Vulnerabilities in Linux

13,522 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2025-38717HIGHnet: kcm: Fix race condition in kcm_unattach()EPSS 0.1%CVE-2026-23210ice: Fix PTP NULL pointer dereference during VSI rebuildEPSS 0.1%CVE-2025-71309fs/ntfs3: fix deadlock in ni_read_folio_cmprEPSS 0.1%CVE-2025-39767LoongArch: Optimize module load time by optimizing PLT/GOT countingEPSS 0.1%CVE-2025-39927HIGHceph: fix race condition validating r_parent before applying stateEPSS 0.1%CVE-2026-63811f2fs: read COW data with the original inode during atomic writeEPSS 0.1%CVE-2023-53188net: openvswitch: fix race on port outputEPSS 0.1%CVE-2026-46222media: rockchip: rkcif: Add missing MUST_CONNECT flag to padsEPSS 0.1%CVE-2026-23127perf: Fix refcount warning on event->mmap_count incrementEPSS 0.1%CVE-2025-39754mm/smaps: fix race between smaps_hugetlb_range and migrationEPSS 0.1%CVE-2026-46239media: i2c: ov5647: Fix runtime PM refcount leak in s_ctrlEPSS 0.1%CVE-2025-39712media: mt9m114: Fix deadlock in get_frame_interval/set_frame_intervalEPSS 0.1%CVE-2025-38359s390/mm: Fix in_atomic() handling in do_secure_storage_access()EPSS 0.1%CVE-2025-38720net: hibmcge: fix rtnl deadlock issueEPSS 0.1%CVE-2026-46017mm: fix deferred split queue races during migrationEPSS 0.1%CVE-2026-23232Revert "f2fs: block cache/dio write during f2fs_enable_checkpoint()"EPSS 0.1%CVE-2023-53581net/mlx5e: Check for NOT_READY flag state after lockingEPSS 0.1%CVE-2023-53452wifi: rtw89: fix potential race condition between napi_init and napi_enableEPSS 0.1%CVE-2026-46227HIGHsctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALLEPSS 0.1%CVE-2026-31761HIGHiio: gyro: mpu3050: Move iio_device_register() to correct locationEPSS 0.1%