Vulnerabilidades em Linux

17.499 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2025-21901HIGHRDMA/bnxt_re: Add sanity checks on rdev validityEPSS 0.2%CVE-2025-37995—module: ensure that kobject_put() is safe for module type kobjectsEPSS 0.2%CVE-2023-52737—btrfs: lock the inode in shared mode before starting fiemapEPSS 0.2%CVE-2022-48913HIGHblktrace: fix use after free for struct blk_traceEPSS 0.2%CVE-2024-27004—clk: Get runtime PM before walking tree during disable_unusedEPSS 0.2%CVE-2024-56669HIGHiommu/vt-d: Remove cache tags before disabling ATSEPSS 0.2%CVE-2024-35833MEDIUMdmaengine: fsl-qdma: Fix a memory leak related to the queue command DMAEPSS 0.2%CVE-2024-57857HIGHRDMA/siw: Remove direct link to net_deviceEPSS 0.2%CVE-2024-36967—KEYS: trusted: Fix memory leak in tpm2_key_encode()EPSS 0.2%CVE-2025-21939HIGHdrm/xe/hmm: Don't dereference struct page pointers without notifier lockEPSS 0.2%CVE-2025-22069HIGHriscv: fgraph: Fix stack layout to match __arch_ftrace_regs argument of ftrace_return_to_handlerEPSS 0.2%CVE-2025-68773—spi: fsl-cpm: Check length parity before switching to 16 bit modeEPSS 0.2%CVE-2024-56563HIGHceph: fix cred leak in ceph_mds_check_access()EPSS 0.2%CVE-2025-22013HIGHKVM: arm64: Unconditionally save+flush host FPSIMD/SVE/SME stateEPSS 0.2%CVE-2025-68185—nfs4_setup_readdir(): insufficient locking for ->d_parent->d_inode dereferencingEPSS 0.2%CVE-2025-68177—cpufreq/longhaul: handle NULL policy in longhaul_exitEPSS 0.2%CVE-2024-56745LOWPCI: Fix reset_method_store() memory leakEPSS 0.2%CVE-2025-68344—ALSA: wavefront: Fix integer overflow in sample size validationEPSS 0.2%CVE-2024-56754MEDIUMcrypto: caam - Fix the pointer passed to caam_qi_shutdown()EPSS 0.2%CVE-2024-35995—ACPI: CPPC: Use access_width over bit_width for system memory accessesEPSS 0.2%