CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild
Three Linux kernel flaws landed in CISA’s KEV catalog, all confirmed exploited, with a September 21 federal patch deadline. First one I’d chase is CVE-2025-39682 (CVSS 9.8) in the TLS receive path; CVE-2026-53266 is the ebtables out-of-bounds write that hands over local privesc. Red Hat rates all three high risk with known public exploits. Boring answer, correct answer: reboot into the patched kernel.