Linux Kernel CVE Statistics

15 Linux Kernel CVEs in July 2013

Full month · Source: NIST NVD

June 2013 August 2013

In July 2013, 15 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 2 were rated High severity and 10 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. July's 15 CVEs represent 8% of all 2013 Linux kernel CVEs , down from June's 22 (a 32% month-over-month decrease) .

15
Total CVEs
0
Critical
2
High
10
Medium
3
Low
0
KEV Exploited
All CVEs — July 2013 15 CVEs
All (15) Critical (0) High (2) Medium (10) Low (3)
CVE ID Package Severity CVSS Published Description
CVE-2013-1943 linux High 7.8 2013-07-16 The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocatio…
CVE-2013-1059 linux High 7.8 2013-07-08 net/ceph/auth_none.c in the Linux kernel through 3.10 allows remote attackers to cause a denial of service (NULL pointe…
CVE-2013-2224 linux Medium 6.9 2013-07-04 A certain Red Hat patch for the Linux kernel 2.6.32 on Red Hat Enterprise Linux (RHEL) 6 allows local users to cause a …
CVE-2013-1935 linux Medium 5.7 2013-07-16 A certain Red Hat patch to the KVM subsystem in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Lin…
CVE-2013-4125 linux Medium 5.4 2013-07-15 The fib6_add_rt2node function in net/ipv6/ip6_fib.c in the IPv6 stack in the Linux kernel through 3.10.1 does not prope…
CVE-2013-2206 linux Medium 5.4 2013-07-04 The sctp_sf_do_5_2_4_dupcook function in net/sctp/sm_statefuns.c in the SCTP implementation in the Linux kernel before …
CVE-2013-2232 linux Medium 4.9 2013-07-04 The ip6_sk_dst_check function in net/ipv6/ip6_output.c in the Linux kernel before 3.10 allows local users to cause a de…
CVE-2013-4127 linux Medium 4.7 2013-07-29 Use-after-free vulnerability in the vhost_net_set_backend function in drivers/vhost/net.c in the Linux kernel through 3…
CVE-2013-4129 linux Medium 4.7 2013-07-29 The bridge multicast implementation in the Linux kernel through 3.10.3 does not check whether a certain timer is armed …
CVE-2013-4163 linux Medium 4.7 2013-07-29 The ip6_append_data_mtu function in net/ipv6/ip6_output.c in the IPv6 implementation in the Linux kernel through 3.10.3…
CVE-2013-4162 linux Medium 4.7 2013-07-29 The udp_v6_push_pending_frames function in net/ipv6/udp.c in the IPv6 implementation in the Linux kernel through 3.10.3…
CVE-2013-2188 linux Medium 4.7 2013-07-16 A certain Red Hat patch to the do_filp_open function in fs/namei.c in the kernel package before 2.6.32-358.11.1.el6 on …
CVE-2013-2164 linux Low 2.1 2013-07-04 The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10 allows local users to …
CVE-2013-2234 linux Low 2.1 2013-07-04 The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_key.c in the Linux kernel before 3.…
CVE-2013-2237 linux Low 2.1 2013-07-04 The key_notify_policy_flush function in net/key/af_key.c in the Linux kernel before 3.9 does not initialize a certain s…

Frequently Asked Questions

How many Linux kernel CVEs were published in July 2013?

15 Linux kernel CVEs were published in July 2013, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 2 High, and 10 Medium.

How does July 2013 compare to other months?

July 2013's 15 CVEs represent 8% of all 2013 Linux kernel CVEs. Compared to June's 22 CVEs, this was a 32% decrease month-over-month. View the full 2013 breakdown →

June 2013 2013 statistics August 2013