Linux Kernel CVE Statistics
280 Linux Kernel CVEs in April 2025
Full month · Source: NIST NVD
In April 2025, 280 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 65 were rated High severity and 214 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. April's 280 CVEs represent 5% of all 2025 Linux kernel CVEs , up from March's 208 (a 35% month-over-month increase) .
280
Total CVEs
0
Critical
65
High
214
Medium
1
Low
0
KEV Exploited
All CVEs — April 2025
280 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2025-22041 | linux | High | 8.8 | 2025-04-16 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_sessions_deregis… | |
| CVE-2025-22040 | linux | High | 8.8 | 2025-04-16 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix session use-after-free in multichannel c… | |
| CVE-2025-40014 | linux | High | 7.8 | 2025-04-18 | In the Linux kernel, the following vulnerability has been resolved: objtool, spi: amd: Fix out-of-bounds stack access i… | |
| CVE-2025-37838 | linux | High | 7.8 | 2025-04-18 | In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_protocol: Fix use after free vulnerability… | |
| CVE-2025-40364 | linux | High | 7.8 | 2025-04-18 | In the Linux kernel, the following vulnerability has been resolved: io_uring: fix io_req_prep_async with provided buffe… | |
| CVE-2025-38479 | linux | High | 7.8 | 2025-04-18 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-edma: free irq correctly in remove p… | |
| CVE-2025-40114 | linux | High | 7.8 | 2025-04-18 | In the Linux kernel, the following vulnerability has been resolved: iio: light: Add check for array bounds in veml6075_… | |
| CVE-2021-47669 | linux | High | 7.8 | 2025-04-17 | In the Linux kernel, the following vulnerability has been resolved: can: vxcan: vxcan_xmit: fix use after free bug Afte… | |
| CVE-2021-47668 | linux | High | 7.8 | 2025-04-17 | In the Linux kernel, the following vulnerability has been resolved: can: dev: can_restart: fix use after free bug After… | |
| CVE-2021-47670 | linux | High | 7.8 | 2025-04-17 | In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: fix use after free bugs After callin… | |
| CVE-2025-22083 | linux | High | 7.8 | 2025-04-16 | In the Linux kernel, the following vulnerability has been resolved: vhost-scsi: Fix handling of multiple calls to vhost… | |
| CVE-2025-22022 | linux | High | 7.8 | 2025-04-16 | In the Linux kernel, the following vulnerability has been resolved: usb: xhci: Apply the link chain quirk on NEC isoc e… | |
| CVE-2025-22020 | linux | High | 7.8 | 2025-04-16 | In the Linux kernel, the following vulnerability has been resolved: memstick: rtsx_usb_ms: Fix slab-use-after-free in r… | |
| CVE-2025-22069 | linux | High | 7.8 | 2025-04-16 | In the Linux kernel, the following vulnerability has been resolved: riscv: fgraph: Fix stack layout to match __arch_ftr… | |
| CVE-2025-22056 | linux | High | 7.8 | 2025-04-16 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_tunnel: fix geneve_opt type confusio… |