Linux Kernel CVE Statistics

40 Linux Kernel CVEs in March 2013

Full month · Source: NIST NVD

February 2013 April 2013

In March 2013, 40 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 1 was rated High severity and 15 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. March's 40 CVEs represent 20% of all 2013 Linux kernel CVEs , up from February's 24 (a 67% month-over-month increase) .

40
Total CVEs
0
Critical
1
High
15
Medium
24
Low
0
KEV Exploited
All CVEs — March 2013 40 CVEs
All (40) Critical (0) High (1) Medium (15) Low (24)
CVE ID Package Severity CVSS Published Description
CVE-2013-0913 linux High 7.2 2013-03-18 Integer overflow in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the i915 driver in the Direct Rendering Manager (DRM)…
CVE-2013-1860 linux Medium 6.9 2013-03-22 Heap-based buffer overflow in the wdm_in_callback function in drivers/usb/class/cdc-wdm.c in the Linux kernel before 3.…
CVE-2013-1828 linux Medium 6.9 2013-03-22 The sctp_getsockopt_assoc_stats function in net/sctp/socket.c in the Linux kernel before 3.8.4 does not validate a size…
CVE-2013-1797 linux Medium 6.8 2013-03-22 Use-after-free vulnerability in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 allows guest OS users to cause a d…
CVE-2013-1796 linux Medium 6.8 2013-03-22 The kvm_set_msr_common function in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 does not ensure a required time…
CVE-2013-1848 linux Medium 6.2 2013-03-22 fs/ext3/super.c in the Linux kernel before 3.8.4 uses incorrect arguments to functions in certain circumstances related…
CVE-2013-1827 linux Medium 6.2 2013-03-22 net/dccp/ccid.h in the Linux kernel before 3.5.4 allows local users to gain privileges or cause a denial of service (NU…
CVE-2013-1798 linux Medium 6.2 2013-03-22 The ioapic_read_indirect function in virt/kvm/ioapic.c in the Linux kernel through 3.8.4 does not properly handle a cer…
CVE-2013-1826 linux Medium 6.2 2013-03-22 The xfrm_state_netlink function in net/xfrm/xfrm_user.c in the Linux kernel before 3.5.7 does not properly handle error…
CVE-2011-2905 linux Medium 6.2 2013-03-01 Untrusted search path vulnerability in the perf_config function in tools/perf/util/config.c in perf, as distributed in …
CVE-2013-0228 linux Medium 6.2 2013-03-01 The xen_iret function in arch/x86/xen/xen-asm_32.S in the Linux kernel before 3.7.9 on 32-bit Xen paravirt_ops platform…
CVE-2011-2479 linux Medium 5.5 2013-03-01 The Linux kernel before 2.6.39 does not properly create transparent huge pages in response to a MAP_PRIVATE mmap system…
CVE-2011-2491 linux Medium 4.9 2013-03-01 The Network Lock Manager (NLM) protocol implementation in the NFS client functionality in the Linux kernel before 3.0 a…
CVE-2013-1792 linux Medium 4.7 2013-03-22 Race condition in the install_user_keyrings function in security/keys/process_keys.c in the Linux kernel before 3.8.3 a…
CVE-2013-1819 linux Medium 4.6 2013-03-06 The _xfs_buf_find function in fs/xfs/xfs_buf.c in the Linux kernel before 3.7.6 does not validate block numbers, which …

Frequently Asked Questions

How many Linux kernel CVEs were published in March 2013?

40 Linux kernel CVEs were published in March 2013, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 1 High, and 15 Medium.

How does March 2013 compare to other months?

March 2013's 40 CVEs represent 20% of all 2013 Linux kernel CVEs. Compared to February's 24 CVEs, this was a 67% increase month-over-month. View the full 2013 breakdown →

February 2013 2013 statistics April 2013