Vulnerabilidades em Linux

17.280 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2022-33741—Linux disk/nic frontends data leaks T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities cEPSS 0.3%CVE-2024-39495HIGHgreybus: Fix use-after-free bug in gb_interface_release due to race condition.EPSS 0.3%CVE-2024-24858MEDIUMRace condition vulnerability in Linux kernel net/bluetooth in {conn,adv}_{min,max}_interval_set()EPSS 0.3%CVE-2025-40046HIGHio_uring/zcrx: fix overshooting recv limitEPSS 0.3%CVE-2026-43213HIGHwifi: rtw89: pci: validate sequence number of TX release reportEPSS 0.3%CVE-2024-53224HIGHRDMA/mlx5: Move events notifier registration to be after device registrationEPSS 0.3%CVE-2021-28714—Guest can force Linux netback driver to hog large amounts of kernel memory T[his CNA information record relates to multiple CVEs; the text eEPSS 0.3%CVE-2025-38165HIGHbpf, sockmap: Fix panic when calling skb_linearizeEPSS 0.3%CVE-2025-39894HIGHnetfilter: br_netfilter: do not check confirmed bit in br_nf_local_in() after confirmEPSS 0.3%CVE-2022-49532MEDIUMdrm/virtio: fix NULL pointer dereference in virtio_gpu_conn_get_modesEPSS 0.3%CVE-2021-47620HIGHBluetooth: refactor malicious adv data checkEPSS 0.3%CVE-2024-43872HIGHRDMA/hns: Fix soft lockup under heavy CEQE loadEPSS 0.3%CVE-2024-41034HIGHnilfs2: fix kernel bug on rename operation of broken directoryEPSS 0.3%CVE-2025-71311HIGHfs/ntfs3: Initialize new folios before useEPSS 0.3%CVE-2025-39880CRITICALlibceph: fix invalid accesses to ceph_connection_v1_infoEPSS 0.3%CVE-2024-35915HIGHnfc: nci: Fix uninit-value in nci_dev_up and nci_ntf_packetEPSS 0.3%CVE-2024-53171HIGHubifs: authentication: Fix use-after-free in ubifs_tnc_end_commitEPSS 0.3%CVE-2026-80924HIGHcrypto: krb5 - use kfree_sensitive() for derived key buffersEPSS 0.3%CVE-2025-71292HIGHjfs: nlink overflow in jfs_renameEPSS 0.3%CVE-2022-49471HIGHrtw89: cfo: check mac_id to avoid out-of-boundsEPSS 0.3%