{
  "id": 9064543,
  "title": "Linux users beware — CISA flags three major security issues you need to patch right now",
  "url": "https://urgent.news/2026/09/22/linux-users-beware-cisa-flags-three-major-security-issues-you-need-to",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-09-22T01:35:00.000Z",
  "source": {
    "name": "TechRadar",
    "slug": "techradar",
    "url": "https://www.techradar.com/pro/security/linux-users-beware-cisa-flags-three-major-security-issues-you-need-to-patch-right-now"
  },
  "original_language": "en",
  "account": "The US Cybersecurity and Infrastructure Security Agency (CISA) has added three Linux kernel flaws to its Known Exploited Vulnerabilities (KEV) catalog, signaling active exploitation and a three-day deadline for affected agencies to patch them or discontinue use. The three vulnerabilities—CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964—all have critical severity scores and have already been patched in the Linux kernel. CVE-2025-39682, CVE-2026-53266, and CVE-2025-39964 can be exploited to launch memory disclosure attacks, privilege escalation, and data corruption, respectively. No specific cyberattacks have been reported, but CISA has expressed concern. Mitigations are available for two of the flaws, but none exist for the third.",
  "summary": "Two flaws have available mitigations, too, but it's best to patch up.",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}