Vulnerabilidades em Linux

17.499 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2026-64499—iio: adc: ti-ads1119: fix PM reference leak in buffer preenableEPSS 0.2%CVE-2026-80815—ALSA: scarlett2: Use a private URB for the notification endpointEPSS 0.2%CVE-2026-72379—fs: refuse O_TMPFILE creation with an unmapped fsuid or fsgidEPSS 0.2%CVE-2026-89909—LoongArch: KVM: Free init resources if kvm_init() failsEPSS 0.2%CVE-2026-72259—ASoC: mediatek: mt8192: Release reserved memory on cleanupEPSS 0.2%CVE-2026-93200—i3c: master: Fix use-after-free of master->thisEPSS 0.2%CVE-2026-92519—riscv, bpf: Fix memory leak in bpf_jit_freeEPSS 0.2%CVE-2025-37931HIGHbtrfs: adjust subpage bit start based on sectorsizeEPSS 0.2%CVE-2026-90220—ALSA: seq: Don't leak the extension cell pointer in the bounce payloadEPSS 0.2%CVE-2022-50673HIGHext4: fix use-after-free in ext4_orphan_cleanupEPSS 0.2%CVE-2026-68396—scsi: core: wake eh reliably when using scsi_schedule_ehEPSS 0.2%CVE-2026-74524—riscv: mm: Fix out-of-bounds page-table walk during memory hot-removeEPSS 0.2%CVE-2026-74484—binfmt_misc: don't let an 'F' entry pin its own instanceEPSS 0.2%CVE-2026-72132—NFS: Charge unstable writes by request size, not folio sizeEPSS 0.2%CVE-2026-93155—crypto: keembay - Fix AEAD unregister count in error pathEPSS 0.2%CVE-2026-90404—platform/chrome: cros_ec_debugfs: Unregister panic notifierEPSS 0.2%CVE-2026-90400—md: recheck spare changes before starting syncEPSS 0.2%CVE-2026-89807—drm/amdkfd: guard against NULL restore_mqd in CRIU queue restoreEPSS 0.2%CVE-2026-90050—net/sched: fq: clamp quantum and initial_quantum in change pathEPSS 0.2%CVE-2026-89437—platform/x86: int1092: Fix potential memory leak in sar_probe()EPSS 0.2%