Vulnerabilidades em Linux

13.517 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2023-53414MEDIUMscsi: snic: Fix memory leak with using debugfs_lookup()EPSS 0.1%CVE-2023-53403MEDIUMtime/debug: Fix memory leak with using debugfs_lookup()EPSS 0.1%CVE-2026-64219HIGHdrm/amd/display: Validate payload length and link_index in dc_process_dmub_aux_transfer_asyncEPSS 0.1%CVE-2026-31452ext4: convert inline data to extents when truncate exceeds inline sizeEPSS 0.1%CVE-2023-53517tipc: do not update mtu if msg_max is too small in mtu negotiationEPSS 0.1%CVE-2026-64172HIGHKVM: SVM: Disable AVIC IPI virtualization on Hygon Family 18h (erratum #1235)EPSS 0.1%CVE-2026-23009xhci: sideband: don't dereference freed ring when removing sideband endpointEPSS 0.1%CVE-2026-46034vfio/cdx: Fix NULL pointer dereference in interrupt trigger pathEPSS 0.1%CVE-2023-53563cpufreq: amd-pstate-ut: Fix kernel panic when loading the driverEPSS 0.1%CVE-2025-39829MEDIUMtrace/fgraph: Fix the warning caused by missing unregister notifierEPSS 0.1%CVE-2023-53683fs: hfsplus: remove WARN_ON() from hfsplus_cat_{read,write}_inode()EPSS 0.1%CVE-2026-43236HIGHdrm/atmel-hlcdc: fix use-after-free of drm_crtc_commit after releaseEPSS 0.1%CVE-2026-43030HIGHbpf: Fix regsafe() for pointers to packetEPSS 0.1%CVE-2026-31469HIGHvirtio_net: Fix UAF on dst_ops when IFF_XMIT_DST_RELEASE is cleared and napi_tx is falseEPSS 0.1%CVE-2024-57921drm/amdgpu: Add a lock when accessing the buddy trim functionEPSS 0.1%CVE-2023-53681bcache: Fix __bch_btree_node_alloc to make the failure behavior consistentEPSS 0.1%CVE-2026-46089zram: do not forget to endio for partial discard requestsEPSS 0.1%CVE-2026-53033HIGHbpf, sockmap: Take state lock for af_unix iterEPSS 0.1%CVE-2023-53532wifi: ath11k: fix deinitialization of firmware resourcesEPSS 0.1%CVE-2023-53391MEDIUMshmem: use ramfs_kill_sb() for kill_sb method of ramfs-based tmpfsEPSS 0.1%