Vulnerabilities in Linux

13,486 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2022-50273f2fs: fix to do sanity check on destination blkaddr during recoveryEPSS 0.1%CVE-2023-53315MEDIUMwifi: ath11k: Fix SKB corruption in REO destination ringEPSS 0.1%CVE-2023-53210MEDIUMmd/raid5-cache: fix null-ptr-deref for r5l_flush_stripe_to_raid()EPSS 0.1%CVE-2023-53462hsr: Fix uninit-value access in fill_frame_info()EPSS 0.1%CVE-2023-53584ubifs: ubifs_releasepage: Remove ubifs_assert(0) to valid this processEPSS 0.1%CVE-2026-46022misc: ibmasm: fix OOB MMIO read in ibmasm_handle_mouse_interrupt()EPSS 0.1%CVE-2026-63820f2fs: fix missing read bio submission on large folio errorEPSS 0.1%CVE-2023-53583perf: RISC-V: Remove PERF_HES_STOPPED flag checking in riscv_pmu_start()EPSS 0.1%CVE-2025-38319drm/amd/pp: Fix potential NULL pointer dereference in atomctrl_initialize_mc_reg_tableEPSS 0.1%CVE-2023-53604dm integrity: call kmem_cache_destroy() in dm_integrity_init() error pathEPSS 0.1%CVE-2026-53378drm/colorop: Fix blob property reference tracking in state lifecycleEPSS 0.1%CVE-2022-50276power: supply: fix null pointer dereferencing in power_supply_get_battery_infoEPSS 0.1%CVE-2023-53660bpf, cpumap: Handle skb as well when clean up ptr_ringEPSS 0.1%CVE-2025-38503btrfs: fix assertion when building free space treeEPSS 0.1%CVE-2026-23042idpf: fix aux device unplugging when rdma is not supported by vportEPSS 0.1%CVE-2022-50533wifi: mac80211: mlme: fix null-ptr deref on failed assocEPSS 0.1%CVE-2025-38686userfaultfd: fix a crash in UFFDIO_MOVE when PMD is a migration entryEPSS 0.1%CVE-2023-53173tty: pcn_uart: fix memory leak with using debugfs_lookup()EPSS 0.1%CVE-2022-50281MIPS: SGI-IP27: Fix platform-device leak in bridge_platform_create()EPSS 0.1%CVE-2022-50269drm/vkms: Fix memory leak in vkms_init()EPSS 0.1%