Linux Kernel CVE Statistics
29 Linux Kernel CVEs in April 2023
Full month · Source: NIST NVD
In April 2023, 29 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 8 were rated High severity and 21 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. April's 29 CVEs represent 11% of all 2023 Linux kernel CVEs , down from March's 42 (a 31% month-over-month decrease) .
29
Total CVEs
0
Critical
8
High
21
Medium
0
Low
0
KEV Exploited
All CVEs — April 2023
29 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2023-31436 | linux | High | 7.8 | 2023-04-28 | qfq_change_class in net/sched/sch_qfq.c in the Linux kernel before 6.2.13 allows an out-of-bounds write because lmax ca… | |
| CVE-2023-2176 | linux | High | 7.8 | 2023-04-20 | A vulnerability was found in compare_netdev_and_ip in drivers/infiniband/core/cma.c in RDMA in the Linux Kernel. The im… | |
| CVE-2023-2008 | linux | High | 7.8 | 2023-04-14 | A flaw was found in the Linux kernel's udmabuf device driver. The specific flaw exists within a fault handler. The issu… | |
| CVE-2023-1829 | linux | High | 7.8 | 2023-04-12 | A use-after-free vulnerability in the Linux Kernel traffic control index filter (tcindex) can be exploited to achieve l… | |
| CVE-2023-1838 | linux | High | 7.1 | 2023-04-05 | A use-after-free flaw was found in vhost_net_set_backend in drivers/vhost/net.c in virtio network subcomponent in the L… | |
| CVE-2023-2006 | linux | High | 7.0 | 2023-04-24 | A race condition was found in the Linux kernel's RxRPC network protocol, within the processing of RxRPC bundles. This i… | |
| CVE-2023-1872 | linux | High | 7.0 | 2023-04-12 | A use-after-free vulnerability in the Linux Kernel io_uring system can be exploited to achieve local privilege escalati… | |
| CVE-2023-1989 | linux | High | 7.0 | 2023-04-11 | A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a cal… | |
| CVE-2023-2194 | linux | Medium | 6.7 | 2023-04-20 | An out-of-bounds write vulnerability was found in the Linux kernel's SLIMpro I2C device driver. The userspace "data->bl… | |
| CVE-2023-30456 | linux | Medium | 6.5 | 2023-04-10 | An issue was discovered in arch/x86/kvm/vmx/nested.c in the Linux kernel before 6.2.8. nVMX on x86_64 lacks consistency… | |
| CVE-2023-30772 | linux | Medium | 6.4 | 2023-04-16 | The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/power/supply/da9150-charger.… | |
| CVE-2023-1855 | linux | Medium | 6.3 | 2023-04-05 | A use-after-free flaw was found in xgene_hwmon_remove in drivers/hwmon/xgene-hwmon.c in the Hardware Monitoring Linux K… | |
| CVE-2023-1611 | linux | Medium | 6.3 | 2023-04-03 | A use-after-free flaw was found in btrfs_search_slot in fs/btrfs/ctree.c in btrfs in the Linux Kernel.This flaw allows … | |
| CVE-2023-1998 | linux | Medium | 5.6 | 2023-04-21 | The Linux kernel allows userspace processes to enable mitigations by calling prctl with PR_SET_SPECULATION_CTRL which d… | |
| CVE-2023-31081 | linux | Medium | 5.5 | 2023-04-24 | An issue was discovered in drivers/media/test-drivers/vidtv/vidtv_bridge.c in the Linux kernel 6.2. There is a NULL poi… |