logo

CISA Warns of Linux Kernel Vulnerabilities Actively Exploited in Attacks

ID: 280b7279-f27b-58bf-93b0-674de465a2f7

STIX ID: report--280b7279-f27b-58bf-93b0-674de465a2f7

Feed Name: cybersecurityNews.com

Threat Score
88/100

Date Published: 2026-09-19

Date Updated: 2026-09-19

Author: Guru Baran

...
...

CISA warned that three Linux kernel vulnerabilities (CVE-2025-39682, CVE-2026-53266, CVE-2025-39964) are being actively exploited and were added to the Known Exploited Vulnerabilities catalog with a BOD 26-04 remediation deadline of September 21, 2026; organizations must patch, reboot into corrected kernels, perform forensic triage, and consider mitigations (disable kTLS, remove ARP-rewriting ebtables SNAT rules, restrict CAP_NET_ADMIN, or block af_alg) while preserving telemetry for investigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.