Linux Kernel CVE Statistics
22 Linux Kernel CVEs in March 2018
Full month · Source: NIST NVD
In March 2018, 22 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 6 were rated High severity and 16 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. March's 22 CVEs represent 13% of all 2018 Linux kernel CVEs , up from February's 14 (a 57% month-over-month increase) .
22
Total CVEs
0
Critical
6
High
16
Medium
0
Low
0
KEV Exploited
All CVEs — March 2018
22 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2017-18255 | linux | High | 7.8 | 2018-03-31 | The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Linux kernel before 4.11 allows local use… | |
| CVE-2018-7566 | linux | High | 7.8 | 2018-03-30 | The Linux kernel 4.15 has a Buffer Overflow via an SNDRV_SEQ_IOCTL_SET_CLIENT_POOL ioctl write operation to /dev/snd/se… | |
| CVE-2018-8822 | linux | High | 7.8 | 2018-03-20 | Incorrect buffer length handling in the ncp_read_kernel function in fs/ncpfs/ncplib_kernel.c in the Linux kernel throug… | |
| CVE-2017-18222 | linux | High | 7.8 | 2018-03-08 | In the Linux kernel before 4.12, Hisilicon Network Subsystem (HNS) does not consider the ETH_SS_PRIV_FLAGS case when re… | |
| CVE-2017-18218 | linux | High | 7.8 | 2018-03-05 | In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of ser… | |
| CVE-2017-18249 | linux | High | 7.0 | 2018-03-26 | The add_free_nid function in fs/f2fs/node.c in the Linux kernel before 4.12 does not properly track an allocated nid, w… | |
| CVE-2018-1068 | linux | Medium | 6.7 | 2018-03-16 | A flaw was found in the Linux 4.x kernel's implementation of 32-bit syscall interface for bridging. This allowed a priv… | |
| CVE-2018-1066 | linux | Medium | 6.5 | 2018-03-02 | The Linux kernel before version 4.11 is vulnerable to a NULL pointer dereference in fs/cifs/cifsencrypt.c:setup_ntlmv2_… | |
| CVE-2018-1091 | linux | Medium | 5.5 | 2018-03-27 | In the flush_tmregs_to_thread function in arch/powerpc/kernel/ptrace.c in the Linux kernel before 4.13.5, a guest kerne… | |
| CVE-2017-18241 | linux | Medium | 5.5 | 2018-03-21 | fs/f2fs/segment.c in the Linux kernel before 4.13 allows local users to cause a denial of service (NULL pointer derefer… | |
| CVE-2017-18232 | linux | Medium | 5.5 | 2018-03-15 | The Serial Attached SCSI (SAS) implementation in the Linux kernel through 4.15.9 mishandles a mutex within libsas, whic… | |
| CVE-2018-8087 | linux | Medium | 5.5 | 2018-03-13 | Memory leak in the hwsim_new_radio_nl function in drivers/net/wireless/mac80211_hwsim.c in the Linux kernel through 4.1… | |
| CVE-2018-8043 | linux | Medium | 5.5 | 2018-03-10 | The unimac_mdio_probe function in drivers/net/phy/mdio-bcm-unimac.c in the Linux kernel through 4.15.8 does not validat… | |
| CVE-2018-7757 | linux | Medium | 5.5 | 2018-03-08 | Memory leak in the sas_smp_get_phy_events function in drivers/scsi/libsas/sas_expander.c in the Linux kernel through 4.… | |
| CVE-2018-7755 | linux | Medium | 5.5 | 2018-03-08 | An issue was discovered in the fd_locked_ioctl function in drivers/block/floppy.c in the Linux kernel through 4.15.7. T… |