Known Vulnerabilities for products from Linaro
Listed below are 9 of the newest known vulnerabilities associated with the vendor "Linaro".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-53316 json | Not Provided | 2026-06-26 | 2026-06-26 | |
| CVE-2026-37540 json | OpenAMP v2025.10.0 ELF loader contains an integer overflow vulnerability in firmware image parsing. In elf_loader.c, it perfo... | Not Provided | 2026-05-01 | 2026-05-29 |
| CVE-2022-45132 json | In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-submi... | 9.8 - CRITICAL | 2022-11-18 | 2023-11-07 |
| CVE-2022-44641 json | In Linaro Automated Validation Architecture (LAVA) before 2022.11, users with valid credentials can submit crafted XMLRPC req... | 6.5 - MEDIUM | 2022-11-18 | 2023-11-07 |
| CVE-2022-42902 json | In Linaro Automated Validation Architecture (LAVA) before 2022.10, there is dynamic code execution in lava_server/lavatable.p... | 8.8 - HIGH | 2022-10-13 | 2023-02-02 |
| CVE-2018-12565 json | An issue was discovered in Linaro LAVA before 2018.5.post1. Because of use of yaml.load() instead of yaml.safe_load() when pa... | 8.8 - HIGH | 2018-06-19 | 2019-09-18 |
| CVE-2018-12564 json | An issue was discovered in Linaro LAVA before 2018.5.post1. Because of support for URLs in the submit page, a user can forge ... | 6.5 - MEDIUM | 2018-06-19 | 2018-08-10 |
| CVE-2018-12563 json | An issue was discovered in Linaro LAVA before 2018.5.post1. Because of support for file: URLs, a user can force lava-server-g... | 6.5 - MEDIUM | 2018-06-19 | 2018-08-10 |
| CVE-2017-1000413 json | Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery pa... | 5.9 - MEDIUM | 2018-01-02 | 2018-01-17 |
| CVE-2017-1000412 json | Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable to the bellcore attack in the LibTom... | 7.5 - HIGH | 2018-01-02 | 2018-01-17 |