Vulnerabilidades em Linux

17.279 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2025-21910—wifi: cfg80211: regulatory: improve invalid hints checkingEPSS 0.2%CVE-2021-47297MEDIUMnet: fix uninit-value in caif_seqpkt_sendmsgEPSS 0.2%CVE-2022-50782—ext4: fix bug_on in __es_tree_search caused by bad quota inodeEPSS 0.2%CVE-2021-47165—drm/meson: fix shutdown crash when component not probedEPSS 0.2%CVE-2024-36023—Julia Lawall reported this null pointer dereference, this should fix it.EPSS 0.2%CVE-2021-47443MEDIUMNFC: digital: fix possible memory leak in digital_tg_listen_mdaa()EPSS 0.2%CVE-2024-50114HIGHKVM: arm64: Unregister redistributor for failed vCPU creationEPSS 0.2%CVE-2022-48653—ice: Don't double unplug aux on peer initiated resetEPSS 0.2%CVE-2024-42269—netfilter: iptables: Fix potential null-ptr-deref in ip6table_nat_table_init().EPSS 0.2%CVE-2021-47173—misc/uss720: fix memory leak in uss720_probeEPSS 0.2%CVE-2025-37973HIGHwifi: cfg80211: fix out-of-bounds access during multi-link element defragmentationEPSS 0.2%CVE-2024-38632—vfio/pci: fix potential memory leak in vfio_intx_enable()EPSS 0.2%CVE-2024-35913HIGHwifi: iwlwifi: mvm: pick the version of SESSION_PROTECTION_NOTIFEPSS 0.2%CVE-2024-42270—netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init().EPSS 0.2%CVE-2022-48648—sfc: fix null pointer dereference in efx_hard_start_xmitEPSS 0.2%CVE-2024-58089HIGHbtrfs: fix double accounting race when btrfs_run_delalloc_range() failedEPSS 0.2%CVE-2024-46710HIGHdrm/vmwgfx: Prevent unmapping active read buffersEPSS 0.2%CVE-2025-21922MEDIUMppp: Fix KMSAN uninit-value warning with bpfEPSS 0.2%CVE-2025-21751HIGHnet/mlx5: HWS, change error flow on matcher disconnectEPSS 0.2%CVE-2024-26623HIGHpds_core: Prevent race issues involving the adminqEPSS 0.2%