Vulnerabilidades em Linux

17.280 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2022-49366MEDIUMksmbd: fix reference count leak in smb_check_perm_dacl()EPSS 0.3%CVE-2022-49466MEDIUMregulator: scmi: Fix refcount leak in scmi_regulator_probeEPSS 0.3%CVE-2022-49473MEDIUMASoC: ti: j721e-evm: Fix refcount leak in j721e_soc_probe_*EPSS 0.3%CVE-2022-49184MEDIUMnet: sparx5: switchdev: fix possible NULL pointer dereferenceEPSS 0.3%CVE-2022-49990HIGHs390: fix double free of GS and RI CBs on fork() failureEPSS 0.3%CVE-2022-49440—powerpc/rtas: Keep MSR[RI] set when calling RTASEPSS 0.3%CVE-2022-49132—ath11k: pci: fix crash on suspend if board file is not foundEPSS 0.3%CVE-2022-49061MEDIUMnet: ethernet: stmmac: fix altr_tse_pcs function when using a fixed-linkEPSS 0.3%CVE-2022-49148MEDIUMwatch_queue: Free the page array when watch_queue is dismantledEPSS 0.3%CVE-2023-52614HIGHPM / devfreq: Fix buffer overflow in trans_stat_showEPSS 0.3%CVE-2022-49506—drm/mediatek: Add vblank register/unregister callback functionsEPSS 0.3%CVE-2025-37845HIGHtracing: fprobe events: Fix possible UAF on modulesEPSS 0.3%CVE-2021-47404—HID: betop: fix slab-out-of-bounds Write in betop_probeEPSS 0.3%CVE-2022-49477MEDIUMASoC: samsung: Fix refcount leak in aries_audio_probeEPSS 0.3%CVE-2022-49448MEDIUMsoc: bcm: Check for NULL return of devm_kzalloc()EPSS 0.3%CVE-2022-49283—firmware: sysfb: fix platform-device leak in error pathEPSS 0.3%CVE-2024-57792HIGHpower: supply: gpio-charger: Fix set charge current limitsEPSS 0.3%CVE-2022-49329MEDIUMvduse: Fix NULL pointer dereference on sysfs accessEPSS 0.3%CVE-2021-47640HIGHpowerpc/kasan: Fix early region not updated correctlyEPSS 0.3%CVE-2022-49169—f2fs: use spin_lock to avoid hangEPSS 0.3%