Vulnerabilities in Linux

13,517 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-43340comedi: Reinit dev->spinlock between attachments to low-level driversEPSS 0.1%CVE-2026-53337net: bonding: fix NULL pointer dereference in bond_do_ioctl()EPSS 0.1%CVE-2026-23097migrate: correct lock ordering for hugetlb file foliosEPSS 0.1%CVE-2026-52925vrf: Fix a potential NPD when removing a port from a VRFEPSS 0.1%CVE-2026-43041net: qrtr: replace qrtr_tx_flow radix_tree with xarray to fix memory leakEPSS 0.1%CVE-2026-23205smb/client: fix memory leak in smb2_open_file()EPSS 0.1%CVE-2025-71098ip6_gre: make ip6gre_header() robustEPSS 0.1%CVE-2026-43484mmc: core: Avoid bitfield RMW for claim/retune flagsEPSS 0.1%CVE-2026-23261nvme-fc: release admin tagset if init failsEPSS 0.1%CVE-2025-71097ipv4: Fix reference count leak when using error routes with nexthop objectsEPSS 0.1%CVE-2025-37906HIGHublk: fix race between io_uring_cmd_complete_in_task and ublk_cancel_cmdEPSS 0.1%CVE-2026-53350ASoC: wm_adsp: Fix NULL dereference when removing firmware controlsEPSS 0.1%CVE-2026-43119Bluetooth: hci_sync: annotate data-races around hdev->req_statusEPSS 0.1%CVE-2026-23380tracing: Fix WARN_ON in tracing_buffers_mmap_closeEPSS 0.1%CVE-2026-23255net: add proper RCU protection to /proc/net/ptypeEPSS 0.1%CVE-2026-43264fbdev: of: display_timing: fix refcount leak in of_get_display_timings()EPSS 0.1%CVE-2026-43467net/mlx5: Fix crash when moving to switchdev modeEPSS 0.1%CVE-2026-23206dpaa2-switch: prevent ZERO_SIZE_PTR dereference when num_ifs is zeroEPSS 0.1%CVE-2026-52928af_unix: Reject SIOCATMARK on non-stream socketsEPSS 0.1%CVE-2026-23373wifi: rsi: Don't default to -EOPNOTSUPP in rsi_mac80211_configEPSS 0.1%