CISA adds three critical Linux kernel vulnerabilities to exploited catalog

The US Cybersecurity and Infrastructure Security Agency added three Linux kernel vulnerabilities (CVE-2025-39682, CVE-2025-39964, CVE-2026-53266) to its Known Exploited Vulnerabilities catalog on September 21, 2026, after observing active exploitation. The flaws affect kTLS, AF_ALG socket, and ebtables SNAT with CVSS scores up to 9.8, including public exploits available for privilege escalation and container escape.

6 reportsother

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

CISA orders agencies to patch three exploited Linux flaws

kite:cybersecurityother8d ago kagi ↗

The U.S. Cybersecurity and Infrastructure Security Agency added three Linux kernel vulnerabilities to its Known Exploited Vulnerabilities catalog after observing active exploitation. The flaws are CVE-2025-39682, rated critical with a CVSS score of 9.8, CVE-2026-53266, and CVE-2025-39964 [bleepingcomputer.com#1][securityweek.com#1]. CISA directed U.S. federal agencies to apply available security u

CISA adds three Linux kernel vulnerabilities to KEV catalog (kTLS, ebtables, AF_ALG) 🔗 https:// cybersecurefox.com/en/cisa-thr ee-linux-kernel-vulnerabilities-kev-ktls-ebtables-af-alg # CISA # KEV #

mastodon:infosec-exchangeother8d ago kagi ↗

CISA adds three Linux kernel vulnerabilities to KEV catalog (kTLS, ebtables, AF_ALG) 🔗 https:// cybersecurefox.com/en/cisa-thr ee-linux-kernel-vulnerabilities-kev-ktls-ebtables-af-alg # CISA # KEV # Linux # kernel # CVE -2025-39682 # CVE -2026-53266 # CVE -2025-39964

CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making ra

mastodon:infosec-exchangeother8d ago kagi ↗

CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making rapid exposure assessment and patch validation essential. # LinuxSecurity # VulnerabilityManagement # KEV https:// cyberworldops.eu/en/three-expl oited-linux-kernel-flaws-trigger-immediate-cisa-patch

🤖 CISA adds 3 Linux kernel flaws to its KEV, warns of active exploitation. Critical CVE-2025-39964 (14-yo): AF_ALG crypto socket race → LPE + container escape (STAR Labs, kernelCTF). Public exploits

mastodon:infosec-exchangeother8d ago kagi ↗

🤖 CISA adds 3 Linux kernel flaws to its KEV, warns of active exploitation. Critical CVE-2025-39964 (14-yo): AF_ALG crypto socket race → LPE + container escape (STAR Labs, kernelCTF). Public exploits for CVE-2025-39682 (kTLS) and CVE-2026-53266 (ebtables SNAT OOB write). 🔗 https://www. bleepingcomputer.com/news/secu rity/cisa-alerts-of-active-exploitation-of-three-linux-kernel-flaws/ # CVE # Linu

🤖 CISA warns of active exploitation of 3 Linux kernel flaws (1 critical), added to its KEV catalog: • CVE-2025-39682 – kTLS receive-path flaw, public exploits available • CVE-2025-39964 – AF_ALG race

mastodon:infosec-exchangeother7d ago kagi ↗

🤖 CISA warns of active exploitation of 3 Linux kernel flaws (1 critical), added to its KEV catalog: • CVE-2025-39682 – kTLS receive-path flaw, public exploits available • CVE-2025-39964 – AF_ALG race condition, present for 14 years • CVE-2026-53266 – ebtables SNAT OOB write, privilege-escalation path 🔗 https://www. bleepingcomputer.com/news/secu rity/cisa-alerts-of-active-exploitation-of-three-l