Vulnerabilidades em Linux

16.907 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2021-47215CRITICALnet/mlx5e: kTLS, Fix crash in RX resync flowEPSS 0.5%CVE-2025-38439CRITICALbnxt_en: Set DMA unmap len correctly for XDP_REDIRECTEPSS 0.5%CVE-2026-46115CRITICALblock: add pgmap check to biovec_phys_mergeableEPSS 0.5%CVE-2026-68385CRITICALs390/checksum: Fix csum_partial() without vector facilityEPSS 0.5%CVE-2023-3090HIGHOut-of-bounds write in Linux kernel's ipvlan network driverEPSS 0.5%CVE-2026-64000CRITICALnet: hsr: fix potential OOB access in supervision frame handlingEPSS 0.5%CVE-2026-74406CRITICALvxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive().EPSS 0.5%CVE-2026-64136CRITICALsmb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked()EPSS 0.5%CVE-2026-74476CRITICALveth: convert frag_list skbs before running XDPEPSS 0.5%CVE-2026-74474CRITICALvxlan: use pskb_network_may_pull() for transmit path header pullsEPSS 0.5%CVE-2026-64399CRITICALksmbd: add permission checks for FSCTL_DUPLICATE_EXTENTS_TO_FILEEPSS 0.5%CVE-2026-74612CRITICALveth: fix skb length accounting after XDP frag adjustmentEPSS 0.5%CVE-2026-64132CRITICALipv6: ioam: refresh hdr pointer before ioam6_event()EPSS 0.5%CVE-2026-64430HIGHNTB: epf: Avoid calling pci_irq_vector() from hardirq contextEPSS 0.5%CVE-2021-47041HIGHnvmet-tcp: fix incorrect locking in state_change sk callbackEPSS 0.5%CVE-2026-46024HIGHlibceph: Prevent potential null-ptr-deref in ceph_handle_auth_reply()EPSS 0.5%CVE-2026-43405HIGHlibceph: Use u32 for non-negative values in ceph_monmap_decode()EPSS 0.5%CVE-2026-43099HIGHipv4: icmp: fix null-ptr-deref in icmp_build_probe()EPSS 0.5%CVE-2026-23240CRITICALtls: Fix race condition in tls_sw_cancel_work_tx()EPSS 0.5%CVE-2026-74692HIGHnet/smc: fix TOCTOU race between smc_listen_out() and listener closeEPSS 0.5%