Vulnerabilidades en Linux

16.673 resultados
Análisis Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2022-49110HIGHnetfilter: conntrack: revisit gc autotuningEPSS 0.6%CVE-2025-68192CRITICALnet: usb: qmi_wwan: initialize MAC header offset in qmimux_rx_fixupEPSS 0.6%CVE-2022-42432MEDIUMThis vulnerability allows local attackers to disclose sensitive information on affected installations of the Linux Kernel 6.0-rc2. An attackEPSS 0.6%CVE-2024-56662HIGHacpi: nfit: vmalloc-out-of-bounds Read in acpi_nfit_ctlEPSS 0.6%CVE-2021-3444HIGHLinux kernel bpf verifier incorrect mod32 truncationEPSS 0.6%CVE-2026-89648HIGHceph: cap delegated inode count in ceph_parse_deleg_inos()EPSS 0.6%CVE-2024-36904HIGHtcp: Use refcount_inc_not_zero() in tcp_twsk_unique().EPSS 0.6%CVE-2022-48692HIGHRDMA/srp: Set scmnd->result only when scmnd is not NULLEPSS 0.6%CVE-2024-26868HIGHnfs: fix panic when nfs4_ff_layout_prepare_ds() failsEPSS 0.6%CVE-2024-50045HIGHnetfilter: br_netfilter: fix panic with metadata_dst skbEPSS 0.6%CVE-2024-38539HIGHRDMA/cma: Fix kmemleak in rdma_core observed during blktests nvme/rdma use siwEPSS 0.6%CVE-2026-89703CRITICALnfsd: set SC_STATUS_FREED in nfsd4_drop_revoked_stid for delegationsEPSS 0.6%CVE-2022-50136HIGHRDMA/siw: Fix duplicated reported IW_CM_EVENT_CONNECT_REPLY eventEPSS 0.6%CVE-2024-47678CRITICALicmp: change the order of rate limitsEPSS 0.6%CVE-2024-26864HIGHtcp: Fix refcnt handling in __inet_hash_connect().EPSS 0.6%CVE-2026-89990CRITICALceph: lock mutex in ceph_mds_check_access()EPSS 0.6%CVE-2026-89660CRITICALNFSD: Prevent client use-after-free during admin state revocationEPSS 0.6%CVE-2026-89658CRITICALNFSD: Prevent client use-after-free during NFSv4.0 revoked-state cleanupEPSS 0.6%CVE-2026-89688CRITICALnfsd: drop the stateid, not the stateowner, on seqid_op replay retryEPSS 0.6%CVE-2024-53058CRITICALnet: stmmac: TSO: Fix unbalanced DMA map/unmap for non-paged SKB dataEPSS 0.6%