Linux Kernel CVE Statistics

9 Linux Kernel CVEs in November 2008

Full month · Source: NIST NVD

October 2008 December 2008

In November 2008, 9 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 6 were rated High severity and 3 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. November's 9 CVEs represent 11% of all 2008 Linux kernel CVEs , up from October's 8 (a 12% month-over-month increase) .

9
Total CVEs
0
Critical
6
High
3
Medium
0
Low
0
KEV Exploited
All CVEs — November 2008 9 CVEs
All (9) Critical (0) High (6) Medium (3) Low (0)
CVE ID Package Severity CVSS Published Description
CVE-2008-5134 linux High 10.0 2008-11-18 Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan.c in the libertas subsystem in th…
CVE-2008-4395 linux High 8.3 2008-11-06 Multiple buffer overflows in the ndiswrapper module 1.53 for the Linux kernel 2.6 allow remote attackers to execute arb…
CVE-2008-5025 linux High 7.8 2008-11-17 Stack-based buffer overflow in the hfs_cat_find_brec function in fs/hfs/catalog.c in the Linux kernel before 2.6.28-rc1…
CVE-2008-5033 linux High 7.8 2008-11-10 The chip_command function in drivers/media/video/tvaudio.c in the Linux kernel 2.6.25.x before 2.6.25.19, 2.6.26.x befo…
CVE-2008-4934 linux High 7.8 2008-11-05 The hfsplus_block_allocate function in fs/hfsplus/bitmap.c in the Linux kernel before 2.6.28-rc1 does not check a certa…
CVE-2008-4933 linux High 7.8 2008-11-05 Buffer overflow in the hfsplus_find_cat function in fs/hfsplus/catalog.c in the Linux kernel before 2.6.28-rc1 allows a…
CVE-2008-5182 linux Medium 6.9 2008-11-21 The inotify functionality in Linux kernel 2.6 before 2.6.28-rc5 might allow local users to gain privileges via unknown …
CVE-2008-5029 linux Medium 4.9 2008-11-10 The __scm_destroy function in net/core/scm.c in the Linux kernel 2.6.27.4, 2.6.26, and earlier makes indirect recursive…
CVE-2008-3527 linux Medium 4.6 2008-11-05 arch/i386/kernel/sysenter.c in the Virtual Dynamic Shared Objects (vDSO) implementation in the Linux kernel before 2.6.…

Frequently Asked Questions

How many Linux kernel CVEs were published in November 2008?

9 Linux kernel CVEs were published in November 2008, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 6 High, and 3 Medium.

How does November 2008 compare to other months?

November 2008's 9 CVEs represent 11% of all 2008 Linux kernel CVEs. Compared to October's 8 CVEs, this was a 12% increase month-over-month. View the full 2008 breakdown →

October 2008 2008 statistics December 2008