CISA Adds Three Exploited Linux Kernel Flaws to KEV Catalog
The agency's move signals active attacks and pressures federal agencies to patch quickly.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added three Linux kernel vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, according to a report from The Hacker News. The agency cited evidence of active exploitation for each flaw, including CVE-2025-39682 and two others not named in the report.
Being placed on the KEV list is a strong indicator that attackers are already using these flaws in real-world campaigns. For federal civilian agencies, the listing creates a binding remediation deadline, but the practical effect extends to any organization running affected Linux kernels.
The report does not provide technical details or patches for the three flaws, so administrators should treat the announcement as a trigger to review their kernel versions and apply any available vendor updates. The single source offers no contrasting viewpoints, so the key takeaway is the urgent need for patching based on CISA's explicit exploitation warning.
Sources · 3
More in Security & Privacy
WordPress Click2Shell CSRF Flaw Could Let Attackers Run PHP Code
A newly disclosed cross-site request forgery vulnerability in WordPress Core, with a public proof-of-concept, can let attackers execute PHP on the server.
Film Torrents Carry New Malware, Victims Found in Kenya and Uganda
Cybercriminals are using popular movie torrents to distribute fresh malware, with confirmed infections in East Africa.
CrowdSec Breach: TanStack npm Attack Exposed 170 Private Repos
CrowdSec says an attacker used a former employee's still-active GitHub access to copy 170 private repositories, tracing the intrusion to the TanStack npm attack.
Google Fined €403 Million by Irish DPC Over Location Data
The penalty targets Google's GDPR breaches in handling user location data and includes a six-month compliance order.