Linux Kernel CVE Statistics

4 Linux Kernel CVEs in May 2013

Full month · Source: NIST NVD

April 2013 June 2013

In May 2013, 4 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 2 were rated High severity and 1 Medium. CVE-2013-2094 was confirmed as actively exploited in the wild and added to the CISA Known Exploited Vulnerabilities catalog. May's 4 CVEs represent 2% of all 2013 Linux kernel CVEs , down from April's 26 (a 85% month-over-month decrease) .

4
Total CVEs
0
Critical
2
High
1
Medium
1
Low
1
KEV Exploited

Actively Exploited CVEs — May 2013

1 CVE in CISA KEV

CVE-2013-2094 is the only Linux kernel CVE from May 2013 confirmed as actively exploited in the wild. It carries a CVSS score of 8.4 (High severity) and is listed in the CISA Known Exploited Vulnerabilities catalog.

CVE ID Severity CVSS Published Description
CVE-2013-2094 High KEV 8.4 2013-05-14 The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an inc…
KEV data sourced from CISA Known Exploited Vulnerabilities catalog.
All CVEs — May 2013 4 CVEs
All (4) Critical (0) High (2) Medium (1) Low (1)
CVE ID Package Severity CVSS Published Description
CVE-2013-2094 linux High KEV 8.4 2013-05-14 The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data …
CVE-2013-2017 linux High 7.8 2013-05-03 The veth (aka virtual Ethernet) driver in the Linux kernel before 2.6.34 does not properly manage skbs during congestio…
CVE-2013-1979 linux Medium 6.9 2013-05-03 The scm_set_cred function in include/net/scm.h in the Linux kernel before 3.8.11 uses incorrect uid and gid values duri…
CVE-2013-1959 linux Low 3.7 2013-05-03 kernel/user_namespace.c in the Linux kernel before 3.8.9 does not have appropriate capability requirements for the uid_…

Frequently Asked Questions

How many Linux kernel CVEs were published in May 2013?

4 Linux kernel CVEs were published in May 2013, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 2 High, and 1 Medium.

Which Linux kernel CVEs from May 2013 are actively exploited?

1 Linux kernel CVE from May 2013 is listed in the CISA Known Exploited Vulnerabilities catalog: CVE-2013-2094 (CVSS 8.4) . This indicates confirmed active exploitation in the wild. View all actively exploited 2013 CVEs →

How does May 2013 compare to other months?

May 2013's 4 CVEs represent 2% of all 2013 Linux kernel CVEs. Compared to April's 26 CVEs, this was a 85% decrease month-over-month. View the full 2013 breakdown →

April 2013 2013 statistics June 2013