Linux Kernel Vulnerability in KVM s390 PCI Handling
CVE-2026-68454
What is CVE-2026-68454?
A vulnerability exists in the Linux kernel regarding the KVM subsystem when handling PCI interrupts for the s390 architecture. Specifically, if a guest attempts to register Interrupt Request Lines (IRQs) without a specified summary bit, the subsequent Guest Adapter Information Table Entry (GAITE) erroneously stores a virtual address instead of a zero value for the guest's Adapter Interrupt Summary Bit (AISB) location. This oversight can lead to unexpected behavior and potential system instability, highlighting the importance of proper IRQ management and validation within virtualized environments.
Affected Version(s)
Linux 3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc
Linux 3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc < 3ef3190e30601b2688bdc64169b938b8d7f42010
Linux 3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc