Linux Kernel CVE Statistics

29 Linux Kernel CVEs in April 2017

Full month · Source: NIST NVD

March 2017 May 2017

In April 2017, 29 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 2 were rated Critical, 19 were rated High severity and 8 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. April's 29 CVEs represent 5% of all 2017 Linux kernel CVEs , up from March's 23 (a 26% month-over-month increase) .

29
Total CVEs
2
Critical
19
High
8
Medium
0
Low
0
KEV Exploited
All CVEs — April 2017 29 CVEs
All (29) Critical (2) High (19) Medium (8) Low (0)
CVE ID Package Severity CVSS Published Description
CVE-2017-7895 linux Critical 9.8 2017-04-28 The NFSv2 and NFSv3 server implementations in the Linux kernel through 4.10.13 lack certain checks for the end of a buf…
CVE-2016-10229 linux Critical 9.8 2017-04-04 udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an…
CVE-2007-6761 linux High 7.8 2017-04-24 drivers/media/video/videobuf-vmalloc.c in the Linux kernel before 2.6.24 does not initialize videobuf_mapping data stru…
CVE-2017-8069 linux High 7.8 2017-04-23 drivers/net/usb/rtl8150.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK opti…
CVE-2017-8065 linux High 7.8 2017-04-23 crypto/ccm.c in the Linux kernel 4.9.x and 4.10.x through 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK opti…
CVE-2017-8063 linux High 7.8 2017-04-23 drivers/media/usb/dvb-usb/cxusb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CO…
CVE-2017-8072 linux High 7.8 2017-04-23 The cp2112_gpio_direction_input function in drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 does not ha…
CVE-2017-8067 linux High 7.8 2017-04-23 drivers/char/virtio_console.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG…
CVE-2017-8066 linux High 7.8 2017-04-23 drivers/net/can/usb/gs_usb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.2 interacts incorrectly with the CONFIG_V…
CVE-2017-8068 linux High 7.8 2017-04-23 drivers/net/usb/pegasus.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK opti…
CVE-2017-8070 linux High 7.8 2017-04-23 drivers/net/usb/catc.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK option,…
CVE-2017-8061 linux High 7.8 2017-04-23 drivers/media/usb/dvb-usb/dvb-usb-firmware.c in the Linux kernel 4.9.x and 4.10.x before 4.10.7 interacts incorrectly w…
CVE-2017-8062 linux High 7.8 2017-04-23 drivers/media/usb/dvb-usb/dw2102.c in the Linux kernel 4.9.x and 4.10.x before 4.10.4 interacts incorrectly with the CO…
CVE-2017-8064 linux High 7.8 2017-04-23 drivers/media/usb/dvb-usb-v2/dvb_usb_core.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly w…
CVE-2017-7979 linux High 7.8 2017-04-19 The cookie feature in the packet action API implementation in net/sched/act_api.c in the Linux kernel 4.11.x through 4.…

Frequently Asked Questions

How many Linux kernel CVEs were published in April 2017?

29 Linux kernel CVEs were published in April 2017, sourced from the NIST National Vulnerability Database. Of these, 2 were rated Critical severity, 19 High, and 8 Medium.

How does April 2017 compare to other months?

April 2017's 29 CVEs represent 5% of all 2017 Linux kernel CVEs. Compared to March's 23 CVEs, this was a 26% increase month-over-month. View the full 2017 breakdown →

March 2017 2017 statistics May 2017