CISA gives agencies until Monday to address three exploited Linux kernel flaws
Three Linux kernel flaws entered CISA's Known Exploited Vulnerabilities Catalog Friday, with a federal remediation deadline of Monday, September 21.
The entries are CVE-2025-39682 in the kernel's TLS receive path, CVE-2026-53266 in the ebtables SNAT target and CVE-2025-39964 in AF_ALG sockets.
That deadline is close.
Under Binding Operational Directive 26-04, civilian executive branch agencies must apply vendor mitigations to affected systems. If mitigations are unavailable, the catalog says to discontinue use of the product.
CISA requires forensic triage for all three vulnerabilities. It lists known ransomware campaign use as unknown for each one.
