Linux Kernel CVE Statistics
13 Linux Kernel CVEs in April 2018
Full month · Source: NIST NVD
In April 2018, 13 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 1 was rated High severity and 12 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. April's 13 CVEs represent 7% of all 2018 Linux kernel CVEs , down from March's 22 (a 41% month-over-month decrease) .
13
Total CVEs
0
Critical
1
High
12
Medium
0
Low
0
KEV Exploited
All CVEs — April 2018
13 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2018-8781 | linux | High | 7.8 | 2018-04-23 | The udl_fb_mmap function in drivers/gpu/drm/udl/udl_fb.c at the Linux kernel version 3.4 and up to and including 4.15 h… | |
| CVE-2018-10323 | linux | Medium | 5.5 | 2018-04-24 | The xfs_bmap_extents_to_btree function in fs/xfs/libxfs/xfs_bmap.c in the Linux kernel through 4.16.3 allows local user… | |
| CVE-2018-10322 | linux | Medium | 5.5 | 2018-04-24 | The xfs_dinode_verify function in fs/xfs/libxfs/xfs_inode_buf.c in the Linux kernel through 4.16.3 allows local users t… | |
| CVE-2017-18261 | linux | Medium | 5.5 | 2018-04-19 | The arch_timer_reg_read_stable macro in arch/arm64/include/asm/arch_timer.h in the Linux kernel before 4.13 allows loca… | |
| CVE-2018-10124 | linux | Medium | 5.5 | 2018-04-16 | The kill_something_info function in kernel/signal.c in the Linux kernel before 4.13, when an unspecified architecture a… | |
| CVE-2018-10087 | linux | Medium | 5.5 | 2018-04-13 | The kernel_wait4 function in kernel/exit.c in the Linux kernel before 4.13, when an unspecified architecture and compil… | |
| CVE-2018-10074 | linux | Medium | 5.5 | 2018-04-12 | The hi3660_stub_clk_probe function in drivers/clk/hisilicon/clk-hi3660-stub.c in the Linux kernel before 4.16 allows lo… | |
| CVE-2018-10021 | linux | Medium | 5.5 | 2018-04-11 | drivers/scsi/libsas/sas_scsi_host.c in the Linux kernel before 4.16 allows local users to cause a denial of service (at… | |
| CVE-2017-18257 | linux | Medium | 5.5 | 2018-04-04 | The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of… | |
| CVE-2018-1093 | linux | Medium | 5.5 | 2018-04-02 | The ext4_valid_block_bitmap function in fs/ext4/balloc.c in the Linux kernel through 4.15.15 allows attackers to cause … | |
| CVE-2018-1092 | linux | Medium | 5.5 | 2018-04-02 | The ext4_iget function in fs/ext4/inode.c in the Linux kernel through 4.15.15 mishandles the case of a root directory w… | |
| CVE-2018-1095 | linux | Medium | 5.5 | 2018-04-02 | The ext4_xattr_check_entries function in fs/ext4/xattr.c in the Linux kernel through 4.15.15 does not properly validate… | |
| CVE-2018-1094 | linux | Medium | 5.5 | 2018-04-02 | The ext4_fill_super function in fs/ext4/super.c in the Linux kernel through 4.15.15 does not always initialize the crc3… |