Linux Kernel CVE Statistics

8 Linux Kernel CVEs in December 2006

Full month · Source: NIST NVD

November 2006 January 2007

In December 2006, 8 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 4 were rated High severity and 3 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. December's 8 CVEs represent 10% of all 2006 Linux kernel CVEs , down from November's 10 (a 20% month-over-month decrease) .

8
Total CVEs
0
Critical
4
High
3
Medium
1
Low
0
KEV Exploited
All CVEs — December 2006 8 CVEs
All (8) Critical (0) High (4) Medium (3) Low (1)
CVE ID Package Severity CVSS Published Description
CVE-2006-6333 linux High 7.8 2006-12-06 The tr_rx function in ibmtr.c for Linux kernel 2.6.19 assigns the wrong flag to the ip_summed field, which allows remot…
CVE-2006-6106 linux High 7.5 2006-12-19 Multiple buffer overflows in the cmtp_recv_interopmsg function in the Bluetooth driver (net/bluetooth/cmtp/capi.c) in t…
CVE-2006-6304 linux High 7.5 2006-12-14 The do_coredump function in fs/exec.c in the Linux kernel 2.6.19 sets the flag variable to O_EXCL but does not use it, …
CVE-2006-5751 linux High 7.2 2006-12-02 Integer overflow in the get_fdb_entries function in net/bridge/br_ioctl.c in the Linux kernel before 2.6.18.4 allows lo…
CVE-2006-5755 linux Medium 4.9 2006-12-31 Linux kernel before 2.6.18, when running on x86_64 systems, does not properly save or restore EFLAGS during a context s…
CVE-2006-4814 linux Medium 4.6 2006-12-20 The mincore function in the Linux kernel before 2.4.33.6 does not properly lock access to user space, which has unspeci…
CVE-2006-5871 linux Medium 4.1 2006-12-11 smbfs in Linux kernel 2.6.8 and other versions, and 2.4.x before 2.4.34, when UNIX extensions are enabled, ignores cert…
CVE-2006-5749 linux Low 1.7 2006-12-31 The isdn_ppp_ccp_reset_alloc_state function in drivers/isdn/isdn_ppp.c in the Linux 2.4 kernel before 2.4.34-rc4 does n…

Frequently Asked Questions

How many Linux kernel CVEs were published in December 2006?

8 Linux kernel CVEs were published in December 2006, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 4 High, and 3 Medium.

How does December 2006 compare to other months?

December 2006's 8 CVEs represent 10% of all 2006 Linux kernel CVEs. Compared to November's 10 CVEs, this was a 20% decrease month-over-month. View the full 2006 breakdown →

November 2006 2006 statistics January 2007