Skip to content
Critical Linux Kernel Vulnerabilities Exploited in the Wild

Critical Linux Kernel Vulnerabilities Exploited in the Wild

First seen 29 Sep 2026, 15:41 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 30, 2026 at 09:36 UTC
  • •CISA confirms exploitation of Linux kernel vulnerabilities.
  • •Affected systems include Ubuntu 26.04, 24.04, and 18.04 LTS.
  • •Immediate patching is necessary to prevent potential system compromises.

Multiple security vulnerabilities have been identified in the Linux kernel, affecting various Ubuntu LTS versions. The vulnerabilities allow attackers to potentially compromise systems across different architectures, including ARM and x86. CISA has confirmed exploitation of a Linux firewall flaw, emphasizing the urgency for users to apply necessary patches. The vulnerabilities are associated with CVEs such as CVE-2026-53221 and CVE-2025-38724, which have been linked to significant security risks. Users of Ubuntu 26.04 LTS, 24.04 LTS, and 18.04 LTS are particularly at risk, with specific kernel versions needing updates. The advisory recommends immediate system updates and reboots to mitigate the threats. Failure to apply these updates could lead to severe security breaches.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 12h ago How this analysis works

Timeline

2025-09-04
CVE-2025-38724 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-03
CVE-2026-23469 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-13
CVE-2026-31420 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-22
CVE-2026-31486 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-04-24
CVE-2026-31560 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-06
CVE-2025-71289 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-28
CVE-2026-46158 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-28
CVE-2026-46170 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-06-08
CVE-2026-46275 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-06-09
CVE-2026-46315 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE

More articles in this cluster (3)

Following this threat?

Track Amazon Web Services and CVE-2025-38724 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed