Zero-Day Chronomaly Exploit Grants Root Access to Vulnerable Linux Kernels
ID: 4fe223af-5024-5292-85cd-26e8291cc34f
STIX ID: report--4fe223af-5024-5292-85cd-26e8291cc34f
Feed Name: securityonline.info
Threat Score
A high-severity Android/Linux kernel vulnerability (CVE-2025-38352, CVSS 7.4) — a race condition in POSIX CPU timers — has been weaponized in the wild; Google confirmed limited targeted zero-day exploitation and a public exploit called "Chronomaly" (targeting v5.10.x kernels) has been released, enabling local memory corruption, crashes, denial of service, and potential privilege escalation. Users are advised to apply the September 2025 security updates immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
