CVE-2026-89932
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:22
- Zuletzt bearbeitet 17.09.2026 10:17:05
In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Always flush vpid02 on first use Make sure vpid02 is always flushed on first use by setting last_vpid=0 when allocating vpid02. nested_vmx_transition_tlb_flush() will a...
CVE-2026-89930
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:32:21
- Zuletzt bearbeitet 16.09.2026 15:18:18
In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Service local TLB flushes on failed nested VM-Enter KVM services local TLB flushes on "full" nested VM-Exits (through __nested_vmx_vmexit()), but not if a nested VM-Ente...
CVE-2026-89928
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:20
- Zuletzt bearbeitet 16.09.2026 15:18:18
In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Consume the locked rmap value in the lockless rmap walk __kvm_rmap_lock() deliberately elides the rmap lock when it observes an empty rmap. In that case kvm_rmap_loc...
CVE-2026-89929
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:20
- Zuletzt bearbeitet 17.09.2026 10:17:04
In the Linux kernel, the following vulnerability has been resolved: KVM: nVM: Ensure INVVPID is emulated on the correct physical CPU When emulating INVVPID, KVM executes INVVPID on the physical CPU using vpid02 (instead of the L1 assigned VPID), af...
CVE-2026-89927
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:32:19
- Zuletzt bearbeitet 16.09.2026 15:18:18
In the Linux kernel, the following vulnerability has been resolved: KVM: x86: hyper-v: Clamp stimer deadline to avoid livelock Fix an issue where userspace or the guest can program an Hyper-V synthetic timer to have a deadline in the past via integ...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:18
- Zuletzt bearbeitet 16.09.2026 11:17:01
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix memory leak in guest debug handling bp_data is freed only for the error case by kfree(bp_data). Every successful KVM_SET_GUEST_DEBUG will leak bp_data.
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:18
- Zuletzt bearbeitet 16.09.2026 11:17:01
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix length check __import_wp_info() struct kvm_hw_breakpoint::len is a __u64 that is fully controlled by user space. This is then assigned to wp_info->len, which is an i...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:17
- Zuletzt bearbeitet 16.09.2026 11:17:01
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix old_data leak in guest debug error path __import_wp_info() allocates a per-watchpoint old_data buffer to back up the original guest memory contents. If a later watch...
CVE-2026-89922
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:16
- Zuletzt bearbeitet 16.09.2026 15:18:18
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Take srcu when importing watchpoint data __import_wp_info() backs up the original guest memory contents of a watchpoint with read_guest_abs(), which is kvm_read_guest() ...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:16
- Zuletzt bearbeitet 16.09.2026 11:17:01
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Free guest debug data on vcpu destroy kvm_s390_clear_bp_data() is only called from kvm_arch_vcpu_ioctl_set_guest_debug(), i.e. when user space changes or disables debugg...