Vulnerabilidades em Linux

13.516 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-23041bnxt_en: Fix NULL pointer crash in bnxt_ptp_enable during error cleanupEPSS 0.1%CVE-2026-23040wifi: mac80211_hwsim: fix typo in frequency notificationEPSS 0.1%CVE-2026-23411HIGHapparmor: fix race between freeing data and fs accessing itEPSS 0.1%CVE-2025-38705drm/amd/pm: fix null pointer accessEPSS 0.1%CVE-2022-50294wifi: libertas: fix memory leak in lbs_init_adapter()EPSS 0.1%CVE-2025-21807block: fix queue freeze vs limits lock order in sysfs store methodsEPSS 0.1%CVE-2023-53169x86/resctrl: Clear staged_config[] before and after it is usedEPSS 0.1%CVE-2023-53221MEDIUMbpf: Fix memleak due to fentry attach failureEPSS 0.1%CVE-2022-50340MEDIUMmedia: vimc: Fix wrong function called when vimc_init() failsEPSS 0.1%CVE-2023-53588wifi: mac80211: check for station first in client probeEPSS 0.1%CVE-2022-50319coresight: trbe: remove cpuhp instance node before remove cpuhp stateEPSS 0.1%CVE-2025-38544rxrpc: Fix bug due to prealloc collisionEPSS 0.1%CVE-2025-38665can: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_modeEPSS 0.1%CVE-2025-38304Bluetooth: Fix NULL pointer deference on eir_get_service_dataEPSS 0.1%CVE-2023-53654octeontx2-af: Add validation before accessing cgx and lmacEPSS 0.1%CVE-2026-23043btrfs: fix NULL pointer dereference in do_abort_log_replay()EPSS 0.1%CVE-2025-38532net: libwx: properly reset Rx ring descriptorEPSS 0.1%CVE-2023-53230MEDIUMsmb: client: fix warning in cifs_smb3_do_mount()EPSS 0.1%CVE-2025-38737cifs: Fix oops due to uninitialised variableEPSS 0.1%CVE-2025-38300crypto: sun8i-ce-cipher - fix error handling in sun8i_ce_cipher_prepare()EPSS 0.1%