CVE-2025-39964CISA KEVEPSS p68.9%

CVE-2025-39964Linux Kernel Race Condition Vulnerability

Linux / Kernel

Description

Linux Kernel contains a race condition vulnerability which allows concurrent writes to the same AF_ALG socket causing data to be unpredictably interleaved and creating inconsistencies in the socket's internal state.

Scoring

CVSS 7.8 ()
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS1.28% probability of exploitation · percentile 68.9% · 2026-10-05T12:00:23Z
Last modified2026-09-19

CISA KEV entry

Added to KEV: 2026-09-18

Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.