KVM Vulnerability in Linux Kernel Affecting Virtual Machine Performance
CVE-2026-64513

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
25 July 2026

What is CVE-2026-64513?

A critical issue has been identified in the Linux kernel's KVM (Kernel-based Virtual Machine) component, specifically related to the handling of virtual TPR (Task Priority Register) thresholds. When the TPR_THRESHOLD field in the VMCS is not accurately computed during PPR updates, it can lead to suboptimal VM performance and potential VM entry failures. This oversight is particularly pronounced in older platforms and nested virtualization environments lacking support for virtual-interrupt delivery. In these cases, the failure to execute necessary intercept routines can manifest as hardware errors, disrupting the reliability of virtual machines. By resolving this issue in the Linux kernel, improved handling of VM exits and interrupt requests is ensured, thereby enhancing overall virtual machine operation.

Affected Version(s)

Linux eb90f3417a0cc4880e979ccc84e41890d410ea5b

Linux eb90f3417a0cc4880e979ccc84e41890d410ea5b < 8c8e8ac22ee17d52f9eb2bc814bca7fab90fb8df

Linux eb90f3417a0cc4880e979ccc84e41890d410ea5b

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.