Linux Kernel CVE Statistics

4 Linux Kernel CVEs in January 2015

Full month · Source: NIST NVD

December 2014 February 2015

In January 2015, 4 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 1 was rated High severity and 1 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. January's 4 CVEs represent 5% of all 2015 Linux kernel CVEs , down from December's 8 (a 50% month-over-month decrease) .

4
Total CVEs
0
Critical
1
High
1
Medium
2
Low
0
KEV Exploited
All CVEs — January 2015 4 CVEs
All (4) Critical (0) High (1) Medium (1) Low (2)
CVE ID Package Severity CVSS Published Description
CVE-2014-9428 linux High 7.8 2015-01-02 The batadv_frag_merge_packets function in net/batman-adv/fragmentation.c in the B.A.T.M.A.N. implementation in the Linu…
CVE-2014-9529 linux Medium 6.9 2015-01-09 Race condition in the key_gc_unused_keys function in security/keys/gc.c in the Linux kernel through 3.18.2 allows local…
CVE-2014-9584 linux Low 2.1 2015-01-09 The parse_rock_ridge_inode_internal function in fs/isofs/rock.c in the Linux kernel before 3.18.2 does not validate a l…
CVE-2014-9585 linux Low 2.1 2015-01-09 The vdso_addr function in arch/x86/vdso/vma.c in the Linux kernel through 3.18.2 does not properly choose memory locati…

Frequently Asked Questions

How many Linux kernel CVEs were published in January 2015?

4 Linux kernel CVEs were published in January 2015, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 1 High, and 1 Medium.

How does January 2015 compare to other months?

January 2015's 4 CVEs represent 5% of all 2015 Linux kernel CVEs. Compared to December's 8 CVEs, this was a 50% decrease month-over-month. View the full 2015 breakdown →

December 2014 2015 statistics February 2015