Linux Kernel CVE Statistics
40 Linux Kernel CVEs in May 2017
Full month · Source: NIST NVD
In May 2017, 40 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 30 were rated High severity and 10 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. May's 40 CVEs represent 7% of all 2017 Linux kernel CVEs , up from April's 29 (a 38% month-over-month increase) .
40
Total CVEs
0
Critical
30
High
10
Medium
0
Low
0
KEV Exploited
All CVEs — May 2017
40 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2017-9076 | linux | High | 7.8 | 2017-05-19 | The dccp_v6_request_recv_sock function in net/dccp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, wh… | |
| CVE-2017-9074 | linux | High | 7.8 | 2017-05-19 | The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may b… | |
| CVE-2017-9077 | linux | High | 7.8 | 2017-05-19 | The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, whi… | |
| CVE-2017-9075 | linux | High | 7.8 | 2017-05-19 | The sctp_v6_create_accept_sk function in net/sctp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, whi… | |
| CVE-2015-9000 | linux | High | 7.8 | 2017-05-16 | In TrustZone an untrusted pointer dereference vulnerability can potentially occur in a DRM routine in all Android relea… | |
| CVE-2015-9002 | linux | High | 7.8 | 2017-05-16 | In TrustZone an out-of-range pointer offset vulnerability can potentially occur in a DRM routine in all Android release… | |
| CVE-2015-8998 | linux | High | 7.8 | 2017-05-16 | In TrustZone an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux k… | |
| CVE-2014-9934 | linux | High | 7.8 | 2017-05-16 | A PKCS#1 v1.5 signature verification routine in all Android releases from CAF using the Linux kernel may not check padd… | |
| CVE-2014-9935 | linux | High | 7.8 | 2017-05-16 | In TrustZone an integer overflow vulnerability leading to a buffer overflow could potentially occur in a DRM routine in… | |
| CVE-2015-8999 | linux | High | 7.8 | 2017-05-16 | In TrustZone a buffer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux ker… | |
| CVE-2014-9937 | linux | High | 7.8 | 2017-05-16 | In TrustZone a buffer overflow vulnerability can potentially occur in a DRM routine in all Android releases from CAF us… | |
| CVE-2014-9931 | linux | High | 7.8 | 2017-05-16 | A buffer overflow vulnerability in all Android releases from CAF using the Linux kernel can potentially occur if an OEM… | |
| CVE-2014-9932 | linux | High | 7.8 | 2017-05-16 | In TrustZone, an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux … | |
| CVE-2014-9933 | linux | High | 7.8 | 2017-05-16 | Due to missing input validation in all Android releases from CAF using the Linux kernel, HLOS can write to fuses for wh… | |
| CVE-2015-8995 | linux | High | 7.8 | 2017-05-16 | In TrustZone an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux k… |