Vulnerabilidades em Linux

17.489 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2024-46896—drm/amdgpu: don't access invalid schedEPSS 0.2%CVE-2026-72155—mtd: spi-nor: swp: Improve locking user experienceEPSS 0.2%CVE-2026-80876—ring-buffer: Fix event length with forced 8-byte alignmentEPSS 0.2%CVE-2026-68328—nfp: Check resource mutex allocationEPSS 0.2%CVE-2026-90068—ASoC: dapm: Fix off-by-one check on the second enum channelEPSS 0.2%CVE-2026-72256—netfilter: xt_cluster: reject template conntracks in hash matchEPSS 0.2%CVE-2026-93061—gpu: host1x: Avoid stack over-read in debug output helpersEPSS 0.2%CVE-2026-93159—crypto: atmel-sha204a - fix heap info leak on I2C transfer failureEPSS 0.2%CVE-2026-72022—llc: fix SAP refcount leak in llc_ui_autobind()EPSS 0.2%CVE-2026-72047—ieee802154: ca8210: fix pointer truncation in kfifo on 64-bitEPSS 0.2%CVE-2026-80875—ipvs: use parsed transport offset in TCP state lookupEPSS 0.2%CVE-2026-64549—Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup()EPSS 0.2%CVE-2026-90348—wifi: ath10k: snoc: use memcpy_fromio() for MSA ramdumpEPSS 0.2%CVE-2026-80879—ocfs2: fix circular locking dependency in ocfs2_dio_end_io_writeEPSS 0.2%CVE-2026-64514—userfaultfd: gate must_wait writability check on pte_present()EPSS 0.2%CVE-2024-41074—cachefiles: Set object to close if ondemand_id < 0 in copenEPSS 0.2%CVE-2026-68475—reset: sunxi: fix memory region leak on ioremap failureEPSS 0.2%CVE-2026-64590—dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warningEPSS 0.2%CVE-2026-68249—drm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON()EPSS 0.2%CVE-2026-80708—s390/zcrypt: Fix missing mem scrub at clear key import in cca_clr2cipherkey()EPSS 0.2%