Linux Kernel Vulnerability in KVM s390 PCI Handling
CVE-2026-68454

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
13 August 2026

What is CVE-2026-68454?

A vulnerability exists in the Linux kernel regarding the KVM subsystem when handling PCI interrupts for the s390 architecture. Specifically, if a guest attempts to register Interrupt Request Lines (IRQs) without a specified summary bit, the subsequent Guest Adapter Information Table Entry (GAITE) erroneously stores a virtual address instead of a zero value for the guest's Adapter Interrupt Summary Bit (AISB) location. This oversight can lead to unexpected behavior and potential system instability, highlighting the importance of proper IRQ management and validation within virtualized environments.

Affected Version(s)

Linux 3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc

Linux 3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc < 3ef3190e30601b2688bdc64169b938b8d7f42010

Linux 3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.