Linux Kernel CVE Statistics
14 Linux Kernel CVEs in February 2018
Full month · Source: NIST NVD
In February 2018, 14 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 1 was rated Critical, 5 were rated High severity and 8 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. February's 14 CVEs represent 8% of all 2018 Linux kernel CVEs , down from January's 18 (a 22% month-over-month decrease) .
14
Total CVEs
1
Critical
5
High
8
Medium
0
Low
0
KEV Exploited
All CVEs — February 2018
14 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2017-18174 | linux | Critical | 9.8 | 2018-02-11 | In the Linux kernel before 4.7, the amd_gpio_remove function in drivers/pinctrl/pinctrl-amd.c calls the pinctrl_unregis… | |
| CVE-2018-7480 | linux | High | 7.8 | 2018-02-25 | The blkcg_init_queue function in block/blk-cgroup.c in the Linux kernel before 4.11 allows local users to cause a denia… | |
| CVE-2018-6927 | linux | High | 7.8 | 2018-02-12 | The futex_requeue function in kernel/futex.c in the Linux kernel before 4.14.15 might allow attackers to cause a denial… | |
| CVE-2018-1000026 | linux | High | 7.7 | 2018-02-09 | Linux Linux kernel version at least v4.8 onwards, probably well before contains a Insufficient input validation vulnera… | |
| CVE-2018-1000028 | linux | High | 7.4 | 2018-02-09 | Linux kernel version after commit bdcf0a423ea1 - 4.15-rc4+, 4.14.8+, 4.9.76+, 4.4.111+ contains a Incorrect Access Cont… | |
| CVE-2017-18202 | linux | High | 7.0 | 2018-02-27 | The __oom_reap_task_mm function in mm/oom_kill.c in the Linux kernel before 4.14.4 mishandles gather operations, which … | |
| CVE-2014-3519 | linux | Medium | 6.5 | 2018-02-01 | The open_by_handle_at function in vzkernel before 042stab090.5 in the OpenVZ modification for the Linux kernel 2.6.32, … | |
| CVE-2017-18204 | linux | Medium | 5.5 | 2018-02-27 | The ocfs2_setattr function in fs/ocfs2/file.c in the Linux kernel before 4.14.2 allows local users to cause a denial of… | |
| CVE-2018-7492 | linux | Medium | 5.5 | 2018-02-26 | A NULL pointer dereference was found in the net/rds/rdma.c __rds_rdma_map() function in the Linux kernel before 4.14.7 … | |
| CVE-2017-18200 | linux | Medium | 5.5 | 2018-02-26 | The f2fs implementation in the Linux kernel before 4.14 mishandles reference counts associated with f2fs_wait_discard_b… | |
| CVE-2017-18193 | linux | Medium | 5.5 | 2018-02-22 | fs/f2fs/extent_cache.c in the Linux kernel before 4.13 mishandles extent trees, which allows local users to cause a den… | |
| CVE-2018-7273 | linux | Medium | 5.5 | 2018-02-21 | In the Linux kernel through 4.15.4, the floppy driver reveals the addresses of kernel functions and global variables us… | |
| CVE-2014-8171 | linux | Medium | 5.5 | 2018-02-09 | The memory resource controller (aka memcg) in the Linux kernel allows local users to cause a denial of service (deadloc… | |
| CVE-2017-18203 | linux | Medium | 4.7 | 2018-02-27 | The dm_get_from_kobject function in drivers/md/dm.c in the Linux kernel before 4.14.3 allow local users to cause a deni… |