VendorsLinuxlinux_kernel4.13
Vulnerabilities

Linux Kernel 4.13

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2026-53088
net: bcmgenet: fix off-by-one in bcmgenet_put_txcb
Published 2026-06-24 · Analyzed
9.8EPSS 0.008
CVE-2017-13686
net/ipv4/route.c in the Linux kernel 4.13-rc1 through 4.13-rc6 is too late to check for a NULL fi field when RTM_F_FIB_MATCH is set, which allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via crafted system calls. NOTE: this does not affect any stable release.
Published 2017-08-24 · Modified
7.8EPSS 0.004
CVE-2026-23411
apparmor: fix race between freeing data and fs accessing it
Published 2026-04-01 · Analyzed
7.8EPSS 0.001
CVE-2026-23410
apparmor: fix race on rawdata dereference
Published 2026-04-01 · Analyzed
7.8EPSS 0.001
CVE-2026-52957
libceph: Fix potential null-ptr-deref in decode_choose_args()
Published 2026-06-24 · Analyzed
7.5EPSS 0.007
CVE-2018-10938
A flaw was found in the Linux kernel present since v4.0-rc1 and through v4.13-rc4. A crafted network packet sent remotely by an attacker may force the kernel to enter an infinite loop in the cipso_v4_optptr() function in net/ipv4/cipso_ipv4.c leading to a denial-of-service. A certain non-default configuration of LSM (Linux Security Module) and NetLabel should be set up on a system before an attacker could leverage this flaw.
Published 2018-08-27 · Modified
7.1EPSS 0.050
CVE-2025-71190
dmaengine: bcm-sba-raid: fix device leak on probe
Published 2026-01-31 · Modified
5.5EPSS 0.002
CVE-2026-31642
rxrpc: Fix call removal to use RCU safe deletion
Published 2026-04-24 · Modified
5.5EPSS 0.002
CVE-2025-71108
usb: typec: ucsi: Handle incorrect num_connectors capability
Published 2026-01-14 · Analyzed
5.5EPSS 0.001