Vulnerabilidades en linux
13.937 resultadosAnálisis Vexday
O Linux apresenta 2 vulnerabilidades catalogadas na base, nenhuma sob ataque ativo no momento e nenhuma com classificação crítica. A fraqueza dominante identificada é CWE-131 (Incorrect Calculation of Buffer Size), sem registros de publicação nos últimos 90 dias, indicando um panorama de risco residual e estável para este fornecedor.
CVE-2022-49997HIGHnet: lantiq_xrx200: restore buffer if memory allocation failedEPSS 0.4%CVE-2025-68803HIGHNFSD: NFSv4 file creation neglects setting ACLEPSS 0.4%CVE-2025-40099CRITICALcifs: parse_dfs_referrals: prevent oob on malformed inputEPSS 0.4%CVE-2025-38075CRITICALscsi: target: iscsi: Fix timeout on deleted connectionEPSS 0.4%CVE-2025-68741CRITICALscsi: qla2xxx: Fix improper freeing of purex itemEPSS 0.4%CVE-2025-38724CRITICALnfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm()EPSS 0.4%CVE-2023-54085HIGHmptcp: fix NULL pointer dereference on fastopen early fallbackEPSS 0.4%CVE-2026-43469HIGHxprtrdma: Decrement re_receiving on the early exit pathsEPSS 0.4%CVE-2025-38660CRITICAL[ceph] parse_longname(): strrchr() expects NUL-terminated stringEPSS 0.4%CVE-2026-64410CRITICALnetfilter: flowtable: IPIP tunnel hardware offload is not yet supportEPSS 0.4%CVE-2026-53069HIGHnet, bpf: fix null-ptr-deref in xdp_master_redirect() for down masterEPSS 0.4%CVE-2024-35889HIGHidpf: fix kernel panic on unknown packet typesEPSS 0.4%CVE-2026-52955CRITICALlibceph: Fix potential out-of-bounds access in crush_decode()EPSS 0.4%CVE-2026-64067CRITICALnetfs: Fix missing barriers when accessing stream->subrequests locklesslyEPSS 0.4%CVE-2026-64068CRITICALnetfs: Fix missing locking around retry adding new subreqsEPSS 0.4%CVE-2025-39758CRITICALRDMA/siw: Fix the sendmsg byte count in siw_tcp_sendpagesEPSS 0.4%CVE-2026-43414CRITICALscsi: qla2xxx: Completely fix fcport double freeEPSS 0.4%CVE-2026-31463CRITICALiomap: fix invalid folio access when i_blkbits differs from I/O granularityEPSS 0.4%CVE-2026-31501CRITICALnet: ti: icssg-prueth: fix use-after-free of CPPI descriptor in RX pathEPSS 0.4%CVE-2025-40075HIGHtcp_metrics: use dst_dev_net_rcu()EPSS 0.4%