Linux Kernel CVE Statistics
17 Linux Kernel CVEs in August 2016
Full month · Source: NIST NVD
In August 2016, 17 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 1 was rated Critical, 6 were rated High severity and 10 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. August's 17 CVEs represent 9% of all 2016 Linux kernel CVEs , up from July's 4 (a 325% month-over-month increase) .
17
Total CVEs
1
Critical
6
High
10
Medium
0
Low
0
KEV Exploited
All CVEs — August 2016
17 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2014-9410 | linux | Critical | 9.8 | 2016-08-07 | The vfe31_proc_general function in drivers/media/video/msm/vfe/msm_vfe31.c in the MSM-VFE31 driver for the Linux kernel… | |
| CVE-2016-6162 | linux | High | 7.8 | 2016-08-06 | net/core/skbuff.c in the Linux kernel 4.7-rc6 allows local users to cause a denial of service (panic) or possibly have … | |
| CVE-2014-9870 | linux | High | 7.8 | 2016-08-06 | The Linux kernel before 3.11 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, do… | |
| CVE-2016-6187 | linux | High | 7.8 | 2016-08-06 | The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 4.6.5 does not validate the buf… | |
| CVE-2016-3070 | linux | High | 7.8 | 2016-08-06 | The trace_writeback_dirty_page implementation in include/trace/events/writeback.h in the Linux kernel before 4.4 improp… | |
| CVE-2016-6516 | linux | High | 7.4 | 2016-08-06 | Race condition in the ioctl_file_dedupe_range function in fs/ioctl.c in the Linux kernel through 4.7 allows local users… | |
| CVE-2016-3841 | linux | High | 7.3 | 2016-08-06 | The IPv6 stack in the Linux kernel before 4.3.3 mishandles options data, which allows local users to gain privileges or… | |
| CVE-2016-5412 | linux | Medium | 6.5 | 2016-08-06 | arch/powerpc/kvm/book3s_hv_rmhandlers.S in the Linux kernel through 4.7 on PowerPC platforms, when CONFIG_KVM_BOOK3S_64… | |
| CVE-2016-6197 | linux | Medium | 5.5 | 2016-08-06 | fs/overlayfs/dir.c in the OverlayFS filesystem implementation in the Linux kernel before 4.6 does not properly verify t… | |
| CVE-2014-9900 | linux | Medium | 5.5 | 2016-08-06 | The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel through 4.7, as used in Android before 2016-08-0… | |
| CVE-2014-9892 | linux | Medium | 5.5 | 2016-08-06 | The snd_compr_tstamp function in sound/core/compress_offload.c in the Linux kernel through 4.7, as used in Android befo… | |
| CVE-2016-6198 | linux | Medium | 5.5 | 2016-08-06 | The filesystem layer in the Linux kernel before 4.5.5 proceeds with post-rename operations after an OverlayFS file is r… | |
| CVE-2016-6480 | linux | Medium | 5.1 | 2016-08-06 | Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel through 4.7 allows… | |
| CVE-2016-6156 | linux | Medium | 5.1 | 2016-08-06 | Race condition in the ec_device_ioctl_xcmd function in drivers/platform/chrome/cros_ec_dev.c in the Linux kernel before… | |
| CVE-2016-5696 | linux | Medium | 4.8 | 2016-08-06 | net/ipv4/tcp_input.c in the Linux kernel before 4.7 does not properly determine the rate of challenge ACK segments, whi… |