cbcvebase.
CVE-2026-31553
published 2026-04-24

CVE-2026-31553: In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Fix the descriptor address in __kvm_at_swap_desc() Using "(u64 __user *)hva +…

PriorityP340high8.8CVSS 3.1
AVLACLPRLUINSCCHIHAH
EPSS
0.12%
2.2th percentile
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Fix the descriptor address in __kvm_at_swap_desc() Using "(u64 __user *)hva + offset" to get the virtual addresses of S1/S2 descriptors looks really wrong, if offset is not zero. What we want to get for swapping is hva + offset, not hva + offset*8. ;-) Fix it.

Affected

6 ranges
VendorProductVersion rangeFixed in
linuxlinux
linuxlinux>= f6927b41d57390c597a126063e2e518911976878 < 4307e05e568782fc92eff651b09ee5dee88a058d4307e05e568782fc92eff651b09ee5dee88a058d
linuxlinux>= f6927b41d57390c597a126063e2e518911976878 < 0496acc42fb51eee040b5170cec05cec413855400496acc42fb51eee040b5170cec05cec41385540
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 6.19.1 < 6.19.116.19.11
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.