Linux Kernel CVE Statistics

40 Linux Kernel CVEs in June 2012

Full month · Source: NIST NVD

May 2012 July 2012

In June 2012, 40 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 6 were rated High severity and 21 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. June's 40 CVEs represent 35% of all 2012 Linux kernel CVEs , up from May's 36 (a 11% month-over-month increase) .

40
Total CVEs
0
Critical
6
High
21
Medium
13
Low
0
KEV Exploited
All CVEs — June 2012 40 CVEs
All (40) Critical (0) High (6) Medium (21) Low (13)
CVE ID Package Severity CVSS Published Description
CVE-2011-4913 linux High 7.8 2012-06-21 The rose_parse_ccitt function in net/rose/rose_subr.c in the Linux kernel before 2.6.39 does not validate the FAC_CCITT…
CVE-2011-1493 linux High 7.5 2012-06-21 Array index error in the rose_parse_national function in net/rose/rose_subr.c in the Linux kernel before 2.6.39 allows …
CVE-2012-0028 linux High 7.2 2012-06-21 The robust futex implementation in the Linux kernel before 2.6.28 does not properly handle processes that make exec sys…
CVE-2011-1477 linux High 7.2 2012-06-21 Multiple array index errors in sound/oss/opl3.c in the Linux kernel before 2.6.39 allow local users to cause a denial o…
CVE-2011-2182 linux High 7.2 2012-06-13 The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel before 2.6.39.1 does not properly handle memory al…
CVE-2011-2211 linux High 7.2 2012-06-13 The osf_wait4 function in arch/alpha/kernel/osf_sys.c in the Linux kernel before 2.6.39.4 on the Alpha platform uses an…
CVE-2011-4914 linux Medium 6.4 2012-06-21 The ROSE protocol implementation in the Linux kernel before 2.6.39 does not verify that certain data-length values are …
CVE-2011-1759 linux Medium 6.2 2012-06-13 Integer overflow in the sys_oabi_semtimedop function in arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.…
CVE-2011-1079 linux Medium 5.4 2012-06-21 The bnep_sock_ioctl function in net/bluetooth/bnep/sock.c in the Linux kernel before 2.6.39 does not ensure that a cert…
CVE-2011-1767 linux Medium 5.4 2012-06-13 net/ipv4/ip_gre.c in the Linux kernel before 2.6.34, when ip_gre is configured as a module, allows remote attackers to …
CVE-2011-1768 linux Medium 5.4 2012-06-13 The tunnels implementation in the Linux kernel before 2.6.34, when tunnel functionality is configured as a module, allo…
CVE-2012-2127 linux Medium 5.0 2012-06-21 fs/proc/root.c in the procfs implementation in the Linux kernel before 3.2 does not properly interact with CLONE_NEWPID…
CVE-2012-1583 linux Medium 5.0 2012-06-16 Double free vulnerability in the xfrm6_tunnel_rcv function in net/ipv6/xfrm6_tunnel.c in the Linux kernel before 2.6.22…
CVE-2011-1927 linux Medium 5.0 2012-06-13 The ip_expire function in net/ipv4/ip_fragment.c in the Linux kernel before 2.6.39 does not properly construct ICMP_TIM…
CVE-2011-1023 linux Medium 4.9 2012-06-21 The Reliable Datagram Sockets (RDS) subsystem in the Linux kernel before 2.6.38 does not properly handle congestion map…

Frequently Asked Questions

How many Linux kernel CVEs were published in June 2012?

40 Linux kernel CVEs were published in June 2012, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 6 High, and 21 Medium.

How does June 2012 compare to other months?

June 2012's 40 CVEs represent 35% of all 2012 Linux kernel CVEs. Compared to May's 36 CVEs, this was a 11% increase month-over-month. View the full 2012 breakdown →

May 2012 2012 statistics July 2012