Vulnerabilidades em Linux

17.279 resultados
Análise Vexday

Com 12.630 CVEs catalogadas e 1.872 novas entradas nos últimos 90 dias, o Linux apresenta um volume de vulnerabilidades consistente com sua ampla base de código e adoção global. A taxa de exploração ativa — apenas 9 entradas no CISA KEV, representando 0,07% do total — está abaixo da média geral do catálogo (0,45%), o que sugere que, apesar da superfície de ataque extensa, a conversão de vulnerabilidades em ameaças ativas e confirmadas permanece relativamente contida. Ainda assim, a CVE-2026-31431 merece atenção prioritária: com EPSS de 0,9678, a probabilidade de exploração ativa é elevada, e seu status no KEV indica que esse risco já se concretizou. A falha mais comum — CWE-476 (desreferência de ponteiro nulo) — é representativa da complexidade inerente ao desenvolvimento em nível de kernel e reforça a necessidade de triagem contínua, especialmente diante das 23 vulnerabilidades com PoC pública disponível.

CVE-2023-3777HIGHUse-after-free in Linux kernel's netfilter: nf_tables componentEPSS 0.4%CVE-2026-64403HIGHBluetooth: L2CAP: validate option length before reading conf opt valueEPSS 0.4%CVE-2025-38429CRITICALbus: mhi: ep: Update read pointer only after buffer is writtenEPSS 0.4%CVE-2025-38325CRITICALksmbd: add free_transport ops in ksmbd connectionEPSS 0.4%CVE-2026-90017HIGHstaging: rtl8723bs: fix OOB read in rtw_action_frame_parse()EPSS 0.4%CVE-2026-68402HIGHwifi: cfg80211: bound element ID read when checking non-inheritanceEPSS 0.4%CVE-2026-46232HIGHHID: playstation: Clamp num_touch_reportsEPSS 0.4%CVE-2026-46138HIGHBluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evtEPSS 0.4%CVE-2025-39758CRITICALRDMA/siw: Fix the sendmsg byte count in siw_tcp_sendpagesEPSS 0.4%CVE-2026-80722HIGHwifi: mac80211: validate individual TWT params before driver setupEPSS 0.4%CVE-2026-90255HIGHBluetooth: hci_conn: fix the SCO setup context lifetimeEPSS 0.4%CVE-2026-89774HIGHBluetooth: SCO: hold sk properly in sco_conn_readyEPSS 0.4%CVE-2023-54227HIGHblk-mq: fix tags leak when shrink nr_hw_queuesEPSS 0.4%CVE-2026-74691HIGHnet: thunderbolt: Tear down DMA paths before stopping the ringsEPSS 0.4%CVE-2026-72029HIGHnet: wwan: iosm: bound device offsets in the MUX downlink decoderEPSS 0.4%CVE-2025-38676—iommu/amd: Avoid stack buffer overflow from kernel cmdlineEPSS 0.4%CVE-2026-43018HIGHBluetooth: hci_event: fix potential UAF in hci_le_remote_conn_param_req_evtEPSS 0.4%CVE-2022-3533LOWLinux Kernel BPF usdt.c parse_usdt_arg memory leakEPSS 0.4%CVE-2026-90357HIGHwifi: mt76: mt7915: unlink TWT flow if the MCU rejects the agreementEPSS 0.4%CVE-2026-43495HIGHnet: wwan: t7xx: validate port_count against message length in t7xx_port_enum_msg_handlerEPSS 0.4%