Linux Kernel CVE Statistics
20 Linux Kernel CVEs in August 2015
Full month · Source: NIST NVD
In August 2015, 20 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 5 were rated High severity and 12 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. August's 20 CVEs represent 23% of all 2015 Linux kernel CVEs , up from July's 1 (a 1900% month-over-month increase) .
20
Total CVEs
0
Critical
5
High
12
Medium
3
Low
0
KEV Exploited
All CVEs — August 2015
20 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2015-5364 | linux | High | 7.8 | 2015-08-31 | The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding … | |
| CVE-2015-3290 | linux | High | 7.2 | 2015-08-31 | arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform improperly relies on espfix64 during … | |
| CVE-2015-4036 | linux | High | 7.2 | 2015-08-31 | Array index error in the tcm_vhost_make_tpg function in drivers/vhost/scsi.c in the Linux kernel before 4.0 might allow… | |
| CVE-2015-5157 | linux | High | 7.2 | 2015-08-31 | arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform mishandles IRET faults in processing … | |
| CVE-2015-1805 | linux | High | 7.2 | 2015-08-08 | The (1) pipe_read and (2) pipe_write implementations in fs/pipe.c in the Linux kernel before 3.16 do not properly consi… | |
| CVE-2015-3214 | linux | Medium | 6.9 | 2015-08-31 | The pit_ioport_read in i8254.c in the Linux kernel before 2.6.33 and QEMU before 2.3.1 does not distinguish between rea… | |
| CVE-2015-5366 | linux | Medium | 5.0 | 2015-08-31 | The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN retu… | |
| CVE-2014-9729 | linux | Medium | 4.9 | 2015-08-31 | The udf_read_inode function in fs/udf/inode.c in the Linux kernel before 3.18.2 does not ensure a certain data-structur… | |
| CVE-2014-9728 | linux | Medium | 4.9 | 2015-08-31 | The UDF filesystem implementation in the Linux kernel before 3.18.2 does not validate certain lengths, which allows loc… | |
| CVE-2014-9730 | linux | Medium | 4.9 | 2015-08-31 | The udf_pc_to_char function in fs/udf/symlink.c in the Linux kernel before 3.18.2 relies on component lengths that are … | |
| CVE-2015-4700 | linux | Medium | 4.9 | 2015-08-31 | The bpf_int_jit_compile function in arch/x86/net/bpf_jit_comp.c in the Linux kernel before 4.0.6 allows local users to … | |
| CVE-2015-1333 | linux | Medium | 4.9 | 2015-08-31 | Memory leak in the __key_link_end function in security/keys/keyring.c in the Linux kernel before 4.1.4 allows local use… | |
| CVE-2015-3212 | linux | Medium | 4.9 | 2015-08-31 | Race condition in net/sctp/socket.c in the Linux kernel before 4.1.2 allows local users to cause a denial of service (l… | |
| CVE-2015-6526 | linux | Medium | 4.9 | 2015-08-31 | The perf_callchain_user_64 function in arch/powerpc/perf/callchain.c in the Linux kernel before 4.0.2 on ppc64 platform… | |
| CVE-2015-3636 | linux | Medium | 4.9 | 2015-08-06 | The ping_unhash function in net/ipv4/ping.c in the Linux kernel before 4.0.3 does not initialize a certain list data st… |