Skip to content
C-Kermit Vulnerability in Fedora 43 and 44 Exploited

C-Kermit Vulnerability in Fedora 43 and 44 Exploited

First seen 27 Sep 2026, 19:07 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 27, 2026 at 19:57 UTC
  • •C-Kermit vulnerability CVE-2025-68920 confirmed exploited by CISA.
  • •Affected versions include C-Kermit prior to 11.0.509 on Fedora 43 and 44.
  • •Immediate updates to version 11.0.509 are recommended to mitigate risks.

CISA has confirmed exploitation of a medium buffer overflow vulnerability in C-Kermit, affecting Fedora 43 and 44. The vulnerability, identified as CVE-2025-68920, was published on December 24, 2025. Systems running C-Kermit versions prior to 11.0.509 are at risk. The flaw allows attackers to execute arbitrary code, potentially compromising affected systems. Users are advised to update to version 11.0.509 to mitigate this risk. The updates include various enhancements and fixes, addressing the identified vulnerabilities. The exploit is confirmed to be active in the wild, prompting immediate action from system administrators. CISA's advisory emphasizes the need for organizations to check their systems for the necessary updates.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2025-12-24
CVE-2025-68920 published
CVE-2025-68920, a medium buffer overflow vulnerability in C-Kermit, was published.
Linuxsecurity
2026-09-17
Update to C-Kermit 11.0.509 released
Fedora released C-Kermit 11.0.509 to address CVE-2025-68920, including various enhancements and fixes.
Linuxsecurity
2026-09-27
CISA confirms active exploitation
CISA confirmed that the vulnerability is actively exploited in the wild, urging users to update immediately.
Linuxsecurity

More articles in this cluster (2)

Following this threat?

Track CVE-2025-68920 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed