CISA adds Linux kernel flaws to KEV catalog under BOD 26-04
Public Sector Action
Summary
Hide ▲
Show ▼
CISA added three Linux kernel flaws to its KEV catalog after evidence of active exploitation, forcing federal remediation prioritization. Under BOD 26-04, FCEB agencies are recommended to apply fixes by September 21, 2026. Red Hat updated its advisories on September 19, 2026, and the flaws can enable memory disclosure, denial-of-service, and local privilege escalation.
Related Happenings
Linux kernel actively exploited flaws (multiple vulnerabilities)
Vulnerability
H score46
First: 19.09.2026 09:24
Last: 19.09.2026 09:24
Sources 1
How related:
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
About this happening:
Three Linux kernel vulnerabilities—CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964—were added to CISA KEV after evidence of active exploitation. The fla...
Linux kernel actively exploited flaws (multiple vulnerabilities)
VulnerabilityHow related: The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
About this happening: Three Linux kernel vulnerabilities—CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964—were added to CISA KEV after evidence of active exploitation. The fla...
Red Hat Linux kernel advisory update for active exploitation
Advisory/Mitigation
H score53
First: 19.09.2026 09:24
Last: 19.09.2026 09:24
Sources 1
How related:
This CVE is high risk and there are known public exploits leveraging this vulnerability," Red Hat said. "Address this vulnerability with high priority.
About this happening:
Red Hat updated its Linux kernel advisories on September 19, 2026 to flag active exploitation of CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964, pu...
Red Hat Linux kernel advisory update for active exploitation
Advisory/MitigationHow related: This CVE is high risk and there are known public exploits leveraging this vulnerability," Red Hat said. "Address this vulnerability with high priority.
About this happening: Red Hat updated its Linux kernel advisories on September 19, 2026 to flag active exploitation of CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964, pu...
Linux kernel upstream security patch release for CVE-2026-53264
Security Patch Release
H score32
First: 28.07.2026 11:04
Last: 28.07.2026 11:04
Sources 1
About this happening:
Linux kernel maintainers have backported CVE-2026-53264 fixes across stable branches, closing a local privilege-escalation path that can turn a local user into root on...
Linux kernel upstream security patch release for CVE-2026-53264
Security Patch ReleaseAbout this happening: Linux kernel maintainers have backported CVE-2026-53264 fixes across stable branches, closing a local privilege-escalation path that can turn a local user into root on...
Linux kernel traffic-control use-after-free race public exploit privilege-escalation flaw (CVE-2026-53264)
Vulnerability
H score28
First: 28.07.2026 11:04
Last: 28.07.2026 11:04
Sources 1
About this happening:
Public exploit code for CVE-2026-53264 turns a Linux kernel traffic-control use-after-free race into local privilege escalation to root on affected builds. The dem...
Linux kernel traffic-control use-after-free race public exploit privilege-escalation flaw (CVE-2026-53264)
VulnerabilityAbout this happening: Public exploit code for CVE-2026-53264 turns a Linux kernel traffic-control use-after-free race into local privilege escalation to root on affected builds. The dem...
SonicWall security patch release for CVE-2026-15409
Security Patch Release
H score54
First: 15.07.2026 00:23
Last: 15.07.2026 00:23
Sources 1
About this happening:
SonicWall released hotfix security updates for SMA1000 appliances after confirming active exploitation of CVE-2026-15409 and CVE-2026-15410. The fixes are availabl...
SonicWall security patch release for CVE-2026-15409
Security Patch ReleaseAbout this happening: SonicWall released hotfix security updates for SMA1000 appliances after confirming active exploitation of CVE-2026-15409 and CVE-2026-15410. The fixes are availabl...
Timeline
-
19.09.2026 09:24 2 articles · 2h ago
CISA adds three Linux kernel vulnerabilities to KEV catalog
Industry Or Public Sector UpdateCISA added CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964 to the Known Exploited Vulnerabilities catalog after evidence of active exploitation against the Linux kernel.
Show sources
- CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild — thehackernews.com — 19.09.2026 09:24
- CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild — thehackernews.com — 19.09.2026 09:24
-
19.09.2026 09:24 1 articles · 2h ago
Red Hat updates advisories and federal agencies face a September 21 patch deadline
Legal Policy Action UpdateRed Hat updated the advisories for the Linux kernel flaws at 2 a.m. UTC on September 19, 2026, acknowledged active exploitation, and under Binding Operational Directive 26-04 Federal Civilian Executive Branch agencies are recommended to apply the necessary fixes by September 21, 2026.
Show sources
- CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild — thehackernews.com — 19.09.2026 09:24