Vulnerabilities in Linux

16,673 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2024-42256HIGHcifs: Fix server re-repick on subrequest retryEPSS 0.7%CVE-2026-89679HIGHnfsd: fix null dereference in nfsd4_setattr for deleg timestamp attrsEPSS 0.7%CVE-2024-26881HIGHnet: hns3: fix kernel crash when 1588 is received on HIP08 devicesEPSS 0.7%CVE-2022-49280CRITICALNFSD: prevent underflow in nfssvc_decode_writeargs()EPSS 0.7%CVE-2026-90293HIGHIB/isert: post the full-feature receive buffers after session registrationEPSS 0.7%CVE-2026-90294HIGHIB/isert: delay the final Login Response until the session is registeredEPSS 0.7%CVE-2026-68157HIGHlibceph: guard missing CRUSH type name lookupEPSS 0.7%CVE-2024-35880HIGHio_uring/kbuf: hold io_buffer_list reference over mmapEPSS 0.7%CVE-2026-89697CRITICALnfsd: add fh_want_write() for early-verified SETATTR in nfsd_proc_setattr()EPSS 0.7%CVE-2026-90103HIGHNFSv4.2: fix LAYOUTSTATS send buffer exhaustionEPSS 0.7%CVE-2026-72409HIGHnet: mvneta: re-enable percpu interrupt on resumeEPSS 0.7%CVE-2024-35884CRITICALudp: do not accept non-tunnel GSO skbs landing in a tunnelEPSS 0.7%CVE-2026-89476HIGHsctp: fix stream->outcnt underflow on duplicate RECONF responsesEPSS 0.7%CVE-2024-47695CRITICALRDMA/rtrs-clt: Reset cid to con_num - 1 to stay in boundsEPSS 0.7%CVE-2021-47267MEDIUMusb: fix various gadget panics on 10gbps cablingEPSS 0.7%CVE-2026-89555CRITICALmpls: reload header after pskb_may_pull()EPSS 0.7%CVE-2026-72014CRITICALdrbd: reject data replies with an out-of-range payload sizeEPSS 0.7%CVE-2026-68156CRITICALlibceph: refresh auth->authorizer_buf{,_len} after authorizer updateEPSS 0.7%CVE-2021-47307HIGHcifs: prevent NULL deref in cifs_compose_mount_options()EPSS 0.7%CVE-2021-47109HIGHneighbour: allow NUD_NOARP entries to be forced GCedEPSS 0.7%