VendorsLinuxlinux_kernel4.8
Vulnerabilities

Linux Kernel 4.8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2017-7184
The xfrm_replay_verify_len function in net/xfrm/xfrm_user.c in the Linux kernel through 4.10.6 does not validate certain size data after an XFRM_MSG_NEWAE update, which allows local users to obtain root privileges or cause a denial of service (heap-based out-of-bounds access) by leveraging the CAP_NET_ADMIN capability, as demonstrated during a Pwn2Own competition at CanSecWest 2017 for the Ubuntu 16.10 linux-image-* package 4.8.0.41.52.
Published 2017-03-19 · Modified
7.8EPSS 0.018
CVE-2023-3106
Kernel: netlink socket crash (null pointer deref) in netlink_dump function
Published 2023-07-12 · Modified
7.8EPSS 0.003
CVE-2023-53539
RDMA/rxe: Fix incomplete state save in rxe_requester
Published 2025-10-04 · Modified
7.8EPSS 0.002
CVE-2025-71085
ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr()
Published 2026-01-13 · Modified
7.5EPSS 0.003
CVE-2018-10938
A flaw was found in the Linux kernel present since v4.0-rc1 and through v4.13-rc4. A crafted network packet sent remotely by an attacker may force the kernel to enter an infinite loop in the cipso_v4_optptr() function in net/ipv4/cipso_ipv4.c leading to a denial-of-service. A certain non-default configuration of LSM (Linux Security Module) and NetLabel should be set up on a system before an attacker could leverage this flaw.
Published 2018-08-27 · Modified
7.1EPSS 0.050
CVE-2017-7273
The cp_report_fixup function in drivers/hid/hid-cypress.c in the Linux kernel 3.2 and 4.x before 4.9.4 allows physically proximate attackers to cause a denial of service (integer underflow) or possibly have unspecified other impact via a crafted HID report.
Published 2017-03-27 · Modified
6.6EPSS 0.005