Linux Kernel CVE Statistics

40 Linux Kernel CVEs in May 2017

Full month · Source: NIST NVD

April 2017 June 2017

In May 2017, 40 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 30 were rated High severity and 10 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. May's 40 CVEs represent 7% of all 2017 Linux kernel CVEs , up from April's 29 (a 38% month-over-month increase) .

40
Total CVEs
0
Critical
30
High
10
Medium
0
Low
0
KEV Exploited
All CVEs — May 2017 40 CVEs
All (40) Critical (0) High (30) Medium (10) Low (0)
CVE ID Package Severity CVSS Published Description
CVE-2017-9076 linux High 7.8 2017-05-19 The dccp_v6_request_recv_sock function in net/dccp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, wh…
CVE-2017-9074 linux High 7.8 2017-05-19 The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may b…
CVE-2017-9077 linux High 7.8 2017-05-19 The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, whi…
CVE-2017-9075 linux High 7.8 2017-05-19 The sctp_v6_create_accept_sk function in net/sctp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, whi…
CVE-2015-9000 linux High 7.8 2017-05-16 In TrustZone an untrusted pointer dereference vulnerability can potentially occur in a DRM routine in all Android relea…
CVE-2015-9002 linux High 7.8 2017-05-16 In TrustZone an out-of-range pointer offset vulnerability can potentially occur in a DRM routine in all Android release…
CVE-2015-8998 linux High 7.8 2017-05-16 In TrustZone an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux k…
CVE-2014-9934 linux High 7.8 2017-05-16 A PKCS#1 v1.5 signature verification routine in all Android releases from CAF using the Linux kernel may not check padd…
CVE-2014-9935 linux High 7.8 2017-05-16 In TrustZone an integer overflow vulnerability leading to a buffer overflow could potentially occur in a DRM routine in…
CVE-2015-8999 linux High 7.8 2017-05-16 In TrustZone a buffer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux ker…
CVE-2014-9937 linux High 7.8 2017-05-16 In TrustZone a buffer overflow vulnerability can potentially occur in a DRM routine in all Android releases from CAF us…
CVE-2014-9931 linux High 7.8 2017-05-16 A buffer overflow vulnerability in all Android releases from CAF using the Linux kernel can potentially occur if an OEM…
CVE-2014-9932 linux High 7.8 2017-05-16 In TrustZone, an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux …
CVE-2014-9933 linux High 7.8 2017-05-16 Due to missing input validation in all Android releases from CAF using the Linux kernel, HLOS can write to fuses for wh…
CVE-2015-8995 linux High 7.8 2017-05-16 In TrustZone an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux k…

Frequently Asked Questions

How many Linux kernel CVEs were published in May 2017?

40 Linux kernel CVEs were published in May 2017, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 30 High, and 10 Medium.

How does May 2017 compare to other months?

May 2017's 40 CVEs represent 7% of all 2017 Linux kernel CVEs. Compared to April's 29 CVEs, this was a 38% increase month-over-month. View the full 2017 breakdown →

April 2017 2017 statistics June 2017