VendorsLinuxlinux_kernel4.18
Vulnerabilities

Linux Kernel 4.18

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2025-38728
smb3: fix for slab out of bounds on mount to ksmbd
Published 2025-09-04 · Modified
9.1EPSS 0.003
CVE-2022-49968
ieee802154/adf7242: defer destroy_workqueue call
Published 2025-06-18 · Modified
8.0EPSS 0.003
CVE-2018-5390
Linux kernel versions 4.9+ can be forced to make very expensive calls to tcp_collapse_ofo_queue() and tcp_prune_ofo_queue() for every incoming packet which can lead to a denial of service
Published 2018-08-06 · Modified
7.8EPSS 0.737
CVE-2023-52439
uio: Fix use-after-free in uio_open
Published 2024-02-20 · Modified
7.8EPSS 0.003
CVE-2026-31507
net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer
Published 2026-04-22 · Modified
7.8EPSS 0.002
CVE-2019-3882
A flaw was found in the Linux kernel's vfio interface implementation that permits violation of the user's locked memory limit. If a device is bound to a vfio driver, such as vfio-pci, and the local attacker is administratively granted ownership of the device, it may cause a system memory exhaustion and thus a denial of service (DoS). Versions 3.10, 4.14 and 4.18 are vulnerable.
Published 2019-04-24 · Modified
5.5EPSS 0.005