Vulnerabilities in Linux

13,522 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-53078HIGHbpf: Fix same-register dst/src OOB read and pointer leak in sock_opsEPSS 0.1%CVE-2026-23265f2fs: fix to do sanity check on node footer in {read,write}_end_ioEPSS 0.1%CVE-2026-46295KVM: x86: Do IRR scan in __kvm_apic_update_irr even if PIR is emptyEPSS 0.1%CVE-2023-53151md/raid10: prevent soft lockup while flush writesEPSS 0.1%CVE-2026-53338net: airoha: Add NULL check for of_reserved_mem_lookup() in airoha_qdma_init_hfwd_queues()EPSS 0.1%CVE-2026-53276HIGHBluetooth: ISO: Fix a use-after-free of the hci_conn pointerEPSS 0.1%CVE-2026-43204ASoC: qcom: q6asm: drop DSP responses for closed data streamsEPSS 0.1%CVE-2026-52949drm/ttm: Fix ttm_bo_shrink() infinite LRU walk on backup failureEPSS 0.1%CVE-2026-52907HIGHmedia: rockchip: rkcif: fix off by one bugsEPSS 0.1%CVE-2026-31691igb: remove napi_synchronize() in igb_down()EPSS 0.1%CVE-2025-38462vsock: Fix transport_{g2h,h2g} TOCTOUEPSS 0.1%CVE-2026-23214btrfs: reject new transactions if the fs is fully read-onlyEPSS 0.1%CVE-2026-53114perf/amd/ibs: Avoid calling perf_allow_kernel() from the IBS NMI handlerEPSS 0.1%CVE-2026-45926rust: pwm: Fix potential memory leak on init errorEPSS 0.1%CVE-2025-38711smb/server: avoid deadlock when linking with ReplaceIfExistsEPSS 0.1%CVE-2023-53590sctp: add a refcnt in sctp_stream_priorities to avoid a nested loopEPSS 0.1%CVE-2026-23109fs/writeback: skip AS_NO_DATA_INTEGRITY mappings in wait_sb_inodes()EPSS 0.1%CVE-2025-71081ASoC: stm32: sai: fix OF node leak on probeEPSS 0.1%CVE-2026-45905xfrm: fix ip_rt_bug race in icmp_route_lookup reverse pathEPSS 0.1%CVE-2026-64510HIGHACPI: NFIT: core: Fix acpi_nfit_init() error cleanupEPSS 0.1%