Z.ai Security Reveals Extensive 45-Year Vulnerability Ledger
TL;DR. Z.ai Security has disclosed a ledger detailing 2,436 vulnerabilities, including 1,097 severe and critical flaws, some undetected for decades. - The disclosed vulnerabilities date back to 1981, with an average undetected period of 26.6 years before discovery. - The ledger includes critical and high-severity issues across Linux kernel, WebKit, FreeBSD, and GStreamer. - Z.ai Security aims to highlight the long-term persistence and severity of hidden software flaws.
- Z.ai Security revealed a ledger of 2,436 vulnerabilities, with 1,097 classified as severe or critical.
- The earliest vulnerability dates to 1981, showing an average of 26.6 years of dormancy before discovery.
- Key vulnerabilities include use-after-free in Linux kernel, memory issues in WebKit, and heap overflow in GStreamer.
- This disclosure emphasizes the historical depth and impact of undetected software flaws across critical systems.
Sources
- Z.ai Security — cvd.z.ai