Vulnerabilidades em Linux

17.280 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-72380HIGHxen/pvcalls: bound backend response req_id before indexing rsp[]EPSS 0.3%CVE-2026-80692HIGHBluetooth: hci_sync: hold conn in hci_connect_acl/le_sync() callbacksEPSS 0.3%CVE-2026-74530HIGHBluetooth: hci_sync: hold conn in hci_connect_big_sync() callbackEPSS 0.3%CVE-2026-89534HIGHsvcrdma: Clear sc_cm_id when ADDR_CHANGE replacement failsEPSS 0.3%CVE-2026-68390HIGHBluetooth: hci_sync: hold hdev->lock for hci_conn_params lookupsEPSS 0.3%CVE-2026-43322HIGHBluetooth: hci_sync: Fix UAF in le_read_features_completeEPSS 0.3%CVE-2026-90381HIGHwifi: mt76: fix handling channel context with different bands in mt76_switch_vif_chanctx()EPSS 0.3%CVE-2026-90256HIGHBluetooth: L2CAP: use proto_lock for l2cap_data to fix l2cap_disconn_indEPSS 0.3%CVE-2026-23139HIGHnetfilter: nf_conncount: update last_gc only when GC has been performedEPSS 0.3%CVE-2026-68470HIGHwifi: mac80211: validate extension-frame layout before RXEPSS 0.3%CVE-2026-74489HIGHwifi: mac80211: fix tid_tx use-after-free on BA session stopEPSS 0.3%CVE-2026-74554HIGHwifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup()EPSS 0.3%CVE-2026-64117HIGHwifi: mac80211: capture fast-RX rate before mesh reuses skb->cbEPSS 0.3%CVE-2024-53096HIGHmm: resolve faulty mmap_region() error path behaviourEPSS 0.3%CVE-2021-47388HIGHmac80211: fix use-after-free in CCMP/GCMP RXEPSS 0.3%CVE-2021-4090—An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1]EPSS 0.3%CVE-2024-49955—ACPI: battery: Fix possible crash when unregistering a battery hookEPSS 0.3%CVE-2021-47520HIGHcan: pch_can: pch_can_rx_normal: fix use after freeEPSS 0.3%CVE-2021-47017HIGHath10k: Fix a use after free in ath10k_htc_send_bundleEPSS 0.3%CVE-2023-52530HIGHwifi: mac80211: fix potential key use-after-freeEPSS 0.3%