ISOMAN

Recent Releases

  1. ROCKNIX 2026.09.09
    15 artifacts ·
  2. DESERT OS Linux 5.5.2
    1 artifact ·
  3. Bluestar Linux 2026.09.08
    2 artifacts ·
  4. StormOS 2026.09
    2 artifacts ·
  5. Gary OS 10.0
    1 artifact ·
  6. MocaccinoOS 0.20260908
    5 artifacts ·
  7. ROCKNIX 2026.09.08
    15 artifacts ·
  8. AROS Research Operating System unknown
    20 artifacts ·

Recent CVEs

  1. CVE-2023-54391
    CRITICAL ·

    Proxmox Virtual Environment (VE) 7.0 through 8.0 contains an authentication bypass vulnerability in libpve-access-control before 8.0.4 that allows unauthenticated attackers to authenticate as any existing enabled user without a configured second factor by supplying an arbitrary tfa-challenge value in the API login endpoint. Attackers can send a POST request to the access ticket API endpoint with any value in the tfa-challenge parameter to completely skip password verification, gaining unauthorized access including to the root@pam account. All affected releases are end of life.

  2. CVE-2026-26899
    HIGH ·

    An issue was discovered in luci-app-https-dns-proxy on OpenWrt PR #15 (< 2026-01-17). The setInitAction function in /usr/libexec/rpcd/luci.https-dns-proxy allows authenticated users to execute arbitrary shell commands via shell metacharacters in the name parameter

  3. CVE-2026-67189
    MEDIUM ·

    pfSense Plus before 26.07 and pfSense CE through 2.8.1 contain a stored cross-site scripting vulnerability in the Traffic Graphs top-talkers feature, where PTR records returned by reverse DNS lookups are incorporated without sanitization into AJAX responses and rendered as HTML through a DOM sink in the administrator interface. An attacker who controls a PTR record and generates sufficient traffic to appear as a top talker can execute arbitrary JavaScript in an administrator's browser, gaining access to the authenticated session context and same-origin access to the firewall management interface, enabling account creation and arbitrary OS command execution.

  4. CVE-2026-58088
    HIGH ·

    The ELF core dump code counted the number of dumpable VM map entries, allocated a buffer for the corresponding program headers, then iterated over the map a second time to populate them. A process sharing the address space via rfork(2) can mutate the map between the two passes, causing the second pass to write program headers past the end of the buffer. An unprivileged local user sharing an address space with a process that dumps core can trigger an out-of-bounds write on the kernel heap, potentially leading to privilege escalation.

  5. CVE-2026-58087
    HIGH ·

    The GETALL and SETALL commands in semctl(2) recorded the number of semaphores in the target set, dropped the lock protecting the set, allocated a buffer sized for that count, and reacquired the lock. A sequence-number check was used to verify that the set had not been replaced in the interim, but the sequence number wraps after 0x8000 create/destroy cycles. By rapidly destroying and recreating semaphore sets at the same index, another process can cause the sequence number to wrap, allowing a set with a different number of semaphores to pass validation. The subsequent copy then reads or writes past the end of the allocated buffer. An unprivileged local user can trigger out-of-bounds reads and writes on kernel heap memory, potentially leading to privilege escalation.

Newly Tracked ISOs

  1. COS++ Linux (Ubuntu)
    linux · · 0 CVEs
  2. Blackhat Global
    linux · · 0 CVEs
  3. BOSS Minimal Edition
    linux · · 0 CVEs
  4. Custom Puppy Linux for Scripts
    linux · · 0 CVEs
  5. OnixOS
    hobby · · 0 CVEs
  6. Pearl MATE 9 Raspberry Pi 4
    linux · · 0 CVEs
  7. TechNews365 OS AI Edition
    linux · · 0 CVEs
  8. TechNews365 AnduinOS Essentials
    linux · · 0 CVEs

Random ISOs

  1. Fedora Linux
    1 releases
  2. Voyager Live
    36 releases
  3. io GNU/Linux
    2 releases
  4. MocaccinoOS
    8 releases
  5. ISO Dateien
    2 releases
  6. Redox
    48 releases
  7. C4C Ubuntu 24.04
    1 releases
  8. Pardus
    3 releases