Skip to content

security_identifier

CVE-2025-39964

Race condition in the Linux kernel's AF_ALG cryptographic socket interface allowing concurrent writes to corrupt per-socket state, scored 7.8.

Current clusters

security6 publishers

CISA gives agencies one business day to patch three exploited Linux kernel flaws

The three kernel CVEs CISA added to its exploited-bugs catalog on Friday all need local access, and the lowest-scored of them is the one STAR Labs used for privilege escalation and container escape. Red Hat has confirmed public exploit code.

Perspective Coverage

6 publishers
Builder
Builder 30%
Operator
Operator 57%
Investor
Investor 13%

Reality

Evidence74
Adoption68
Hype gap−8
Incentives38
Confidence76