Linux Kernel CVE Statistics

21 Linux Kernel CVEs in December 2004

Full month · Source: NIST NVD

November 2004 January 2005

In December 2004, 21 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 6 were rated High severity and 7 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. December's 21 CVEs represent 51% of all 2004 Linux kernel CVEs , up from November's 1 (a 2000% month-over-month increase) .

21
Total CVEs
0
Critical
6
High
7
Medium
8
Low
0
KEV Exploited
All CVEs — December 2004 21 CVEs
All (21) Critical (0) High (6) Medium (7) Low (8)
CVE ID Package Severity CVSS Published Description
CVE-2004-2613 linux High 10.0 2004-12-31 Unspecified vulnerability in procfs in the Linux-VServer stable branch for the 2.4 kernel before 1.23 and Linux-VServer…
CVE-2004-1017 linux High 10.0 2004-12-31 Multiple "overflows" in the io_edgeport driver for Linux kernel 2.4.x have unknown impact and unknown attack vectors.
CVE-2004-2013 linux High 7.8 2004-12-31 Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier a…
CVE-2004-2536 linux High 7.5 2004-12-31 The exit_thread function (process.c) in Linux kernel 2.6 through 2.6.5 does not invalidate the per-TSS io_bitmap pointe…
CVE-2004-1337 linux High 7.2 2004-12-23 The POSIX Capability Linux Security Module (LSM) for Linux kernel 2.6 does not properly handle the credentials of a pro…
CVE-2004-0496 linux High 7.2 2004-12-06 Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access kernel memory, a di…
CVE-2004-0592 linux Medium 5.0 2004-12-31 The tcp_find_option function of the netfilter subsystem for IPv6 in the SUSE Linux 2.6.5 kernel with USAGI patches, whe…
CVE-2004-0626 linux Medium 5.0 2004-12-06 The tcp_find_option function of the netfilter subsystem in Linux kernel 2.6, when using iptables and TCP options rules,…
CVE-2004-2660 linux Medium 4.9 2004-12-31 Memory leak in direct-io.c in Linux kernel 2.6.x before 2.6.10 allows local users to cause a denial of service (memory …
CVE-2004-0138 linux Medium 4.9 2004-12-31 The ELF loader in Linux kernel 2.4 before 2.4.25 allows local users to cause a denial of service (crash) via a crafted …
CVE-2004-0997 linux Medium 4.6 2004-12-31 Unspecified vulnerability in the ptrace MIPS assembly code in Linux kernel 2.4 before 2.4.17 allows local users to gain…
CVE-2004-0685 linux Medium 4.6 2004-12-23 Certain USB drivers in the Linux 2.4 kernel use the copy_to_user function on uninitialized structures, which could allo…
CVE-2004-2731 linux Medium 4.4 2004-12-31 Multiple integer overflows in Sbus PROM driver (drivers/sbus/char/openprom.c) for the Linux kernel 2.4.x up to 2.4.27, …
CVE-2004-2302 linux Low 2.6 2004-12-31 Race condition in the sysfs_read_file and sysfs_write_file functions in Linux kernel before 2.6.10 allows local users t…
CVE-2004-2607 linux Low 2.1 2004-12-31 A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local user…

Frequently Asked Questions

How many Linux kernel CVEs were published in December 2004?

21 Linux kernel CVEs were published in December 2004, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 6 High, and 7 Medium.

How does December 2004 compare to other months?

December 2004's 21 CVEs represent 51% of all 2004 Linux kernel CVEs. Compared to November's 1 CVEs, this was a 2000% increase month-over-month. View the full 2004 breakdown →

November 2004 2004 statistics January 2005