Find notable cyber news and cases, enriched with sources, timelines, and signals.

CISA adds Linux kernel flaws to KEV catalog under BOD 26-04

Public Sector Action
First reported
Last updated
Happening score
H score 36
1 unique sources, 1 articles

Summary

Hide ▲

CISA added three Linux kernel flaws to its KEV catalog after evidence of active exploitation, forcing federal remediation prioritization. Under BOD 26-04, FCEB agencies are recommended to apply fixes by September 21, 2026. Red Hat updated its advisories on September 19, 2026, and the flaws can enable memory disclosure, denial-of-service, and local privilege escalation.

Related Happenings

Linux kernel actively exploited flaws (multiple vulnerabilities)

Vulnerability
H score46 First: 19.09.2026 09:24 Last: 19.09.2026 09:24 Sources 1

How related: The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.

About this happening: Three Linux kernel vulnerabilities—CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964—were added to CISA KEV after evidence of active exploitation. The fla...

Red Hat Linux kernel advisory update for active exploitation

Advisory/Mitigation
H score53 First: 19.09.2026 09:24 Last: 19.09.2026 09:24 Sources 1

How related: This CVE is high risk and there are known public exploits leveraging this vulnerability," Red Hat said. "Address this vulnerability with high priority.

About this happening: Red Hat updated its Linux kernel advisories on September 19, 2026 to flag active exploitation of CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964, pu...

Linux kernel upstream security patch release for CVE-2026-53264

Security Patch Release
H score32 First: 28.07.2026 11:04 Last: 28.07.2026 11:04 Sources 1

About this happening: Linux kernel maintainers have backported CVE-2026-53264 fixes across stable branches, closing a local privilege-escalation path that can turn a local user into root on...

Linux kernel traffic-control use-after-free race public exploit privilege-escalation flaw (CVE-2026-53264)

Vulnerability
H score28 First: 28.07.2026 11:04 Last: 28.07.2026 11:04 Sources 1

About this happening: Public exploit code for CVE-2026-53264 turns a Linux kernel traffic-control use-after-free race into local privilege escalation to root on affected builds. The dem...

SonicWall security patch release for CVE-2026-15409

Security Patch Release
H score54 First: 15.07.2026 00:23 Last: 15.07.2026 00:23 Sources 1

About this happening: SonicWall released hotfix security updates for SMA1000 appliances after confirming active exploitation of CVE-2026-15409 and CVE-2026-15410. The fixes are availabl...

Timeline

  1. 19.09.2026 09:24 2 articles · 2h ago

    CISA adds three Linux kernel vulnerabilities to KEV catalog

    Industry Or Public Sector Update

    CISA added CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964 to the Known Exploited Vulnerabilities catalog after evidence of active exploitation against the Linux kernel.

    Show sources
  2. 19.09.2026 09:24 1 articles · 2h ago

    Red Hat updates advisories and federal agencies face a September 21 patch deadline

    Legal Policy Action Update

    Red Hat updated the advisories for the Linux kernel flaws at 2 a.m. UTC on September 19, 2026, acknowledged active exploitation, and under Binding Operational Directive 26-04 Federal Civilian Executive Branch agencies are recommended to apply the necessary fixes by September 21, 2026.

    Show sources