Vulnerabilidades en Linux

13.161 resultados
Análisis Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-63842HIGHdrm/amdgpu/jpeg: set no_user_fence for JPEG v5.0.0 ringEPSS 0.2%CVE-2026-63802HIGHblk-cgroup: fix UAF in __blkcg_rstat_flush()EPSS 0.2%CVE-2023-53082vp_vdpa: fix the crash in hot unplug with vp_vdpaEPSS 0.2%CVE-2023-54173bpf: Disable preemption in bpf_event_outputEPSS 0.2%CVE-2023-54252platform/x86: think-lmi: Fix memory leaks when parsing ThinkStation WMI stringsEPSS 0.2%CVE-2026-63843HIGHdrm/amdgpu/jpeg: set no_user_fence for JPEG v4.0.5 ringEPSS 0.2%CVE-2022-50710ice: set tx_tstamps when creating new Tx rings via ethtoolEPSS 0.2%CVE-2025-68786ksmbd: skip lock-range check on equal size to avoid size==0 underflowEPSS 0.2%CVE-2026-63870HIGHieee802154: 6lowpan: only accept IPv6 packets in lowpan_xmit()EPSS 0.2%CVE-2023-53107veth: Fix use after free in XDP_REDIRECTEPSS 0.2%CVE-2023-54243netfilter: ebtables: fix table blob use-after-freeEPSS 0.2%CVE-2025-68348block: fix memory leak in __blkdev_issue_zero_pagesEPSS 0.2%CVE-2023-54245ASoC: codecs: tx-macro: Fix for KASAN: slab-out-of-boundsEPSS 0.2%CVE-2026-23059scsi: qla2xxx: Sanitize payload size to prevent member overflowEPSS 0.2%CVE-2023-53991drm/msm/dpu: Disallow unallocated resources to be returnedEPSS 0.2%CVE-2025-68806ksmbd: fix buffer validation by including null terminator size in EA lengthEPSS 0.2%CVE-2023-54297btrfs: zoned: fix memory leak after finding block group with super blocksEPSS 0.2%CVE-2023-54229wifi: ath11k: fix registration of 6Ghz-only phy without the full channel rangeEPSS 0.2%CVE-2021-47067soc/tegra: regulators: Fix locking up when voltage-spread is out of rangeEPSS 0.2%CVE-2023-54171tracing: Fix memory leak of iter->temp when reading trace_pipeEPSS 0.2%