Vulnerabilidades em Linux

13.517 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2025-38144watchdog: lenovo_se30_wdt: Fix possible devm_ioremap() NULL pointer dereference in lenovo_se30_wdt_probe()EPSS 0.1%CVE-2025-38225media: imx-jpeg: Cleanup after an allocation errorEPSS 0.1%CVE-2025-39907mtd: rawnand: stm32_fmc2: avoid overlapping mappings on ECC bufferEPSS 0.1%CVE-2025-38025iio: adc: ad7606: check for NULL before calling sw_mode_config()EPSS 0.1%CVE-2025-39923dmaengine: qcom: bam_dma: Fix DT error handling for num-channels/eesEPSS 0.1%CVE-2025-38340firmware: cs_dsp: Fix OOB memory read access in KUnit testEPSS 0.1%CVE-2023-53600tunnels: fix kasan splat when generating ipv4 pmtu errorEPSS 0.1%CVE-2022-50117vfio: Split migration ops from main device opsEPSS 0.1%CVE-2026-53036HIGHbpf, arm64: Fix off-by-one in check_imm signed range checkEPSS 0.1%CVE-2026-43196soc: ti: pruss: Fix double free in pruss_clk_mux_setup()EPSS 0.1%CVE-2023-53259VMCI: check context->notify_page after call to get_user_pages_fast() to avoid GPFEPSS 0.1%CVE-2026-52962ceph: fix a buffer leak in __ceph_setxattr()EPSS 0.1%CVE-2025-21986net: switchdev: Convert blocking notification chain to a raw oneEPSS 0.1%CVE-2026-52968HIGHKVM: s390: pci: fix GAIT table indexing due to double-scaling pointer arithmeticEPSS 0.1%CVE-2025-22060net: mvpp2: Prevent parser TCAM memory corruptionEPSS 0.1%CVE-2026-64449HIGHstaging: vme_user: bound slave read/write to the kern_buf sizeEPSS 0.1%CVE-2025-39886MEDIUMbpf: Tell memcg to use allow_spinning=false path in bpf_timer_init()EPSS 0.1%CVE-2026-46036HIGHvfio/cdx: Serialize VFIO_DEVICE_SET_IRQS with a per-device mutexEPSS 0.1%CVE-2023-53521scsi: ses: Fix slab-out-of-bounds in ses_intf_remove()EPSS 0.1%CVE-2026-46149HIGHscsi: target: configfs: Bound snprintf() return in tg_pt_gp_members_show()EPSS 0.1%