Vulnerabilidades en Linux

16.673 resultados
Análisis Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-89528HIGHsvcrdma: Reject Read lists that exceed the page budgetEPSS 0.6%CVE-2021-46983HIGHnvmet-rdma: Fix NULL deref when SEND is completed with errorEPSS 0.6%CVE-2024-26620HIGHs390/vfio-ap: always filter entire AP matrixEPSS 0.6%CVE-2022-49279HIGHNFSD: prevent integer overflow on 32 bit systemsEPSS 0.6%CVE-2026-68161CRITICALsctp: close UDP tunnel sockets during netns teardownEPSS 0.6%CVE-2026-89651CRITICALceph: bound MDSCapAuth path and fs_name decode in handle_session()EPSS 0.6%CVE-2026-90012CRITICALspi: Fix DMA mapping ownership on partial map failureEPSS 0.6%CVE-2024-26853CRITICALigc: avoid returning frame twice in XDP_REDIRECTEPSS 0.6%CVE-2026-89558CRITICALmd/raid10: fix still_degraded being inverted in raid10_sync_request()EPSS 0.6%CVE-2026-72221CRITICALsunrpc: wait for in-flight TLS handshake callback when cancel loses raceEPSS 0.6%CVE-2026-89536CRITICALSUNRPC: wait for in-flight client TLS handshake callbackEPSS 0.6%CVE-2026-89526CRITICALsvcrdma: Validate Read chunk positions before reconstructionEPSS 0.6%CVE-2026-90235CRITICALsunrpc: xprtsock: annotate shared socket callbacks with READ_ONCE/WRITE_ONCEEPSS 0.6%CVE-2026-72185CRITICALntfs: fix WARN_ON for resident attribute in ntfs_map_runlist_nolock()EPSS 0.6%CVE-2026-72348CRITICALnetfilter: ip6tables: mark malformed IPv6 extension headers for hotdropEPSS 0.6%CVE-2026-89492CRITICALocfs2: validate directory-index entry counts when reading metadataEPSS 0.6%CVE-2024-47408CRITICALnet/smc: check smcd_v2_ext_offset when receiving proposal msgEPSS 0.6%CVE-2024-50283CRITICALksmbd: fix slab-use-after-free in smb3_preauth_hash_rspEPSS 0.6%CVE-2024-53240xen/netfront: fix crash when removing deviceEPSS 0.6%CVE-2024-35835HIGHnet/mlx5e: fix a double-free in arfs_create_groupsEPSS 0.6%