VulnerabilitiesMay 4, 2026
"Copy Fail" Lands on CISA's KEV: A Nine-Year-Old Linux Bug Becomes a Patch Deadline https://t.co...
Nine-year-old Linux vulnerability "Copy Fail" added to CISA KEV catalog.
Vendor Watch
Run CISA?
Get an email when a reviewed story names CISA, usually within the hour.
Free. Your list stays private and never appears in a subject line. One click stops it. How Vendor Watch worksPrivacy
Summary
A long-standing Linux vulnerability dubbed "Copy Fail" has been added to CISA's Known Exploited Vulnerabilities (KEV) catalog, indicating active exploitation in the wild. The bug, which has existed for nine years, now carries an official patch deadline for organizations. This addition signals that the vulnerability poses an immediate threat requiring urgent remediation.
Entities
Linux (technology)CISA (vendor)