Vulnerabilidades en Linux

17.280 resultados
Análisis Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2023-53635HIGHnetfilter: conntrack: fix wrong ct->timeout valueEPSS 0.4%CVE-2026-64406HIGHBluetooth: fix UAF in bt_accept_dequeue()EPSS 0.4%CVE-2026-89849HIGHscsi: qla2xxx: Reject non-SCSI SRB on status IOCB fast pathEPSS 0.4%CVE-2024-53136HIGHmm: revert "mm: shmem: fix data-race in shmem_getattr()"EPSS 0.4%CVE-2026-100075CRITICALRDMA/srpt: Fix srpt_alloc_rw_ctxs() unwind countersEPSS 0.4%CVE-2026-98070HIGHnet/rds: acquire RDS_IN_XMIT in rds_tcp_reset_callbacks()EPSS 0.4%CVE-2024-26801HIGHBluetooth: Avoid potential use-after-free in hci_error_resetEPSS 0.4%CVE-2025-40273HIGHNFSD: free copynotify stateid in nfs4_free_ol_stateid()EPSS 0.4%CVE-2022-50732HIGHstaging: rtl8192u: Fix use after free in ieee80211_rx()EPSS 0.4%CVE-2022-49328HIGHmt76: fix use-after-free by removing a non-RCU wcid pointerEPSS 0.4%CVE-2026-53355CRITICALnet: rds: clear i_sends on setup unwindEPSS 0.4%CVE-2022-50235CRITICALNFSD: Protect against send buffer overflow in NFSv2 READDIREPSS 0.4%CVE-2022-50410CRITICALNFSD: Protect against send buffer overflow in NFSv2 READEPSS 0.4%CVE-2026-68353HIGHwifi: ath6kl: fix OOB read from firmware num_msg in TX complete handlerEPSS 0.4%CVE-2026-74340HIGHwifi: wcn36xx: fix OOB read from firmware count in PRINT_REG_INFO indicationEPSS 0.4%CVE-2026-31464HIGHscsi: ibmvfc: Fix OOB access in ibmvfc_discover_targets_done()EPSS 0.4%CVE-2026-63893HIGHthunderbolt: property: Reject u32 wrap in tb_property_entry_valid()EPSS 0.4%CVE-2024-53144HIGHBluetooth: hci_event: Align BR/EDR JUST_WORKS paring with LEEPSS 0.4%CVE-2026-80599HIGHbatman-adv: dat: ensure accessible eth_hdr proto fieldEPSS 0.4%CVE-2026-43051HIGHHID: wacom: fix out-of-bounds read in wacom_intuos_bt_irqEPSS 0.4%