illumos
Security Risk Profile
83
/100
criticalSecurity Risk Score
Comprehensive risk assessment based on 12 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 17, 2012 to present
12
Total CVEs
7
Critical+High
0
Exploited
3
Unpatched
Threat Assessment
Avg CVSS
7.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
3
Critical/High
Risk Level
83/100
critical
📈 2 in Last 30 Days
Severity Distribution
Critical
2High
5Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
3
2
Null Pointer Dereference
2
3
Input Validation
1
Most Affected Products
1. illumos Illumos9
2. XEN Xen8
3. Oracle Solaris4
4. Omniosce Omnios4
5. Joyent SmartOS3
Recent Vulnerabilities
See more →https://seclists.org/oss-sec/2026/q3/228
unknown
CVE-2026-16277 & CVE-2026-16461: buffer overflows in rpcinfo
7/23/2026🔧 No Patch
CVE-2026-15422
CVSS 9.1critical
SCTP needs to better-check INIT ACK chunk parameters
7/16/2026🔧 No Patch
https://seclists.org/oss-sec/2026/q2/669
unknown
illumos: 18118 SCTP fes wrong-size, and need to keep private options
5/22/2026🔧 No Patch
CVE-2024-26317
CVSS 6.1medium
1/27/2025🔧 No Patch
CVE-2023-31284
CVSS 7.8high
5/4/2023🔧 No Patch
CVE-2019-9579
CVSS 8.1high
12/26/2022
CVE-2021-43395
CVSS 5.5medium
12/26/2022
CVE-2020-27678
CVSS 9.8critical
10/23/2020
CVE-2016-6561
CVSS 7.8high
3/31/2017
CVE-2016-6560
CVSS 8.6high
3/31/2017
Monitor illumos in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.