HomeSecurityCISA added Linux kernel vulnerability to KEV List

CISA added Linux kernel vulnerability to KEV List

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) this week warned of a serious vulnerability in the Linux kernel, which added to the List of Known Exploitable Vulnerabilities (KEV). In doing so, it confirmed that the vulnerability in question is already being used in attacks.

CISA added Linux kernel vulnerability to KEV List

It is tracked as CVE-2023-0386 and is an “improper ownership management vulnerability,” which allows privilege escalation on vulnerable systems. It is worth noting that this vulnerability has been fixed since 2023.

See also: CISA KEV List: Added vulnerability affecting TP-Link routers

Although the exact exploitation scenarios have not been revealed, Datadog had reported as early as 2023 that the Linux kernel vulnerability is relatively easy to exploit.

CISA urges federal agencies (Federal Civilian Executive Branch) to apply all available patches by July 8, 2025, in order to prevent further exploitation of the vulnerability.

See also: CISA: Warns of vulnerabilities in CyberPanel, North Grid, ProjectSend and Zyxel Firewalls

CISA KEV Catalog

The KEV catalog is very useful for organizations around the world who want to learn about new threats and are interested in better vulnerability management and prioritization.

Overall, CISA is a great help in protecting and addressing cybersecurity threats. This organization works with various sectors, such as private businesses, governments , and local authorities, to improve the security of digital systems.

See also: CISA: Commvault vulnerability is being actively exploited

CISA Linux kernel vulnerability in the KEV Catalog
CISA added Linux kernel vulnerability to KEV List

It provides information and tools to help organizations protect their networks from cyberattacks and respond to any attacks that may occur. It also informs the public about any vulnerabilities in widely used systems and applications.

Overall, CISA's role is vital to protecting the digital infrastructure of the US and other regions.

Source: thehackernews.com

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr/politiki-syntaxis/
Member of the SecNews Editorial Team. Covers software vulnerabilities, data breaches, cyberattacks and technology developments. All articles follow the SecNews Editorial Policy.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS