Vulnerabilidades em Linux

13.516 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2025-39861HIGHBluetooth: vhci: Prevent use-after-free by removing debugfs files earlyEPSS 0.1%CVE-2023-53348MEDIUMbtrfs: fix deadlock when aborting transaction during relocation with scrubEPSS 0.1%CVE-2025-38221ext4: fix out of bounds punch offsetEPSS 0.1%CVE-2026-31772HIGHBluetooth: hci_sync: fix stack buffer overflow in hci_le_big_create_syncEPSS 0.1%CVE-2026-46145HIGHRDMA/mana: Validate rx_hash_key_lenEPSS 0.1%CVE-2026-52912HIGHnetfilter: nf_queue: hold bridge skb->dev while queuedEPSS 0.1%CVE-2026-45993LoongArch: Add spectre boundry for syscall dispatch tableEPSS 0.1%CVE-2024-36976Revert "media: v4l2-ctrls: show all owned controls in log_status"EPSS 0.1%CVE-2023-53262HIGHf2fs: fix scheduling while atomic in decompression pathEPSS 0.1%CVE-2026-46176HIGHRDMA/mlx5: Fix error path fall-through in mlx5_ib_dev_res_srq_init()EPSS 0.1%CVE-2023-53286HIGHRDMA/mlx5: Return the firmware result upon destroying QP/RQEPSS 0.1%CVE-2026-23474mtd: Avoid boot crash in RedBoot partition table parserEPSS 0.1%CVE-2026-64367HIGHHID: hid-goodix-spi: validate report size to prevent stack buffer overflowEPSS 0.1%CVE-2026-23178HIGHHID: i2c-hid: fix potential buffer overflow in i2c_hid_get_report()EPSS 0.1%CVE-2026-46150HIGHfanotify: fix false positive on permission eventsEPSS 0.1%CVE-2023-53578net: qrtr: Fix an uninit variable access bug in qrtr_tx_resume()EPSS 0.1%CVE-2026-64018CRITICALnet: mana: validate rx_req_idx to prevent out-of-bounds array accessEPSS 0.1%CVE-2023-53577bpf, cpumap: Make sure kthread is running before map update returnsEPSS 0.1%CVE-2026-46123HIGHBluetooth: virtio_bt: clamp rx length before skb_putEPSS 0.1%CVE-2025-38722HIGHhabanalabs: fix UAF in export_dmabuf()EPSS 0.1%