Vulnerabilities in linux
14,647 resultsVexday analysis
O Linux apresenta 2 vulnerabilidades catalogadas na base, nenhuma sob ataque ativo no momento e nenhuma com classificação crítica. A fraqueza dominante identificada é CWE-131 (Incorrect Calculation of Buffer Size), sem registros de publicação nos últimos 90 dias, indicando um panorama de risco residual e estável para este fornecedor.
CVE-2025-40040HIGHmm/ksm: fix flag-dropping behavior in ksm_madviseEPSS 0.4%CVE-2025-21720HIGHxfrm: delete intermediate secpath entry in packet offload modeEPSS 0.4%CVE-2026-22984CRITICALlibceph: prevent potential out-of-bounds reads in handle_auth_done()EPSS 0.4%CVE-2023-53372HIGHsctp: fix a potential overflow in sctp_ifwdtsn_skipEPSS 0.4%CVE-2024-35811HIGHwifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detachEPSS 0.4%CVE-2025-38514HIGHrxrpc: Fix oops due to non-existence of prealloc backlog structEPSS 0.4%CVE-2023-5197HIGHUse-after-free in Linux kernel's netfilter: nf_tables componentEPSS 0.4%CVE-2022-3541MEDIUMLinux Kernel BPF spl2sw_driver.c spl2sw_nvmem_get_mac_address use after freeEPSS 0.4%CVE-2023-53358HIGHksmbd: fix racy issue under cocurrent smb2 tree disconnectEPSS 0.3%CVE-2022-50335CRITICAL9p: set req refcount to zero to avoid uninitialized usageEPSS 0.3%CVE-2022-48871HIGHtty: serial: qcom-geni-serial: fix slab-out-of-bounds on RX FIFO bufferEPSS 0.3%CVE-2022-33743—network backend may cause Linux netfront to use freed SKBs While adding logic to support XDP (eXpress Data Path), a code label was moved in EPSS 0.3%CVE-2026-64175HIGHwifi: iwlwifi: mld: stop TX during firmware restartEPSS 0.3%CVE-2021-47028HIGHmt76: mt7915: fix txrate reportingEPSS 0.3%CVE-2022-49015HIGHnet: hsr: Fix potential use-after-freeEPSS 0.3%CVE-2026-64522HIGHnet/mlx5e: Fix eswitch mode block underflow on IPsec acquire SAEPSS 0.3%CVE-2026-64162CRITICALidpf: fix read_dev_clk_lock spinlock init in idpf_ptp_init()EPSS 0.3%CVE-2026-46325CRITICALRDMA/rxe: Fix iova-to-va conversion for MR page sizes != PAGE_SIZEEPSS 0.3%CVE-2026-63857CRITICALnet: airoha: Do not read uninitialized fragment address in airoha_dev_xmit()EPSS 0.3%CVE-2026-46266CRITICALinet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMPEPSS 0.3%