CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild
CISA, 악용되고 있는 리눅스 커널의 취약점 3건을 KEV 목록에 추가했습니다.
미국 사이버 보안 및 인프라 보안국(CISA)은 지난 금요일 리눅스 커널에 영향을 미치는 3개의 보안 취약점을 알려진 악용 취약점 목록에 추가했습니다. 이들은 악용의 증거가 발견된 사항이며, CVE-2025-39682는 CVSS 점수 9.8을 기록하고 있습니다. 이 취약점은 TLS 수신 경로에서 비정상적이거나 예외적인 조건을 점검하는 과정에서 발생합니다.
CISA added three Linux kernel vulnerabilities to its list of Known Exploited Vulnerabilities.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) recently identified three security flaws impacting the Linux kernel, adding them to its Known Exploited Vulnerabilities (KEV) catalog due to evidence of active exploitation. One of these vulnerabilities, CVE-2025-39682, has a CVSS score of 9.8 and is related to improper checks in the TLS receive path. These issues highlight the importance of addressing security flaws in widely used open-source software.