Linux Kernel CVE Statistics

9 Linux Kernel CVEs in December 2015

Full month · Source: NIST NVD

November 2015 January 2016

In December 2015, 9 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 1 was rated High severity and 5 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. December's 9 CVEs represent 10% of all 2015 Linux kernel CVEs .

9
Total CVEs
0
Critical
1
High
5
Medium
3
Low
0
KEV Exploited
All CVEs — December 2015 9 CVEs
All (9) Critical (0) High (1) Medium (5) Low (3)
CVE ID Package Severity CVSS Published Description
CVE-2015-8543 linux High 7.0 2015-12-28 The networking implementation in the Linux kernel through 4.3.3, as used in Android and other products, does not valida…
CVE-2015-8660 linux Medium 6.7 2015-12-28 The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr o…
CVE-2015-7990 linux Medium 5.8 2015-12-28 Race condition in the rds_sendmsg function in net/rds/sendmsg.c in the Linux kernel before 4.3.3 allows local users to …
CVE-2013-7446 linux Medium 5.3 2015-12-28 Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel before 4.3.3 allows local users to bypass intend…
CVE-2015-7509 linux Medium 4.4 2015-12-28 fs/ext4/namei.c in the Linux kernel before 3.7 allows physically proximate attackers to cause a denial of service (syst…
CVE-2015-8374 linux Medium 4.0 2015-12-28 fs/btrfs/inode.c in the Linux kernel before 4.3.3 mishandles compressed inline extents, which allows local users to obt…
CVE-2015-8569 linux Low 2.3 2015-12-28 The (1) pptp_bind and (2) pptp_connect functions in drivers/net/ppp/pptp.c in the Linux kernel through 4.3.3 do not ver…
CVE-2015-7885 linux Low 2.3 2015-12-28 The dgnc_mgmt_ioctl function in drivers/staging/dgnc/dgnc_mgmt.c in the Linux kernel through 4.3.3 does not initialize …
CVE-2015-7884 linux Low 2.3 2015-12-28 The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not init…

Frequently Asked Questions

How many Linux kernel CVEs were published in December 2015?

9 Linux kernel CVEs were published in December 2015, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 1 High, and 5 Medium.

How does December 2015 compare to other months?

December 2015's 9 CVEs represent 10% of all 2015 Linux kernel CVEs. View the full 2015 breakdown →

November 2015 2015 statistics January 2016