Linux Kernel CVE Statistics

10 Linux Kernel CVEs in December 2009

Full month · Source: NIST NVD

November 2009 January 2010

In December 2009, 10 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 7 were rated High severity and 3 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. December's 10 CVEs represent 9% of all 2009 Linux kernel CVEs , down from November's 12 (a 17% month-over-month decrease) .

10
Total CVEs
0
Critical
7
High
3
Medium
0
Low
0
KEV Exploited
All CVEs — December 2009 10 CVEs
All (10) Critical (0) High (7) Medium (3) Low (0)
CVE ID Package Severity CVSS Published Description
CVE-2009-1298 linux High 7.8 2009-12-08 The ip_frag_reasm function in net/ipv4/ip_fragment.c in the Linux kernel 2.6.32-rc8, and 2.6.29 and later versions befo…
CVE-2009-4020 linux High 7.8 2009-12-04 Stack-based buffer overflow in the hfs subsystem in the Linux kernel 2.6.32 allows remote attackers to have an unspecif…
CVE-2009-4026 linux High 7.8 2009-12-02 The mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of…
CVE-2009-4131 linux High 7.2 2009-12-13 The EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel before 2.6.32-…
CVE-2009-4307 linux High 7.1 2009-12-13 The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote …
CVE-2009-4308 linux High 7.1 2009-12-13 The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-…
CVE-2009-4027 linux High 7.1 2009-12-02 Race condition in the mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to…
CVE-2009-4410 linux Medium 4.9 2009-12-24 The fuse_ioctl_copy_user function in the ioctl handler in fs/fuse/file.c in the Linux kernel 2.6.29-rc1 through 2.6.30.…
CVE-2009-4306 linux Medium 4.9 2009-12-13 Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in th…
CVE-2009-4138 linux Medium 4.7 2009-12-16 drivers/firewire/ohci.c in the Linux kernel before 2.6.32-git9, when packet-per-buffer mode is used, allows local users…

Frequently Asked Questions

How many Linux kernel CVEs were published in December 2009?

10 Linux kernel CVEs were published in December 2009, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 7 High, and 3 Medium.

How does December 2009 compare to other months?

December 2009's 10 CVEs represent 9% of all 2009 Linux kernel CVEs. Compared to November's 12 CVEs, this was a 17% decrease month-over-month. View the full 2009 breakdown →

November 2009 2009 statistics January 2010