Vulnerabilidades em Linux

13.210 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2025-39764netfilter: ctnetlink: remove refcounting in expectation dumpersEPSS 0.2%CVE-2024-42107ice: Don't process extts if PTP is disabledEPSS 0.2%CVE-2025-38369dmaengine: idxd: Check availability of workqueue allocated by idxd wq driver before usingEPSS 0.2%CVE-2025-38413virtio-net: xsk: rx: fix the frame's length checkEPSS 0.2%CVE-2025-39914tracing: Silence warning when chunk allocation fails in trace_pid_writeEPSS 0.2%CVE-2025-38550ipv6: mcast: Delay put pmc->idev in mld_del_delrec()EPSS 0.2%CVE-2025-38360drm/amd/display: Add more checks for DSC / HUBP ONO guaranteesEPSS 0.2%CVE-2023-53473ext4: improve error handling from ext4_dirhash()EPSS 0.2%CVE-2025-38392idpf: convert control queue mutex to a spinlockEPSS 0.2%CVE-2025-38269btrfs: exit after state insertion failure at btrfs_convert_extent_bit()EPSS 0.2%CVE-2025-38163f2fs: fix to do sanity check on sbi->total_valid_block_countEPSS 0.2%CVE-2026-63910HIGHdma-buf: fix UAF in dma_buf_fd() tracepointEPSS 0.2%CVE-2025-37954smb: client: Avoid race in open_cached_dir with lease breaksEPSS 0.2%CVE-2025-37834mm/vmscan: don't try to reclaim hwpoison folioEPSS 0.2%CVE-2026-53342arm64: mm: call pagetable dtor when freeing hot-removed page tablesEPSS 0.2%CVE-2025-38629ALSA: usb: scarlett2: Fix missing NULL checkEPSS 0.2%CVE-2026-53333mm/mincore: handle non-swap entries before !CONFIG_SWAP guardEPSS 0.2%CVE-2025-39798NFS: Fix the setting of capabilities when automounting a new filesystemEPSS 0.2%CVE-2025-38390firmware: arm_ffa: Fix memory leak by freeing notifier callback nodeEPSS 0.2%CVE-2025-38523cifs: Fix the smbd_response slab to allow usercopyEPSS 0.2%