CVE Tools

Software-in-the-public-interest-inc

3 CVEs tracked since 2016. Since Mar 2016, none of them reached CISA KEV.

Software-in-the-public-interest-inc CVEs per month

Mar 2016 to Feb 2018. Point at a month, or focus the strip and use the arrow keys.
Software-in-the-public-interest-inc CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2016-0310
2016-04null or fewer
2016-05null or fewer
2016-06null or fewer
2016-07null or fewer
2016-08null or fewer
2016-09null or fewer
2016-10null or fewer
2016-11null or fewer
2016-12null or fewer
2017-01null or fewer
2017-02null or fewer
2017-03null or fewer
2017-04null or fewer
2017-05null or fewer
2017-06null or fewer
2017-07null or fewer
2017-08null or fewer
2017-09null or fewer
2017-10null or fewer
2017-11null or fewer
2017-12null or fewer
2018-01null or fewer
2018-0220

Products

The products that kept showing up in Software-in-the-public-interest-inc's monthly top three, with their CVEs summed over those months.

  1. Quagga21 month
  2. Glibc11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Software-in-the-public-interest-inc.

  1. BDU:2026-06246Уязвимость компонента lmathlib.c интерпретатора скриптов Lua, позволяющая нарушителю вызвать отказ в обслуживании5.5
  2. CVE-2023-4813Glibc: potential use-after-free in gaih_inet()5.9
  3. CVE-2022-28805singlevar in lparser.c in Lua from (including) 5.4.0 up to (excluding) 5.4.4 lacks a certain luaK_exp2anyregup call, leading to a heap-based buffer over-read that might affect a system that compile...9.1
  4. CVE-2021-43519Stack overflow in lua_resume of ldo.c in Lua Interpreter 5.1.0~5.4.4 allows attackers to perform a Denial of Service via a crafted script file.5.5
  5. CVE-2021-32626Lua scripts can overflow the heap-based Lua stack in Redis7.5
  6. CVE-2021-33910basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacke...5.5
  7. CVE-2020-24370ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).5.3
  8. CVE-2020-15945Lua 5.4.0 (fixed in 5.4.1) has a segmentation fault in changedline in ldebug.c (e.g., when called by luaG_traceexec) because it incorrectly expects that an oldpc value is always updated upon a retu...5.5
  9. CVE-2018-20796In the GNU C Library (aka glibc or libc6) through 2.29, check_dst_limits_calc_pos_1 in posix/regexec.c has Uncontrolled Recursion, as demonstrated by '(\227|)(\\1\\1|t1|\\\2537)+' in grep.7.5
  10. CVE-2019-6706Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example, a crash outcome might be achieved by an attacker who is able to trigger a debug.upvaluejoin call in which the arguments hav...7.5
  11. CVE-2018-16866An out of bounds read was discovered in systemd-journald in the way it parses log messages that terminate with a colon ':'. A local attacker can use this flaw to disclose process memory data. Versi...3.3
  12. CVE-2018-5379The Quagga BGP daemon (bgpd) prior to version 1.2.3 can double-free memory when processing certain forms of UPDATE message, containing cluster-list and/or unknown attributes. A successful attack co...7.5
  13. CVE-2018-5380The Quagga BGP daemon (bgpd) prior to version 1.2.3 can overrun internal BGP code-to-string conversion tables used for debug by 1 pointer value, based on input.4.3
  14. CVE-2017-18078systemd-tmpfiles in systemd before 237 attempts to support ownership/permission changes on hardlinked files even if the fs.protected_hardlinks sysctl is turned off, which allows local users to bypa...7.8
  15. CVE-2017-16227The aspath_put function in bgpd/bgp_aspath.c in Quagga before 1.2.2 allows remote attackers to cause a denial of service (session drop) via BGP UPDATE messages, because AS_PATH size calculation for...7.5

The record

Peak rank
#75 in Mar 2016
Busiest month shown
Feb 2018, 2 CVEs
Months with a KEV entry
0 since Mar 2016
Monthly snapshots
2 since 2016
Software-in-the-public-interest-inc's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store