Linux Kernel CVE Statistics
909 Linux Kernel CVEs in February 2025
Full month · Source: NIST NVD
In February 2025, 909 Linux kernel CVEs were published, sourced from the NIST National Vulnerability Database. Of these, 3 were rated Critical, 199 were rated High severity and 707 Medium. No CVEs from this month have been confirmed as actively exploited via the CISA KEV catalog. February's 909 CVEs represent 16% of all 2025 Linux kernel CVEs , up from January's 223 (a 308% month-over-month increase) .
909
Total CVEs
3
Critical
199
High
707
Medium
0
Low
0
KEV Exploited
All CVEs — February 2025
909 CVEs
| CVE ID | Package | Severity | CVSS | Published | Description | |
|---|---|---|---|---|---|---|
| CVE-2025-21796 | linux | Critical | 9.8 | 2025-02-27 | In the Linux kernel, the following vulnerability has been resolved: nfsd: clear acl_access/acl_default after releasing … | |
| CVE-2022-49362 | linux | Critical | 9.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix potential use-after-free in nfsd_file_put… | |
| CVE-2022-49093 | linux | Critical | 9.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: skbuff: fix coalescing for page_pool fragment recyc… | |
| CVE-2022-49470 | linux | High | 8.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtksdio: fix use-after-free at btmtksd… | |
| CVE-2022-49238 | linux | High | 8.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: ath11k: free peer for station when disconnect from … | |
| CVE-2022-49114 | linux | High | 8.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: scsi: libfc: Fix use after free in fc_exch_abts_res… | |
| CVE-2022-49479 | linux | High | 8.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: mt76: fix tx status related use-after-free race on … | |
| CVE-2022-49328 | linux | High | 8.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: mt76: fix use-after-free by removing a non-RCU wcid… | |
| CVE-2022-49535 | linux | High | 8.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix null pointer dereference after fail… | |
| CVE-2022-49111 | linux | High | 8.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use after free in hci_send_acl This … | |
| CVE-2022-49416 | linux | High | 8.8 | 2025-02-26 | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix use-after-free in chanctx code … | |
| CVE-2025-21762 | linux | High | 8.1 | 2025-02-27 | In the Linux kernel, the following vulnerability has been resolved: arp: use RCU protection in arp_xmit() arp_xmit() ca… | |
| CVE-2025-21760 | linux | High | 8.1 | 2025-02-27 | In the Linux kernel, the following vulnerability has been resolved: ndisc: extend RCU protection in ndisc_send_skb() nd… | |
| CVE-2024-49570 | linux | High | 7.8 | 2025-02-27 | In the Linux kernel, the following vulnerability has been resolved: drm/xe/tracing: Fix a potential TP_printk UAF The c… | |
| CVE-2024-58034 | linux | High | 7.8 | 2025-02-27 | In the Linux kernel, the following vulnerability has been resolved: memory: tegra20-emc: fix an OF node reference bug i… |