Vulnerabilities in Linux

16,673 results
Vexday analysis

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2021-47107CRITICALNFSD: Fix READDIR buffer overflowEPSS 0.8%CVE-2024-26924HIGHnetfilter: nft_set_pipapo: do not free live elementEPSS 0.8%CVE-2021-47023HIGHnet: marvell: prestera: fix port event handling on initEPSS 0.8%CVE-2022-3623MEDIUMLinux Kernel BPF gup.c follow_page_pte race conditionEPSS 0.8%CVE-2024-26690HIGHnet: stmmac: protect updates of 64-bit statistics countersEPSS 0.8%CVE-2022-49330HIGHtcp: fix tcp_mtup_probe_success vs wrong snd_cwndEPSS 0.8%CVE-2026-90413CRITICALIB/isert: reject login PDUs declaring more data than was receivedEPSS 0.8%CVE-2026-90011CRITICALscsi: target: iscsi: Reserve a terminator byte for the login payloadEPSS 0.8%CVE-2024-26731MEDIUMbpf, sockmap: Fix NULL pointer dereference in sk_psock_verdict_data_ready()EPSS 0.8%CVE-2024-27398HIGHBluetooth: Fix use-after-free bugs caused by sco_sock_timeoutEPSS 0.8%CVE-2024-26901MEDIUMdo_sys_name_to_handle(): use kzalloc() to fix kernel-infoleakEPSS 0.8%CVE-2024-38558CRITICALnet: openvswitch: fix overwriting ct original tuple for ICMPv6EPSS 0.8%CVE-2024-49569HIGHnvme-rdma: unquiesce admin_q before destroy itEPSS 0.8%CVE-2023-52696HIGHpowerpc/powernv: Add a null pointer check in opal_powercap_init()EPSS 0.8%CVE-2022-3524MEDIUMLinux Kernel IPv6 ipv6_renew_options memory leakEPSS 0.8%CVE-2022-49561CRITICALnetfilter: conntrack: re-fetch conntrack after insertionEPSS 0.8%CVE-2024-38544CRITICALRDMA/rxe: Fix seg fault in rxe_comp_queue_pktEPSS 0.8%CVE-2023-52511MEDIUMspi: sun6i: reduce DMA RX transfer width to single byteEPSS 0.8%CVE-2024-50302MEDIUMHID: core: zero-initialize the report bufferEPSS 0.8%KEVCVE-2022-50717CRITICALnvmet-tcp: add bounds check on Transfer TagEPSS 0.8%