VendorsLinuxlinux_kernel4.10
Vulnerabilities

Linux Kernel 4.10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2026-31668
seg6: separate dst_cache for input and output paths in seg6 lwtunnel
Published 2026-04-24 · Analyzed
9.8EPSS 0.008
CVE-2017-8061
drivers/media/usb/dvb-usb/dvb-usb-firmware.c in the Linux kernel 4.9.x and 4.10.x before 4.10.7 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash or memory corruption) or possibly have unspecified other impact by leveraging use of more than one virtual page for a DMA scatterlist.
Published 2017-04-23 · Modified
7.8EPSS 0.004
CVE-2017-8066
drivers/net/can/usb/gs_usb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.2 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash or memory corruption) or possibly have unspecified other impact by leveraging use of more than one virtual page for a DMA scatterlist.
Published 2017-04-23 · Modified
7.8EPSS 0.004
CVE-2017-8065
crypto/ccm.c in the Linux kernel 4.9.x and 4.10.x through 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash or memory corruption) or possibly have unspecified other impact by leveraging use of more than one virtual page for a DMA scatterlist.
Published 2017-04-23 · Modified
7.8EPSS 0.004
CVE-2026-31485
spi: spi-fsl-lpspi: fix teardown order issue (UAF)
Published 2026-04-22 · Modified
7.8EPSS 0.002
CVE-2026-23272
netfilter: nf_tables: unconditionally bump set->nelems before insertion
Published 2026-03-20 · Modified
7.8EPSS 0.001
CVE-2026-46304
nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free
Published 2026-06-08 · Analyzed
7.5EPSS 0.007
CVE-2018-10938
A flaw was found in the Linux kernel present since v4.0-rc1 and through v4.13-rc4. A crafted network packet sent remotely by an attacker may force the kernel to enter an infinite loop in the cipso_v4_optptr() function in net/ipv4/cipso_ipv4.c leading to a denial-of-service. A certain non-default configuration of LSM (Linux Security Module) and NetLabel should be set up on a system before an attacker could leverage this flaw.
Published 2018-08-27 · Modified
7.1EPSS 0.050
CVE-2017-7273
The cp_report_fixup function in drivers/hid/hid-cypress.c in the Linux kernel 3.2 and 4.x before 4.9.4 allows physically proximate attackers to cause a denial of service (integer underflow) or possibly have unspecified other impact via a crafted HID report.
Published 2017-03-27 · Modified
6.6EPSS 0.005
CVE-2019-3016
In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may be able to read memory locations from another process in the same guest. This problem is limit to the host running linux kernel 4.10 with a guest running linux kernel 4.16 or later. The problem mainly affects AMD processors but Intel CPUs cannot be ruled out.
Published 2020-01-31 · Modified
6.2EPSS 0.006
CVE-2024-41035
USB: core: Fix duplicate endpoint bug by clearing reserved bits in the descriptor
Published 2024-07-29 · Modified
5.5EPSS 0.003
CVE-2026-23442
ipv6: add NULL checks for idev in SRv6 paths
Published 2026-04-03 · Modified
5.5EPSS 0.001