corosync
Security Risk Profile
34
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 7 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 6, 2014 to present
7
Total CVEs
4
Critical+High
0
Exploited
2
Unpatched
Threat Assessment
Avg CVSS
6.6
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
2
Critical/High
Risk Level
34/100
low
Severity Distribution
Critical
1High
3Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
Integer Overflow
3
2
Buffer Overflow
2
Most Affected Products
1. corosync corosync16
2. redhat Enterprise Linux8
3. redhat Openshift2
4. debian/corosync2
5. Canonical Ubuntu Linux2
Recent Vulnerabilities
See more →CVE-2026-35092
CVSS 7.5high
Corosync: corosync: denial of service via integer overflow in join message validation
4/1/2026🔧 No Patch
REDHAT-BUG-2453814
CVSS 4.0medium
4/1/2026🔧 No Patch
CVE-2026-35091
CVSS 8.2high
Corosync: corosync: denial of service and information disclosure via crafted udp packet
4/1/2026🔧 No Patch
REDHAT-BUG-2453813
CVSS 4.0medium
4/1/2026🔧 No Patch
CVE-2025-30472
CVSS 9.8EPSS 0%critical
3/22/2025
CVE-2018-1084
CVSS 7.5high
3/7/2018
CVE-2013-0250
CVSS 5.0medium
6/6/2014
Monitor corosync in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.