempts from the password buffer.2.1
  13. CVE-2004-2394Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of...2.1
  14. CVE-2004-2392libuser 0.51.7 allows attackers to cause a denial of service (crash or disk consumption) via unknown attack vectors, related to read failures and other bugs.5.0
  15. CVE-2005-2377nss_ldap 181 to versions before 213, as used in Mandrake Corporate Server and Mandrake 10.0, and other operating systems, does not properly handle a SIGPIPE signal when sending a search request to ...5.0

The record

Peak rank
#3 in May 2001
Busiest month shown
May 2001, 17 CVEs
Months with a KEV entry
0 since Apr 2000
Monthly snapshots
36 since 2000
Mandrakesoft's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store