Linux Kernel CVE Statistics
12 Linux Kernel CVEs in July 2022
Full month · Source: NIST NVD
In July 2022, 12 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 5 were rated High severity and 7 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. July's 12 CVEs represent 4% of all 2022 Linux kernel CVEs , down from June's 14 (a 14% month-over-month decrease) .
12
Total CVEs
0
Critical
5
High
7
Medium
0
Low
0
KEV Exploited
All CVEs — July 2022
12 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2022-36123 | linux | High | 7.8 | 2022-07-29 | The Linux kernel before 5.18.13 lacks a certain clear operation for the block starting symbol (.bss). This allows Xen P… | |
| CVE-2022-34918 | linux | High | 7.8 | 2022-07-04 | An issue was discovered in the Linux kernel through 5.18.9. A type confusion bug in nft_set_elem_init (leading to a buf… | |
| CVE-2022-36946 | linux | High | 7.5 | 2022-07-27 | nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a … | |
| CVE-2022-1651 | linux | High | 7.1 | 2022-07-26 | A memory leak flaw was found in the Linux kernel in acrn_dev_ioctl in the drivers/virt/acrn/hsm.c function in how the A… | |
| CVE-2022-1671 | linux | High | 7.1 | 2022-07-26 | A NULL pointer dereference flaw was found in rxrpc_preparse_s in net/rxrpc/server_key.c in the Linux kernel. This flaw … | |
| CVE-2022-36879 | linux | Medium | 5.5 | 2022-07-27 | An issue was discovered in the Linux kernel through 5.18.14. xfrm_expand_policies in net/xfrm/xfrm_policy.c can cause a… | |
| CVE-2021-4135 | linux | Medium | 5.5 | 2022-07-14 | A memory leak vulnerability was found in the Linux kernel's eBPF for the Simulated networking device driver in the way … | |
| CVE-2022-2380 | linux | Medium | 5.5 | 2022-07-13 | The Linux kernel was found vulnerable out of bounds memory access in the drivers/video/fbdev/sm712fb.c:smtcfb_read() fu… | |
| CVE-2011-4916 | linux | Medium | 5.5 | 2022-07-12 | Linux kernel through 3.1 allows local users to obtain sensitive keystroke information via access to /dev/pts/ and /dev/… | |
| CVE-2022-2318 | linux | Medium | 5.5 | 2022-07-06 | There are use-after-free vulnerabilities caused by timer handler in net/rose/rose_timer.c of linux that allow attackers… | |
| CVE-2020-36558 | linux | Medium | 5.1 | 2022-07-21 | A race condition in the Linux kernel before 5.5.7 involving VT_RESIZEX could lead to a NULL pointer dereference and gen… | |
| CVE-2020-36557 | linux | Medium | 5.1 | 2022-07-21 | A race condition in the Linux kernel before 5.6.2 between the VT_DISALLOCATE ioctl and closing/opening of ttys could le… |