Vulnerabilities in Linux

13,484 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2022-50314nbd: Fix hung when signal interrupts nbd_start_device_ioctl()EPSS 0.1%CVE-2025-38262tty: serial: uartlite: register uart driver in initEPSS 0.1%CVE-2023-53546net/mlx5: DR, fix memory leak in mlx5dr_cmd_create_reformat_ctxEPSS 0.1%CVE-2023-53589wifi: iwlwifi: mvm: don't trust firmware n_channelsEPSS 0.1%CVE-2025-38087net/sched: fix use-after-free in taprio_dev_notifierEPSS 0.1%CVE-2025-39797xfrm: Duplicate SPI HandlingEPSS 0.1%CVE-2023-53263HIGHdrm/nouveau/disp: fix use-after-free in error handling of nouveau_connector_createEPSS 0.1%CVE-2023-53586scsi: target: Fix multiple LUN_RESET handlingEPSS 0.1%CVE-2021-47271MEDIUMusb: cdnsp: Fix deadlock issue in cdnsp_thread_irq_handlerEPSS 0.1%CVE-2025-39911i40e: fix IRQ freeing in i40e_vsi_request_irq_msix error pathEPSS 0.1%CVE-2026-52973HIGHfutex: Drop CLONE_THREAD requirement for private default hash allocEPSS 0.1%CVE-2022-50246usb: typec: tcpci: fix of node refcount leak in tcpci_register_port()EPSS 0.1%CVE-2023-53234MEDIUMwatchdog: Fix kmemleak in watchdog_cdev_registerEPSS 0.1%CVE-2025-38537net: phy: Don't register LEDs for genphyEPSS 0.1%CVE-2025-39805net: macb: fix unregister_netdev call order in macb_remove()EPSS 0.1%CVE-2022-50330crypto: cavium - prevent integer overflow loading firmwareEPSS 0.1%CVE-2025-38091drm/amd/display: check stream id dml21 wrapper to get plane_idEPSS 0.1%CVE-2023-53275MEDIUMALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync()EPSS 0.1%CVE-2023-53241MEDIUMnfsd: call op_release, even when op_func returns an errorEPSS 0.1%CVE-2023-53228MEDIUMdrm/amdgpu: drop redundant sched job cleanup when cs is abortedEPSS 0.1%