Vulnerabilities in Linux

13,511 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2025-39897MEDIUMnet: xilinx: axienet: Add error handling for RX metadata pointer retrievalEPSS 0.1%CVE-2026-31452ext4: convert inline data to extents when truncate exceeds inline sizeEPSS 0.1%CVE-2022-50400MEDIUMstaging: greybus: audio_helper: remove unused and wrong debugfs usageEPSS 0.1%CVE-2026-64111HIGHlsm: hold cred_guard_mutex for lsm_set_self_attr()EPSS 0.1%CVE-2026-53033HIGHbpf, sockmap: Take state lock for af_unix iterEPSS 0.1%CVE-2025-39816MEDIUMio_uring/kbuf: always use READ_ONCE() to read ring provided buffer lengthsEPSS 0.1%CVE-2025-39732wifi: ath11k: fix sleeping-in-atomic in ath11k_mac_op_set_bitrate_mask()EPSS 0.1%CVE-2026-46041greybus: gb-beagleplay: fix sleep in atomic context in hdlc_tx_frames()EPSS 0.1%CVE-2026-53059MEDIUMdm log: fix out-of-bounds write due to region_count overflowEPSS 0.1%CVE-2024-57921drm/amdgpu: Add a lock when accessing the buddy trim functionEPSS 0.1%CVE-2026-64115HIGHvsock/vmci: fix UAF when peer resets connection during handshakeEPSS 0.1%CVE-2023-53681bcache: Fix __bch_btree_node_alloc to make the failure behavior consistentEPSS 0.1%CVE-2026-23385netfilter: nf_tables: clone set on flush onlyEPSS 0.1%CVE-2023-53405MEDIUMUSB: gadget: gr_udc: fix memory leak with using debugfs_lookup()EPSS 0.1%CVE-2026-64529HIGHcrypto: qat - remove unused character device and IOCTLsEPSS 0.1%CVE-2023-53593cifs: Release folio lock on fscache read hit.EPSS 0.1%CVE-2023-53414MEDIUMscsi: snic: Fix memory leak with using debugfs_lookup()EPSS 0.1%CVE-2025-39948ice: fix Rx page leak on multi-buffer framesEPSS 0.1%CVE-2023-53571drm/i915: Make intel_get_crtc_new_encoder() less oopsyEPSS 0.1%CVE-2023-53334MEDIUMUSB: chipidea: fix memory leak with using debugfs_lookup()EPSS 0.1%