Linux Kernel CVE Statistics
18 Linux Kernel CVEs in January 2018
Full month · Source: NIST NVD
In January 2018, 18 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 2 were rated Critical, 6 were rated High severity and 10 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. January's 18 CVEs represent 10% of all 2018 Linux kernel CVEs , down from December's 26 (a 31% month-over-month decrease) .
18
Total CVEs
2
Critical
6
High
10
Medium
0
Low
0
KEV Exploited
All CVEs — January 2018
18 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2018-5703 | linux | Critical | 9.8 | 2018-01-16 | The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.14.11 allows attackers to cause … | |
| CVE-2017-18017 | linux | Critical | 9.8 | 2018-01-03 | The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36… | |
| CVE-2017-15126 | linux | High | 8.1 | 2018-01-14 | A use-after-free flaw was found in fs/userfaultfd.c in the Linux kernel before 4.13.6. The issue is related to the hand… | |
| CVE-2017-18079 | linux | High | 7.8 | 2018-01-29 | drivers/input/serio/i8042.c in the Linux kernel before 4.12.4 allows attackers to cause a denial of service (NULL point… | |
| CVE-2017-18075 | linux | High | 7.8 | 2018-01-24 | crypto/pcrypt.c in the Linux kernel before 4.14.13 mishandles freeing instances, allowing a local user able to access t… | |
| CVE-2018-5344 | linux | High | 7.8 | 2018-01-12 | In the Linux kernel through 4.14.13, drivers/block/loop.c mishandles lo_release serialization, which allows attackers t… | |
| CVE-2018-5332 | linux | High | 7.8 | 2018-01-11 | In the Linux kernel through 3.2, the rds_message_alloc_sgs() function does not validate a value that is used during DMA… | |
| CVE-2018-6412 | linux | High | 7.5 | 2018-01-31 | In the function sbusfb_ioctl_helper() in drivers/video/fbdev/sbuslib.c in the Linux kernel through 4.15, an integer sig… | |
| CVE-2017-16914 | linux | Medium | 5.9 | 2018-01-31 | The "stub_send_ret_submit()" function (drivers/usb/usbip/stub_tx.c) in the Linux Kernel before version 4.14.8, 4.9.71, … | |
| CVE-2017-16912 | linux | Medium | 5.9 | 2018-01-31 | The "get_pipe()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, and 4.4.114 … | |
| CVE-2017-16913 | linux | Medium | 5.9 | 2018-01-31 | The "stub_recv_cmd_submit()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, … | |
| CVE-2018-1000004 | linux | Medium | 5.9 | 2018-01-16 | In the Linux kernel 4.12, 3.10, 2.6 and possibly earlier versions a race condition vulnerability exists in the sound sy… | |
| CVE-2018-5750 | linux | Medium | 5.5 | 2018-01-26 | The acpi_smbus_hc_add function in drivers/acpi/sbshc.c in the Linux kernel through 4.14.15 allows local users to obtain… | |
| CVE-2017-15127 | linux | Medium | 5.5 | 2018-01-14 | A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel before 4.13. A superfluou… | |
| CVE-2017-15128 | linux | Medium | 5.5 | 2018-01-14 | A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel before 4.13.12. A lack of… |