Vulnerabilidades em Linux

13.161 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2023-53057Bluetooth: HCI: Fix global-out-of-boundsEPSS 0.2%CVE-2023-53350MEDIUMaccel/qaic: Fix slicing memory leakEPSS 0.2%CVE-2023-54066media: dvb-usb-v2: gl861: Fix null-ptr-deref in gl861_i2c_master_xferEPSS 0.2%CVE-2025-40086drm/xe: Don't allow evicting of BOs in same VM in array of VM bindsEPSS 0.2%CVE-2025-21730wifi: rtw89: avoid to init mgnt_entry list twice when WoWLAN failedEPSS 0.2%CVE-2026-63987HIGHethtool: coalesce: cap profile updates at NET_DIM_PARAMS_NUM_PROFILESEPSS 0.2%CVE-2023-54147media: platform: mtk-mdp3: Add missing check and free for ida_allocEPSS 0.2%CVE-2023-54311ext4: fix deadlock when converting an inline directory in nojournal modeEPSS 0.2%CVE-2023-53041scsi: qla2xxx: Perform lockless command completion in abort pathEPSS 0.2%CVE-2026-53105wifi: mt76: mt7925: prevent NULL vif dereference in mt7925_mac_write_txwiEPSS 0.2%CVE-2026-63810block: Avoid mounting the bdev pseudo-filesystem in userspaceEPSS 0.2%CVE-2026-64059netfs: Fix folio->private handling in netfs_perform_write()EPSS 0.2%CVE-2023-53988fs/ntfs3: Fix slab-out-of-bounds read in hdr_delete_de()EPSS 0.2%CVE-2025-39689ftrace: Also allocate and copy hash for reading of filter filesEPSS 0.2%CVE-2026-63848HIGHdrm/amdgpu/jpeg: set no_user_fence for JPEG v2.0 ringEPSS 0.2%CVE-2026-64105KVM: arm64: vgic: Free private_irqs when init fails after allocationEPSS 0.2%CVE-2023-54287tty: serial: imx: disable Ageing Timer interrupt request irqEPSS 0.2%CVE-2023-54094net: prevent skb corruption on frag list segmentationEPSS 0.2%CVE-2025-38013wifi: mac80211: Set n_channels after allocating struct cfg80211_scan_requestEPSS 0.2%CVE-2023-32246ksmbd: call rcu_barrier() in ksmbd_server_exit()EPSS 0.2%