Vulnerabilities in Linux

16,907 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-74628CRITICALnet/x25: fix use-after-free of the socket by its timersEPSS 0.5%CVE-2026-74587CRITICALsctp: fix use-after-free of cached ASCONF chunkEPSS 0.5%CVE-2026-74705CRITICALudp: fix potential use-after-free in tunnel segmentationEPSS 0.5%CVE-2022-48673CRITICALnet/smc: Fix possible access to freed memory in link clearEPSS 0.5%CVE-2026-46110HIGHnet: stmmac: Prevent NULL deref when RX memory exhaustedEPSS 0.5%CVE-2023-54280CRITICALcifs: fix potential race when tree connecting ipcEPSS 0.5%CVE-2026-31476HIGHksmbd: do not expire session on binding failureEPSS 0.5%CVE-2025-68770HIGHbnxt_en: Fix XDP_TX pathEPSS 0.5%CVE-2025-21788HIGHnet: ethernet: ti: am65-cpsw: fix memleak in certain XDP casesEPSS 0.5%CVE-2022-49201CRITICALibmvnic: fix race between xmit and resetEPSS 0.5%CVE-2022-49872HIGHnet: gso: fix panic on frag_list with mixed head alloc typesEPSS 0.5%CVE-2024-56719CRITICALnet: stmmac: fix TSO DMA API usage causing oopsEPSS 0.5%CVE-2021-47519HIGHcan: m_can: m_can_read_fifo: fix memory leak in error branchEPSS 0.5%CVE-2024-56703HIGHipv6: Fix soft lockups in fib6_select_path under high next hop churnEPSS 0.5%CVE-2024-50106CRITICALnfsd: fix race between laundromat and free_stateidEPSS 0.5%CVE-2024-21803LOWPossible UAF in bt_accept_poll in Linux kernelEPSS 0.5%CVE-2026-80617CRITICALnet: airoha: fix foe_check_time allocation sizeEPSS 0.5%CVE-2024-36958CRITICALNFSD: Fix nfsd4_encode_fattr4() crasherEPSS 0.5%CVE-2024-26886MEDIUMBluetooth: af_bluetooth: Fix deadlockEPSS 0.5%CVE-2023-4130HIGHksmbd: fix wrong next length validation of ea buffer in smb2_set_ea()EPSS 0.5%