Vulnerabilities in Linux

17,487 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2022-48724—iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping()EPSS 0.2%CVE-2021-47261HIGHIB/mlx5: Fix initializing CQ fragments bufferEPSS 0.2%CVE-2024-26838HIGHRDMA/irdma: Fix KASAN issue with taskletEPSS 0.2%CVE-2024-26588HIGHLoongArch: BPF: Prevent out-of-bounds memory accessEPSS 0.2%CVE-2026-63832HIGHwifi: mt76: add wcid publish check in mt76_sta_addEPSS 0.2%CVE-2021-47065—rtw88: Fix array overrun in rtw_get_tx_power_params()EPSS 0.2%CVE-2025-39755MEDIUMstaging: gpib: Fix cb7210 pcmcia OopsEPSS 0.2%CVE-2024-36898HIGHgpiolib: cdev: fix uninitialised kfifoEPSS 0.2%CVE-2023-52788—i915/perf: Fix NULL deref bugs with drm_dbg() callsEPSS 0.2%CVE-2023-52662HIGHdrm/vmwgfx: fix a memleak in vmw_gmrid_man_get_nodeEPSS 0.2%CVE-2024-50103—ASoC: qcom: Fix NULL Dereference in asoc_qcom_lpass_cpu_platform_probe()EPSS 0.2%CVE-2024-26789HIGHcrypto: arm64/neonbs - fix out-of-bounds access on short inputEPSS 0.2%CVE-2022-50815—ext2: Add sanity checks for group and filesystem sizeEPSS 0.2%CVE-2021-47148HIGHocteontx2-pf: fix a buffer overflow in otx2_set_rxfh_context()EPSS 0.2%CVE-2022-48660MEDIUMgpiolib: cdev: Set lineevent_state::irq after IRQ register successfullyEPSS 0.2%CVE-2024-45025—fix bitmap corruption on close_range() with CLOSE_RANGE_UNSHAREEPSS 0.2%CVE-2024-41089—drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_hd_modesEPSS 0.2%CVE-2024-41095—drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_ld_modesEPSS 0.2%CVE-2021-47223—net: bridge: fix vlan tunnel dst null pointer dereferenceEPSS 0.2%CVE-2024-38554—ax25: Fix reference count leak issue of net_deviceEPSS 0.2%