Vulnerabilities in Linux

13,511 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2023-53424MEDIUMclk: mediatek: fix of_iomap memory leakEPSS 0.1%CVE-2026-46253HIGHpstore/ram: fix buffer overflow in persistent_ram_save_old()EPSS 0.1%CVE-2026-23172HIGHnet: wwan: t7xx: fix potential skb->frags overflow in RX pathEPSS 0.1%CVE-2023-53433MEDIUMnet: add vlan_get_protocol_and_depth() helperEPSS 0.1%CVE-2023-53622gfs2: Fix possible data races in gfs2_show_options()EPSS 0.1%CVE-2022-50373MEDIUMfs: dlm: fix race in lowcommsEPSS 0.1%CVE-2026-43030HIGHbpf: Fix regsafe() for pointers to packetEPSS 0.1%CVE-2023-53287MEDIUMusb: cdns3: Put the cdns set active part outside the spin lockEPSS 0.1%CVE-2025-39940dm-stripe: fix a possible integer overflowEPSS 0.1%CVE-2023-53328MEDIUMfs/ntfs3: Enhance sanity check while generating attr_listEPSS 0.1%CVE-2023-53415MEDIUMUSB: dwc3: fix memory leak with using debugfs_lookup()EPSS 0.1%CVE-2023-53250MEDIUMfirmware: dmi-sysfs: Fix null-ptr-deref in dmi_sysfs_register_handleEPSS 0.1%CVE-2024-56552drm/xe/guc_submit: fix race around suspend_pendingEPSS 0.1%CVE-2025-38716hfs: fix general protection fault in hfs_find_init()EPSS 0.1%CVE-2023-53251MEDIUMwifi: iwlwifi: pcie: fix NULL pointer dereference in iwl_pcie_irq_rx_msix_handler()EPSS 0.1%CVE-2023-53606nfsd: clean up potential nfsd_file refcount leaks in COPY codepathEPSS 0.1%CVE-2026-31449HIGHext4: validate p_idx bounds in ext4_ext_correct_indexesEPSS 0.1%CVE-2023-53563cpufreq: amd-pstate-ut: Fix kernel panic when loading the driverEPSS 0.1%CVE-2026-31504HIGHnet: fix fanout UAF in packet_release() via NETDEV_UP raceEPSS 0.1%CVE-2023-53399MEDIUMksmbd: fix NULL pointer dereference in smb2_get_info_filesystem()EPSS 0.1%