Linux Kernel: Linux Kernel Race Condition Vulnerability

Medium · CISA Known Exploited Vulnerabilities ·

What happened

CVE-2025-39964: Linux kernel race condition in AF_ALG sockets lets concurrent writes corrupt socket state; CISA KEV lists it as exploited. Affects Linux systems using AF_ALG.

What to do now

Apply vendor kernel updates or mitigations now; prioritize internet-facing Linux assets per CISA BOD 26-04, restrict AF_ALG access if possible, and run forensics triage if compromise is suspected.

Original source

CISA Known Exploited Vulnerabilities

AI-assisted analysis, sources cited. Verify with the vendor advisory before acting.

← All cyber news