The U.S. Cybersecurity and Infrastructure Security Agency added three actively exploited Linux kernel vulnerabilities (CVE-2025-39682, CVE-2026-53266, CVE-2025-39964) to its Known Exploited Vulnerabilities catalog on 2026-09-19, giving federal agencies a three-day deadline to patch. The report also noted four additional kernel flaws with public root exploits.
9 reportsother
Claim audit
No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.
CISA gives US federal agencies three days to patch three actively exploited Linux kernel vulnerabilities added to the KEV catalog. One flaw, CVE-2025-39682, has https:// deafnews.it/en/article/cisa-ad ds-three-linux-kernel-cves-to-kev-with-three-day-deadline-for-us-agencies
CISA Adds Three Linux Kernel CVEs to KEV With Three-Day Deadline for US Agencies CISA added three Linux kernel vulnerabilities to the Known Exploited Vulnerabilities catalog on September 18, 2026, giving federal civilian agencies until September 21 to patch. The directive is driven by confirmed active exploitation, not CVSS severity alone. Red Hat has flagged CVE-2025-39682 as h
🔹 The Hacker News CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities are listed below - CVE-2025-39682 (CVSS score: 9.8) - An improper chec
The U.S. Cybersecurity and Infrastructure Security Agency added three Linux kernel vulnerabilities to its Known Exploited Vulnerabilities catalog on September 18, citing evidence that attackers are exploiting them in real-world attacks [cybersecuritynews.com#1][thehackernews.com#1]. The flaws are CVE-2025-39682, CVE-2026-53266 and CVE-2025-39964, with CVSS scores of 9.8, 8.8 and 7.8, respectively
Three is the number here; that's how many days CISA gave US federal agencies to patch three Linux kernel vulnerabilities before the Monday, September 21 deadline. https:// theperimetersite.com/report/279 # vulnerability # infosec
🔵 THREAT INTELLIGENCE CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild Vulnerability | CRITICAL CVEs: CVE-2025-39682 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known... Full analysis: https://www. yazoul.net/news/article/cisa-f lags-three-linux-kernel-vulnerabilities-exploited-in-the-wi
Linux kernel security had a rough week. 4 kernel flaws now have public root exploits, while CISA added 3 more Linux kernel vulnerabilities to its KEV catalog due to active exploitation. The four publicly exploited flaws: • DirtyAH6 • TUNderflow • PPPoEject • DiagSpill The interesting part: the four bugs were discovered using an AI-assisted vulnerability hunting approach. Technical breakdown, affec
CISA Warns of Active Exploitation of Three Linux Kernel Vulnerabilities CISA added three Linux kernel vulnerabilities (CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964) to its Known Exploited Vulnerabilities catalog, requiring immediate patching and review. These flaws allow for remote exploitation of kTLS and local privilege escalation through netfilter and cryptographic interfaces. **Update yo
U.S. # CISA adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog https:// securityaffairs.com/199430/sec urity/u-s-cisa-adds-linux-kernel-flaws-to-its-known-exploited-vulnerabilities-catalog-2.html # securityaffairs # hacking