Linux Kernel CVE Statistics
13 Linux Kernel CVEs in April 2020
Full month · Source: NIST NVD
In April 2020, 13 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 4 were rated High severity and 9 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. April's 13 CVEs represent 11% of all 2020 Linux kernel CVEs , up from March's 1 (a 1200% month-over-month increase) .
13
Total CVEs
0
Critical
4
High
9
Medium
0
Low
0
KEV Exploited
All CVEs — April 2020
13 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2020-11725 | linux | High | 7.8 | 2020-04-12 | snd_ctl_elem_add in sound/core/control.c in the Linux kernel through 5.6.3 has a count=info->owner line, which later af… | |
| CVE-2020-8835 | linux | High | 7.8 | 2020-04-02 | In the Linux kernel 5.5.0 and newer, the bpf verifier (kernel/bpf/verifier.c) did not properly restrict the register bo… | |
| CVE-2020-11668 | linux | High | 7.1 | 2020-04-09 | In the Linux kernel before 5.6.1, drivers/media/usb/gspca/xirlink_cit.c (aka the Xirlink camera USB driver) mishandles … | |
| CVE-2020-11884 | linux | High | 7.0 | 2020-04-29 | In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as d… | |
| CVE-2020-12465 | linux | Medium | 6.7 | 2020-04-29 | An array overflow was discovered in mt76_add_fragment in drivers/net/wireless/mediatek/mt76/dma.c in the Linux kernel b… | |
| CVE-2020-12464 | linux | Medium | 6.7 | 2020-04-29 | usb_sg_cancel in drivers/usb/core/message.c in the Linux kernel before 5.6.8 has a use-after-free because a transfer oc… | |
| CVE-2019-20636 | linux | Medium | 6.7 | 2020-04-08 | In the Linux kernel before 5.4.12, drivers/input/input.c has out-of-bounds writes via a crafted keycode table, as demon… | |
| CVE-2020-8834 | linux | Medium | 6.5 | 2020-04-09 | KVM in the Linux kernel on Power8 processors has a conflicting use of HSTATE_HOST_R1 to store r1 state in kvmppc_hv_ent… | |
| CVE-2020-11565 | linux | Medium | 6.0 | 2020-04-06 | An issue was discovered in the Linux kernel through 5.6.2. mpol_parse_str in mm/mempolicy.c has a stack-based out-of-bo… | |
| CVE-2020-11669 | linux | Medium | 5.5 | 2020-04-10 | An issue was discovered in the Linux kernel before 5.2 on the powerpc platform. arch/powerpc/kernel/idle_book3s.S does … | |
| CVE-2020-11494 | linux | Medium | 4.4 | 2020-04-02 | An issue was discovered in slc_bump in drivers/net/can/slcan.c in the Linux kernel 3.16 through 5.6.2. It allows attack… | |
| CVE-2020-11608 | linux | Medium | 4.3 | 2020-04-07 | An issue was discovered in the Linux kernel before 5.6.1. drivers/media/usb/gspca/ov519.c allows NULL pointer dereferen… | |
| CVE-2020-11609 | linux | Medium | 4.3 | 2020-04-07 | An issue was discovered in the stv06xx subsystem in the Linux kernel before 5.6.1. drivers/media/usb/gspca/stv06xx/stv0… |