SPOJENO AI KEV ✓ (3 z 3) EPSS 0.02 (nejvyšší)
CISA alerts of active exploitation of three Linux kernel flaws
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are exploiting three Linux kernel vulnerabilities, one of them rated critical. [...]
Linux Red Hat veřejná správa US FI
CVE v události 3
| CVE | hodnocení | KEV | EPSS |
|---|---|---|---|
| CVE-2025-39682 | 9.8 3.1 · Linux | KEV ✓ | 0.02 |
| CVE-2025-39964 | 7.8 3.1 · Linux | KEV ✓ | 0.01 |
| CVE-2026-53266 | 8.8 3.1 · Linux | KEV ✓ | 0.00 |
Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE. Advisory v textu uvádí CVSS 9.8.
Jak se o tom psalo 7
-
· Qualys US
CISA BOD 26-04 Timelines for Three Linux Kernel CVEs
Executive Summary CISA added three actively exploited Linux kernel vulnerabilities: CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964 to its KEV Catalog on September 18, 2026, triggering a 3-day remediation deadline that passed on September 21. Under CISA BOD 26-04, a 3-day window applies to CVE-2025-39682 across all assets, and for the other two, the deadline is 3 days for publicly exposed assets and 14 days for internal assets. With the September 21 deadline now passed, affected systems…
-
· BleepingComputer US nadpis události
CISA alerts of active exploitation of three Linux kernel flaws
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are exploiting three Linux kernel vulnerabilities, one of them rated critical. [...]
-
· NCSC-FI FI
Linux Kernel — Three Actively Exploited Vulnerabilities
Classification: Critical, Solution: Official Fix, Exploit Maturity: High, CVSSv3.1: 9.8, CVEs: CVE-2025-39682, CVE-2025-39964, CVE-2026-53266, Summary: CISA has added three Linux kernel vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog based on evidence of active exploitation. CVE-2025-39682 affects Linux kernel TLS (kTLS) processing and can be triggered by a remote TLS peer when the vulnerable receive path is in use. The Linux CNA assesses the vulnerability as remotely…
-
· CISA Advisories US
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2025-39682 Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing Security Updates Based on Risk establishes vulnerability management…
-
· CISA KEV US
Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2025-39682)
CISA added CVE-2025-39682 to the Known Exploited Vulnerabilities catalog. Affected product: Linux Kernel. Remediation due date: 2026-09-21.
-
· CISA KEV US
Linux Kernel Out-of-Bounds Write Vulnerability (CVE-2026-53266)
CISA added CVE-2026-53266 to the Known Exploited Vulnerabilities catalog. Affected product: Linux Kernel. Remediation due date: 2026-09-21.
-
· CISA KEV US
Linux Kernel Race Condition Vulnerability (CVE-2025-39964)
CISA added CVE-2025-39964 to the Known Exploited Vulnerabilities catalog. Affected product: Linux Kernel. Remediation due date: 2026-09-21.