Vulnerabilidades en Linux

17.279 resultados
Análisis Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2024-53101MEDIUMfs: Fix uninitialized value issue in from_kuid and from_kgidEPSS 0.2%CVE-2021-46974HIGHbpf: Fix masking negation logic upon negative dst registerEPSS 0.2%CVE-2022-49007—nilfs2: fix NULL pointer dereference in nilfs_palloc_commit_free_entry()EPSS 0.2%CVE-2022-48987—media: v4l2-dv-timings.c: fix too strict blanking sanity checksEPSS 0.2%CVE-2022-49034—sh: cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACKEPSS 0.2%CVE-2023-52906—net/sched: act_mpls: Fix warning during failed attribute validationEPSS 0.2%CVE-2021-47222HIGHnet: bridge: fix vlan tunnel dst refcnt when egressingEPSS 0.2%CVE-2024-49986HIGHplatform/x86: x86-android-tablets: Fix use after free on platform_device_register() errorsEPSS 0.2%CVE-2022-49025HIGHnet/mlx5e: Fix use-after-free when reverting termination tableEPSS 0.2%CVE-2023-52679HIGHof: Fix double free in of_parse_phandle_with_args_mapEPSS 0.2%CVE-2026-53256HIGHBluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind()EPSS 0.2%CVE-2025-21645—platform/x86/amd/pmc: Only disable IRQ1 wakeup where i8042 actually enabled itEPSS 0.2%CVE-2024-44931—gpio: prevent potential speculation leaks in gpio_device_get_desc()EPSS 0.2%CVE-2021-46963HIGHscsi: qla2xxx: Fix crash in qla2xxx_mqueuecommand()EPSS 0.2%CVE-2024-41060HIGHdrm/radeon: check bo_va->bo is non-NULL before using itEPSS 0.2%CVE-2023-52691HIGHdrm/amd/pm: fix a double-free in si_dpm_initEPSS 0.2%CVE-2022-48657—arm64: topology: fix possible overflow in amu_fie_setup()EPSS 0.2%CVE-2024-36014—drm/arm/malidp: fix a possible null pointer dereferenceEPSS 0.2%CVE-2024-49977—net: stmmac: Fix zero-division error when disabling tc cbsEPSS 0.2%CVE-2024-46746HIGHHID: amd_sfh: free driver_data after destroying hid deviceEPSS 0.2%