Linux Kernel CVE Statistics

40 Linux Kernel CVEs in October 2017

Full month · Source: NIST NVD

September 2017 November 2017

In October 2017, 40 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 31 were rated High severity and 9 Medium. CVE-2017-1000253 was confirmed as actively exploited in the wild and added to the CISA Known Exploited Vulnerabilities catalog. October's 40 CVEs represent 7% of all 2017 Linux kernel CVEs , up from September's 36 (a 11% month-over-month increase) .

40
Total CVEs
0
Critical
31
High
9
Medium
0
Low
1
KEV Exploited

Actively Exploited CVEs — October 2017

1 CVE in CISA KEV

CVE-2017-1000253 is the only Linux kernel CVE from October 2017 confirmed as actively exploited in the wild. It carries a CVSS score of 7.8 (High severity) and is listed in the CISA Known Exploited Vulnerabilities catalog.

CVE ID Severity CVSS Published Description
CVE-2017-1000253 High KEV 7.8 2017-10-05 Linux distributions that have not patched their long-term kernels with https://git.kernel.org/linus…
KEV data sourced from CISA Known Exploited Vulnerabilities catalog.
All CVEs — October 2017 40 CVEs
All (40) Critical (0) High (31) Medium (9) Low (0)
CVE ID Package Severity CVSS Published Description
CVE-2017-15951 linux High 7.8 2017-10-28 The KEYS subsystem in the Linux kernel before 4.13.10 does not correctly synchronize the actions of updating versus fin…
CVE-2017-15649 linux High 7.8 2017-10-19 net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls…
CVE-2017-12188 linux High 7.8 2017-10-11 arch/x86/kvm/mmu.c in the Linux kernel through 4.13.5, when nested virtualisation is used, does not properly traverse g…
CVE-2017-11067 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, the Ath…
CVE-2017-11048 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a di…
CVE-2017-11057 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in comp…
CVE-2017-9706 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, an arra…
CVE-2017-11053 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when qo…
CVE-2017-11046 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when an…
CVE-2017-9687 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, two con…
CVE-2017-11056 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while d…
CVE-2017-11059 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, setting…
CVE-2017-9683 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while f…
CVE-2017-11050 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when th…
CVE-2017-9686 linux High 7.8 2017-10-10 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, there i…

Frequently Asked Questions

How many Linux kernel CVEs were published in October 2017?

40 Linux kernel CVEs were published in October 2017, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 31 High, and 9 Medium.

Which Linux kernel CVEs from October 2017 are actively exploited?

1 Linux kernel CVE from October 2017 is listed in the CISA Known Exploited Vulnerabilities catalog: CVE-2017-1000253 (CVSS 7.8) . This indicates confirmed active exploitation in the wild. View all actively exploited 2017 CVEs →

How does October 2017 compare to other months?

October 2017's 40 CVEs represent 7% of all 2017 Linux kernel CVEs. Compared to September's 36 CVEs, this was a 11% increase month-over-month. View the full 2017 breakdown →

September 2017 2017 statistics November 2017