The US Cybersecurity and Infrastructure Security Agency added three Linux kernel vulnerabilities (CVE-2025-39682, CVE-2025-39964, CVE-2026-53266) to its Known Exploited Vulnerabilities catalog on September 21, 2026, after observing active exploitation. The flaws affect kTLS, AF_ALG socket, and ebtables SNAT with CVSS scores up to 9.8, including public exploits available for privilege escalation and container escape.
6 reportsother
Claim audit
No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.
The U.S. Cybersecurity and Infrastructure Security Agency added three Linux kernel vulnerabilities to its Known Exploited Vulnerabilities catalog after observing active exploitation. The flaws are CVE-2025-39682, rated critical with a CVSS score of 9.8, CVE-2026-53266, and CVE-2025-39964 [bleepingcomputer.com#1][securityweek.com#1]. CISA directed U.S. federal agencies to apply available security u
CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making rapid exposure assessment and patch validation essential. # LinuxSecurity # VulnerabilityManagement # KEV https:// cyberworldops.eu/en/three-expl oited-linux-kernel-flaws-trigger-immediate-cisa-patch
www.theguardian.com/us-news/2026... PM hopes to be firmer with US leader than his predecessor without provoking diplomatic warfare, as the Iran war weighs on the UK economy
🤖 CISA warns of active exploitation of 3 Linux kernel flaws (1 critical), added to its KEV catalog: • CVE-2025-39682 – kTLS receive-path flaw, public exploits available • CVE-2025-39964 – AF_ALG race condition, present for 14 years • CVE-2026-53266 – ebtables SNAT OOB write, privilege-escalation path 🔗 https://www. bleepingcomputer.com/news/secu rity/cisa-alerts-of-active-exploitation-of-three-l