Linux Kernel CVE Statistics

8 Linux Kernel CVEs in December 2021

Full month · Source: NIST NVD

November 2021 January 2022

In December 2021, 8 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 5 were rated High severity and 2 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. December's 8 CVEs represent 5% of all 2021 Linux kernel CVEs , up from November's 5 (a 60% month-over-month increase) .

8
Total CVEs
0
Critical
5
High
2
Medium
1
Low
0
KEV Exploited
All CVEs — December 2021 8 CVEs
All (8) Critical (0) High (5) Medium (2) Low (1)
CVE ID Package Severity CVSS Published Description
CVE-2021-45469 linux High 7.8 2021-12-23 In __f2fs_setxattr in fs/f2fs/xattr.c in the Linux kernel through 5.15.11, there is an out-of-bounds memory access when…
CVE-2018-25020 linux High 7.8 2021-12-08 The BPF subsystem in the Linux kernel before 4.17 mishandles situations with a long jump over an instruction sequence w…
CVE-2021-45485 linux High 7.5 2021-12-25 In the IPv6 implementation in the Linux kernel before 5.13.3, net/ipv6/output_core.c has an information leak because of…
CVE-2021-45100 linux High 7.5 2021-12-16 The ksmbd server through 3.4.2, as used in the Linux kernel through 5.15.8, sometimes communicates in cleartext even th…
CVE-2021-44733 linux High 7.0 2021-12-22 A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs …
CVE-2021-45480 linux Medium 5.5 2021-12-24 An issue was discovered in the Linux kernel before 5.15.11. There is a memory leak in the __rds_conn_create() function …
CVE-2021-45095 linux Medium 5.5 2021-12-16 pep_sock_accept in net/phonet/pep.c in the Linux kernel through 5.15.8 has a refcount leak.
CVE-2021-45486 linux Low 3.5 2021-12-25 In the IPv4 implementation in the Linux kernel before 5.12.4, net/ipv4/route.c has an information leak because the hash…

Frequently Asked Questions

How many Linux kernel CVEs were published in December 2021?

8 Linux kernel CVEs were published in December 2021, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 5 High, and 2 Medium.

How does December 2021 compare to other months?

December 2021's 8 CVEs represent 5% of all 2021 Linux kernel CVEs. Compared to November's 5 CVEs, this was a 60% increase month-over-month. View the full 2021 breakdown →

November 2021 2021 statistics January 2022