Vulnerabilidades en Linux

16.907 resultados
Análisis Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2024-50154CRITICALtcp/dccp: Don't use timer_pending() in reqsk_queue_unlink().EPSS 0.6%CVE-2023-52885HIGHSUNRPC: Fix UAF in svc_tcp_listen_data_ready()EPSS 0.6%CVE-2026-53086CRITICALnet: bcmgenet: fix racing timeout handlerEPSS 0.6%CVE-2025-38035HIGHnvmet-tcp: don't restore null sk_state_changeEPSS 0.6%CVE-2022-49770CRITICALceph: avoid putting the realm twice when decoding snaps failsEPSS 0.6%CVE-2023-54184CRITICALscsi: target: iscsit: Free cmds before session freeEPSS 0.6%CVE-2024-53176CRITICALsmb: During unmount, ensure all cached dir instances drop their dentryEPSS 0.6%CVE-2026-64395HIGHksmbd: require source read access for duplicate extentsEPSS 0.6%CVE-2026-89611CRITICALntfs: validate non-resident attribute offsetsEPSS 0.6%CVE-2026-43039CRITICALnet: ti: icssg-prueth: fix missing data copy and wrong recycle in ZC RX dispatchEPSS 0.6%CVE-2026-80673CRITICALntfs: bound the look-ahead attribute-list entry in ntfs_external_attr_find()EPSS 0.6%CVE-2026-72417CRITICALnetfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto()EPSS 0.6%CVE-2026-43203HIGHatm: fore200e: fix use-after-free in tasklets during device removalEPSS 0.6%CVE-2026-89610CRITICALntfs: verify run length exceeding volume boundaryEPSS 0.6%CVE-2026-72249CRITICALnetfilter: flowtable: use dst in this direction when pushing IPIP headerEPSS 0.6%CVE-2026-72064CRITICALnet: mana: Sync page pool RX frags for CPUEPSS 0.6%CVE-2026-80634CRITICALnetfilter: flowtable: avoid num_encaps underflow on bridge VLAN untagEPSS 0.6%CVE-2026-72248CRITICALnetfilter: flowtable: support IPIP tunnel with direct xmitEPSS 0.6%CVE-2026-74350CRITICALocfs2: validate fast symlink target during inode readEPSS 0.6%CVE-2026-72442CRITICALnetfilter: flowtable: fix and simplify IP6IP6 tunnel handlingEPSS 0.6%