Vulnerabilidades em Linux

17.279 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2024-35981—virtio_net: Do not send RSS key if it is not supportedEPSS 0.2%CVE-2021-47381—ASoC: SOF: Fix DSP oops stack dump output contentsEPSS 0.2%CVE-2024-35972—bnxt_en: Fix possible memory leak in bnxt_rdma_aux_device_init()EPSS 0.2%CVE-2024-26835—netfilter: nf_tables: set dormant flag on hook register failureEPSS 0.2%CVE-2024-50208HIGHRDMA/bnxt_re: Fix a bug while setting up Level-2 PBL pagesEPSS 0.2%CVE-2024-36891—maple_tree: fix mas_empty_area_rev() null pointer dereferenceEPSS 0.2%CVE-2024-50184MEDIUMvirtio_pmem: Check device status before requesting flushEPSS 0.2%CVE-2024-50173HIGHdrm/panthor: Fix access to uninitialized variable in tick_ctx_cleanup()EPSS 0.2%CVE-2023-53852—nvme-core: fix memory leak in dhchap_secret_storeEPSS 0.2%CVE-2024-41094—drm/fbdev-dma: Only set smem_start is enable per module optionEPSS 0.2%CVE-2021-47367MEDIUMvirtio-net: fix pages leaking when building skb in big modeEPSS 0.2%CVE-2024-35883—spi: mchp-pci1xxx: Fix a possible null pointer dereference in pci1xxx_spi_probeEPSS 0.2%CVE-2024-39483HIGHKVM: SVM: WARN on vNMI + NMI window iff NMIs are outright maskedEPSS 0.2%CVE-2025-37913HIGHnet_sched: qfq: Fix double list add in class with netem as child qdiscEPSS 0.2%CVE-2023-53080HIGHxsk: Add missing overflow check in xdp_umem_regEPSS 0.2%CVE-2024-41088—can: mcp251xfd: fix infinite loop when xmit failsEPSS 0.2%CVE-2024-36928HIGHs390/qeth: Fix kernel panic after setting hsuidEPSS 0.2%CVE-2024-43880HIGHmlxsw: spectrum_acl_erp: Fix object nesting warningEPSS 0.2%CVE-2024-35800—efi: fix panic in kdump kernelEPSS 0.2%CVE-2023-53462HIGHhsr: Fix uninit-value access in fill_frame_info()EPSS 0.2%