Linux Kernel CVE Statistics
8 Linux Kernel CVEs in February 2019
Full month · Source: NIST NVD
In February 2019, 8 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 1 was rated Critical, 5 were rated High severity and 2 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. February's 8 CVEs represent 3% of all 2019 Linux kernel CVEs , up from January's 7 (a 14% month-over-month increase) .
8
Total CVEs
1
Critical
5
High
2
Medium
0
Low
0
KEV Exploited
All CVEs — February 2019
8 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2018-20784 | linux | Critical | 9.8 | 2019-02-22 | In the Linux kernel before 4.20.2, kernel/sched/fair.c mishandles leaf cfs_rq's, which allows attackers to cause a deni… | |
| CVE-2019-6974 | linux | High | 8.1 | 2019-02-15 | In the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles reference counting because… | |
| CVE-2019-9162 | linux | High | 7.8 | 2019-02-25 | In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient… | |
| CVE-2019-8912 | linux | High | 7.8 | 2019-02-18 | In the Linux kernel through 4.20.11, af_alg_release() in crypto/af_alg.c neglects to set a NULL value for a certain str… | |
| CVE-2019-9003 | linux | High | 7.5 | 2019-02-22 | In the Linux kernel before 4.20.5, attackers can trigger a drivers/char/ipmi/ipmi_msghandler.c use-after-free and OOPS … | |
| CVE-2019-8980 | linux | High | 7.5 | 2019-02-21 | A memory leak in the kernel_read_file function in fs/exec.c in the Linux kernel through 4.20.11 allows attackers to cau… | |
| CVE-2019-7308 | linux | Medium | 5.6 | 2019-02-01 | kernel/bpf/verifier.c in the Linux kernel before 4.20.6 performs undesirable out-of-bounds speculation on pointer arith… | |
| CVE-2016-10741 | linux | Medium | 4.7 | 2019-02-01 | In the Linux kernel before 4.9.3, fs/xfs/xfs_aops.c allows local users to cause a denial of service (system crash) beca… |