CVE-2026-89929
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:20
- Zuletzt bearbeitet 17.09.2026 10:17:04
In the Linux kernel, the following vulnerability has been resolved: KVM: nVM: Ensure INVVPID is emulated on the correct physical CPU When emulating INVVPID, KVM executes INVVPID on the physical CPU using vpid02 (instead of the L1 assigned VPID), af...
CVE-2026-89927
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:32:19
- Zuletzt bearbeitet 16.09.2026 15:18:18
In the Linux kernel, the following vulnerability has been resolved: KVM: x86: hyper-v: Clamp stimer deadline to avoid livelock Fix an issue where userspace or the guest can program an Hyper-V synthetic timer to have a deadline in the past via integ...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:18
- Zuletzt bearbeitet 16.09.2026 11:17:01
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix memory leak in guest debug handling bp_data is freed only for the error case by kfree(bp_data). Every successful KVM_SET_GUEST_DEBUG will leak bp_data.
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:18
- Zuletzt bearbeitet 16.09.2026 11:17:01
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix length check __import_wp_info() struct kvm_hw_breakpoint::len is a __u64 that is fully controlled by user space. This is then assigned to wp_info->len, which is an i...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:17
- Zuletzt bearbeitet 16.09.2026 11:17:01
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix old_data leak in guest debug error path __import_wp_info() allocates a per-watchpoint old_data buffer to back up the original guest memory contents. If a later watch...
CVE-2026-89922
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:16
- Zuletzt bearbeitet 16.09.2026 15:18:18
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Take srcu when importing watchpoint data __import_wp_info() backs up the original guest memory contents of a watchpoint with read_guest_abs(), which is kvm_read_guest() ...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:16
- Zuletzt bearbeitet 16.09.2026 11:17:01
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Free guest debug data on vcpu destroy kvm_s390_clear_bp_data() is only called from kvm_arch_vcpu_ioctl_set_guest_debug(), i.e. when user space changes or disables debugg...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:15
- Zuletzt bearbeitet 03.10.2026 11:17:44
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Zero initialize data structures for inject_pfault_token __kvm_inject_pfault_token() only sets .type and .u.ext.ext_params2 of the on-stack struct kvm_s390_irq but the fu...
CVE-2026-89919
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:32:14
- Zuletzt bearbeitet 16.09.2026 15:18:18
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: keyop: use mmu_lock to read gmap->asce Every other dat_* consumer in this file (kvm_s390_get_skeys, set_skeys, get_cmma_bits, set_cmma_bits, MEM_CLR_CMMA, kvm_s390_fixup...
CVE-2026-89920
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:14
- Zuletzt bearbeitet 16.09.2026 15:18:18
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix memory corruption by not reinjecting CK machine checks Channel-subsystem damage machine checks are for the host channel subsystem. The guest channel subsystem is emu...