Linux Kernel CVE Statistics

15 Linux Kernel CVEs in April 2022

Full month · Source: NIST NVD

March 2022 May 2022

In April 2022, 15 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 8 were rated High severity and 7 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. April's 15 CVEs represent 5% of all 2022 Linux kernel CVEs , down from March's 40 (a 62% month-over-month decrease) .

15
Total CVEs
0
Critical
8
High
7
Medium
0
Low
0
KEV Exploited
All CVEs — April 2022 15 CVEs
All (15) Critical (0) High (8) Medium (7) Low (0)
CVE ID Package Severity CVSS Published Description
CVE-2022-29156 linux High 7.8 2022-04-13 drivers/infiniband/ulp/rtrs/rtrs-clt.c in the Linux kernel before 5.16.12 has a double free related to rtrs_clt_dev_rel…
CVE-2022-28893 linux High 7.8 2022-04-11 The SUNRPC subsystem in the Linux kernel through 5.17.2 can call xs_xprt_free before ensuring that sockets are in the i…
CVE-2022-28390 linux High 7.8 2022-04-03 ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c in the Linux kernel through 5.17.1 has a double free.
CVE-2021-3847 linux High 7.8 2022-04-01 An unauthorized access to the execution of the setuid file with capabilities flaw in the Linux kernel OverlayFS subsyst…
CVE-2022-1353 linux High 7.1 2022-04-29 A vulnerability was found in the pfkey_register function in net/key/af_key.c in the Linux kernel. This flaw allows a lo…
CVE-2022-1048 linux High 7.0 2022-04-29 A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PC…
CVE-2022-29582 linux High 7.0 2022-04-22 In the Linux kernel before 5.17.3, fs/io_uring.c has a use-after-free due to a race condition in io_uring timeouts. Thi…
CVE-2022-28796 linux High 7.0 2022-04-08 jbd2_journal_wait_updates in fs/jbd2/transaction.c in the Linux kernel before 5.17.1 has a use-after-free caused by a t…
CVE-2022-1015 linux Medium 6.6 2022-04-29 A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c of the netfilter subsystem. This flaw allow…
CVE-2022-1280 linux Medium 6.3 2022-04-13 A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a …
CVE-2022-1195 linux Medium 5.5 2022-04-29 A use-after-free vulnerability was found in the Linux kernel in drivers/net/hamradio. This flaw allows a local attacker…
CVE-2011-4917 linux Medium 5.5 2022-04-18 In the Linux kernel through 3.1 there is an information disclosure issue via /proc/stat.
CVE-2022-28389 linux Medium 5.5 2022-04-03 mcba_usb_start_xmit in drivers/net/can/usb/mcba_usb.c in the Linux kernel through 5.17.1 has a double free.
CVE-2022-28388 linux Medium 5.5 2022-04-03 usb_8dev_start_xmit in drivers/net/can/usb/usb_8dev.c in the Linux kernel through 5.17.1 has a double free.
CVE-2022-28356 linux Medium 5.5 2022-04-02 In the Linux kernel before 5.17.1, a refcount leak bug was found in net/llc/af_llc.c.

Frequently Asked Questions

How many Linux kernel CVEs were published in April 2022?

15 Linux kernel CVEs were published in April 2022, sourced from the NIST National Vulnerability Database. Of these, 0 were rated Critical severity, 8 High, and 7 Medium.

How does April 2022 compare to other months?

April 2022's 15 CVEs represent 5% of all 2022 Linux kernel CVEs. Compared to March's 40 CVEs, this was a 62% decrease month-over-month. View the full 2022 breakdown →

March 2022 2022 statistics May 2022