Linux Kernel CVE Statistics

10 Linux Kernel CVEs in March 2014

Full month · Source: NIST NVD

February 2014 April 2014

In March 2014, 10 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 4 were rated High severity and 4 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. March's 10 CVEs represent 7% of all 2014 Linux kernel CVEs , down from February's 12 (a 17% month-over-month decrease) .

10
Total CVEs
0
Critical
4
High
4
Medium
2
Low
0
KEV Exploited
All CVEs — March 2014 10 CVEs
All (10) Critical (0) High (4) Medium (4) Low (2)
CVE ID Package Severity CVSS Published Description
CVE-2014-2523 linux High 10.0 2014-03-24 net/netfilter/nf_conntrack_proto_dccp.c in the Linux kernel through 3.13.6 uses a DCCP header pointer incorrectly, whic…
CVE-2014-0100 linux High 9.3 2014-03-11 Race condition in the inet_frag_intern function in net/ipv4/inet_fragment.c in the Linux kernel through 3.13.6 allows r…
CVE-2014-0101 linux High 7.8 2014-03-11 The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain…
CVE-2014-0049 linux High 7.4 2014-03-11 Buffer overflow in the complete_emulated_mmio function in arch/x86/kvm/x86.c in the Linux kernel before 3.13.6 allows g…
CVE-2014-2309 linux Medium 6.1 2014-03-11 The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition …
CVE-2014-0055 linux Medium 5.5 2014-03-26 The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-43…
CVE-2014-0102 linux Medium 5.2 2014-03-11 The keyring_detect_cycle_iterator function in security/keys/keyring.c in the Linux kernel through 3.13.6 does not prope…
CVE-2013-7339 linux Medium 4.7 2014-03-24 The rds_ib_laddr_check function in net/rds/ib.c in the Linux kernel before 3.12.8 allows local users to cause a denial …
CVE-2014-2568 linux Low 2.9 2014-03-24 Use-after-free vulnerability in the nfqnl_zcopy function in net/netfilter/nfnetlink_queue_core.c in the Linux kernel th…
CVE-2014-0131 linux Low 2.9 2014-03-24 Use-after-free vulnerability in the skb_segment function in net/core/skbuff.c in the Linux kernel through 3.13.6 allows…

Frequently Asked Questions

How many Linux kernel CVEs were published in March 2014?

10 Linux kernel CVEs were published in March 2014, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 4 High, and 4 Medium.

How does March 2014 compare to other months?

March 2014's 10 CVEs represent 7% of all 2014 Linux kernel CVEs. Compared to February's 12 CVEs, this was a 17% decrease month-over-month. View the full 2014 breakdown →

February 2014 2014 statistics April 2014