Vulnerabilities in Linux

13,486 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2022-50387MEDIUMnet: hinic: fix the issue of CMDQ memory leaksEPSS 0.1%CVE-2025-39811MEDIUMdrm/xe/vm: Clear the scratch_pt pointer on errorEPSS 0.1%CVE-2023-53654octeontx2-af: Add validation before accessing cgx and lmacEPSS 0.1%CVE-2023-53583perf: RISC-V: Remove PERF_HES_STOPPED flag checking in riscv_pmu_start()EPSS 0.1%CVE-2022-50247usb: xhci-mtk: fix leakage of shared hcd when fail to set wakeup irqEPSS 0.1%CVE-2026-64171i2c: tegra: fix pm_runtime leak on mutex_lock failureEPSS 0.1%CVE-2022-50340MEDIUMmedia: vimc: Fix wrong function called when vimc_init() failsEPSS 0.1%CVE-2023-53163fs/ntfs3: don't hold ni_lock when calling truncate_setsize()EPSS 0.1%CVE-2025-39739iommu/arm-smmu-qcom: Add SM6115 MDSS compatibleEPSS 0.1%CVE-2025-38686userfaultfd: fix a crash in UFFDIO_MOVE when PMD is a migration entryEPSS 0.1%CVE-2022-50304mtd: core: fix possible resource leak in init_mtd()EPSS 0.1%CVE-2026-23044PM: hibernate: Fix crash when freeing invalid crypto compressorEPSS 0.1%CVE-2025-38159wifi: rtw88: fix the 'para' buffer size to avoid reading out of boundsEPSS 0.1%CVE-2023-53419MEDIUMrcu: Protect rcu_print_task_exp_stall() ->exp_tasks accessEPSS 0.1%CVE-2023-53551usb: gadget: u_serial: Add null pointer check in gserial_resumeEPSS 0.1%CVE-2023-53169x86/resctrl: Clear staged_config[] before and after it is usedEPSS 0.1%CVE-2025-38503btrfs: fix assertion when building free space treeEPSS 0.1%CVE-2022-50298slimbus: qcom-ngd: cleanup in probe error pathEPSS 0.1%CVE-2022-50388MEDIUMnvme: fix multipath crash caused by flush request when blktrace is enabledEPSS 0.1%CVE-2025-38692exfat: add cluster chain loop check for dirEPSS 0.1%