Vulnerabilidades em Linux

13.511 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2022-50430mmc: vub300: fix warning - do not call blocking ops when !TASK_RUNNINGEPSS 0.1%CVE-2022-50346MEDIUMext4: init quota for 'old.inode' in 'ext4_rename'EPSS 0.1%CVE-2023-53307HIGHrbd: avoid use-after-free in do_rbd_add() when rbd_dev_create() failsEPSS 0.1%CVE-2025-38081spi-rockchip: Fix register out of bounds accessEPSS 0.1%CVE-2023-53311HIGHnilfs2: fix use-after-free of nilfs_root in dirtying inodes via iputEPSS 0.1%CVE-2022-50328jbd2: fix potential use-after-free in jbd2_fc_wait_bufsEPSS 0.1%CVE-2023-53536blk-crypto: make blk_crypto_evict_key() more robustEPSS 0.1%CVE-2023-53276MEDIUMubifs: Free memory for tmpfile nameEPSS 0.1%CVE-2022-50442fs/ntfs3: Validate buffer length while parsing indexEPSS 0.1%CVE-2022-50249memory: of: Fix refcount leak bug in of_get_ddr_timings()EPSS 0.1%CVE-2022-50312drivers: serial: jsm: fix some leaks in probeEPSS 0.1%CVE-2026-45935HIGHfs/ntfs3: Fix slab-out-of-bounds read in DeleteIndexEntryRootEPSS 0.1%CVE-2024-26806spi: cadence-qspi: remove system-wide suspend helper calls from runtime PM hooksEPSS 0.1%CVE-2023-53018MEDIUMBluetooth: hci_conn: Fix memory leaksEPSS 0.1%CVE-2022-50244cxl: fix possible null-ptr-deref in cxl_pci_init_afu|adapter()EPSS 0.1%CVE-2022-50296UM: cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACKEPSS 0.1%CVE-2022-50476ntb_netdev: Use dev_kfree_skb_any() in interrupt contextEPSS 0.1%CVE-2025-71180counter: interrupt-cnt: Drop IRQF_NO_THREAD flagEPSS 0.1%CVE-2026-45862HIGHiommu/vt-d: Flush cache for PASID table before using itEPSS 0.1%CVE-2026-45894HIGHiommu/vt-d: Clear Present bit before tearing down PASID entryEPSS 0.1%