Vulnerabilidades em Linux

13.516 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-53378drm/colorop: Fix blob property reference tracking in state lifecycleEPSS 0.1%CVE-2022-50342MEDIUMfloppy: Fix memory leak in do_floppy_init()EPSS 0.1%CVE-2022-50269drm/vkms: Fix memory leak in vkms_init()EPSS 0.1%CVE-2025-38319drm/amd/pp: Fix potential NULL pointer dereference in atomctrl_initialize_mc_reg_tableEPSS 0.1%CVE-2023-53642x86: fix clear_user_rep_good() exception handling annotationEPSS 0.1%CVE-2025-38453io_uring/msg_ring: ensure io_kiocb freeing is deferred for RCUEPSS 0.1%CVE-2025-38402idpf: return 0 size for RSS key if not supportedEPSS 0.1%CVE-2023-53535net: bcmgenet: Add a check for oversized packetsEPSS 0.1%CVE-2025-38381Input: cs40l50-vibra - fix potential NULL dereference in cs40l50_upload_owt()EPSS 0.1%CVE-2023-53193drm/amdgpu: fix amdgpu_irq_put call trace in gmc_v10_0_hw_finiEPSS 0.1%CVE-2022-50387MEDIUMnet: hinic: fix the issue of CMDQ memory leaksEPSS 0.1%CVE-2022-50475RDMA/core: Make sure "ib_port" is valid when access sysfs nodeEPSS 0.1%CVE-2023-53279MEDIUMmisc: vmw_balloon: fix memory leak with using debugfs_lookup()EPSS 0.1%CVE-2025-38331net: ethernet: cortina: Use TOE/TSO on all TCPEPSS 0.1%CVE-2022-50302lockd: set other missing fields when unlocking filesEPSS 0.1%CVE-2025-38159wifi: rtw88: fix the 'para' buffer size to avoid reading out of boundsEPSS 0.1%CVE-2023-53607ALSA: ymfpci: Fix BUG_ON in probe functionEPSS 0.1%CVE-2023-53679wifi: mt7601u: fix an integer underflowEPSS 0.1%CVE-2023-53680NFSD: Avoid calling OPDESC() with ops->opnum == OP_ILLEGALEPSS 0.1%CVE-2025-38259ASoC: codecs: wcd9335: Fix missing free of regulator suppliesEPSS 0.1%