Linux Kernel CVE Statistics

17 Linux Kernel CVEs in June 2016

Full month · Source: NIST NVD

May 2016 July 2016

In June 2016, 17 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 12 were rated High severity and 5 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. June's 17 CVEs represent 8% of all 2016 Linux kernel CVEs , down from May's 56 (a 70% month-over-month decrease) .

17
Total CVEs
0
Critical
12
High
5
Medium
0
Low
0
KEV Exploited
All CVEs — June 2016 17 CVEs
All (17) Critical (0) High (12) Medium (5) Low (0)
CVE ID Package Severity CVSS Published Description
CVE-2016-3707 linux High 8.1 2016-06-27 The icmp_check_sysrq function in net/ipv4/icmp.c in the kernel.org projects/rt patches for the Linux kernel, as used in…
CVE-2012-6703 linux High 7.8 2016-06-29 Integer overflow in the snd_compr_allocate_buffer function in sound/core/compress_offload.c in the ALSA subsystem in th…
CVE-2016-0758 linux High 7.8 2016-06-27 Integer overflow in lib/asn1_decoder.c in the Linux kernel before 4.6 allows local users to gain privileges via crafted…
CVE-2016-1583 linux High 7.8 2016-06-27 The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to g…
CVE-2016-4440 linux High 7.8 2016-06-27 arch/x86/kvm/vmx.c in the Linux kernel through 4.6.3 mishandles the APICv on/off state, which allows guest OS users to …
CVE-2016-5828 linux High 7.8 2016-06-27 The start_thread function in arch/powerpc/kernel/process.c in the Linux kernel through 4.6.3 on powerpc platforms misha…
CVE-2014-9904 linux High 7.8 2016-06-27 The snd_compress_check_input function in sound/core/compress_offload.c in the ALSA subsystem in the Linux kernel before…
CVE-2016-5829 linux High 7.8 2016-06-27 Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux ker…
CVE-2016-2061 linux High 7.8 2016-06-13 Integer signedness error in the MSM V4L2 video driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (…
CVE-2016-2066 linux High 7.8 2016-06-13 Integer signedness error in the MSM QDSP6 audio driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center …
CVE-2016-5244 linux High 7.5 2016-06-27 The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through 4.6.3 does not initialize a certain struct…
CVE-2016-3713 linux High 7.1 2016-06-27 The msr_mtrr_valid function in arch/x86/kvm/mtrr.c in the Linux kernel before 4.6.1 supports MSR 0x2f8, which allows gu…
CVE-2016-5728 linux Medium 6.3 2016-06-27 Race condition in the vop_ioctl function in drivers/misc/mic/vop/vop_vringh.c in the MIC VOP driver in the Linux kernel…
CVE-2016-1237 linux Medium 5.5 2016-06-29 nfsd in the Linux kernel through 4.6.3 allows local users to bypass intended file-permission restrictions by setting a …
CVE-2016-5243 linux Medium 5.5 2016-06-27 The tipc_nl_compat_link_dump function in net/tipc/netlink_compat.c in the Linux kernel through 4.6.3 does not properly …

Frequently Asked Questions

How many Linux kernel CVEs were published in June 2016?

17 Linux kernel CVEs were published in June 2016, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 12 High, and 5 Medium.

How does June 2016 compare to other months?

June 2016's 17 CVEs represent 8% of all 2016 Linux kernel CVEs. Compared to May's 56 CVEs, this was a 70% decrease month-over-month. View the full 2016 breakdown →

May 2016 2016 statistics July 2016