Linux Kernel CVE Statistics
21 Linux Kernel CVEs in August 2021
Full month · Source: NIST NVD
In August 2021, 21 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 5 were rated High severity and 12 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. August's 21 CVEs represent 14% of all 2021 Linux kernel CVEs , up from July's 6 (a 250% month-over-month increase) .
21
Total CVEs
0
Critical
5
High
12
Medium
4
Low
0
KEV Exploited
All CVEs — August 2021
21 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2021-38160 | linux | High | 7.8 | 2021-08-07 | In drivers/char/virtio_console.c in the Linux kernel before 5.13.4, data corruption or loss can be triggered by an untr… | |
| CVE-2021-38166 | linux | High | 7.8 | 2021-08-07 | In kernel/bpf/hashtab.c in the Linux kernel through 5.13.8, there is an integer overflow and out-of-bounds write when m… | |
| CVE-2021-38201 | linux | High | 7.5 | 2021-08-08 | net/sunrpc/xdr.c in the Linux kernel before 5.13.4 allows remote attackers to cause a denial of service (xdr_set_page_b… | |
| CVE-2021-38207 | linux | High | 7.5 | 2021-08-08 | drivers/net/ethernet/xilinx/ll_temac_main.c in the Linux kernel before 5.12.13 allows remote attackers to cause a denia… | |
| CVE-2021-38202 | linux | High | 7.5 | 2021-08-08 | fs/nfsd/trace.h in the Linux kernel before 5.13.4 might allow remote attackers to cause a denial of service (out-of-bou… | |
| CVE-2021-38204 | linux | Medium | 6.8 | 2021-08-08 | drivers/usb/host/max3421-hcd.c in the Linux kernel before 5.13.6 allows physically proximate attackers to cause a denia… | |
| CVE-2021-38199 | linux | Medium | 6.5 | 2021-08-08 | fs/nfs/nfs4client.c in the Linux kernel before 5.13.4 has incorrect connection-setup ordering, which allows operators o… | |
| CVE-2021-3573 | linux | Medium | 6.4 | 2021-08-13 | A use-after-free in function hci_sock_bound_ioctl() of the Linux kernel HCI subsystem was found in the way user calls i… | |
| CVE-2021-38203 | linux | Medium | 5.5 | 2021-08-08 | btrfs in the Linux kernel before 5.13.4 allows attackers to cause a denial of service (deadlock) via processes that tri… | |
| CVE-2021-38200 | linux | Medium | 5.5 | 2021-08-08 | arch/powerpc/perf/core-book3s.c in the Linux kernel before 5.12.13, on systems with perf_event_paranoid=-1 and no speci… | |
| CVE-2021-38206 | linux | Medium | 5.5 | 2021-08-08 | The mac80211 subsystem in the Linux kernel before 5.12.13, when a device supporting only 5 GHz is used, allows attacker… | |
| CVE-2021-38208 | linux | Medium | 5.5 | 2021-08-08 | net/nfc/llcp_sock.c in the Linux kernel before 5.12.10 allows local unprivileged users to cause a denial of service (NU… | |
| CVE-2021-38198 | linux | Medium | 5.5 | 2021-08-08 | arch/x86/kvm/mmu/paging_tmpl.h in the Linux kernel before 5.12.11 incorrectly computes the access permissions of a shad… | |
| CVE-2021-3679 | linux | Medium | 5.5 | 2021-08-05 | A lack of CPU resource in the Linux kernel tracing module functionality in versions prior to 5.14-rc3 was found in the … | |
| CVE-2021-34556 | linux | Medium | 5.5 | 2021-08-02 | In the Linux kernel through 5.13.7, an unprivileged BPF program can obtain sensitive information from kernel memory via… |