GHSA-qcff-3h48-22j7CriticalCVSS 9.3

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Sign-extend VA...

Published
September 16, 2026
Last Modified
September 16, 2026

🔗 CVE IDs covered (1)

📋 Description

In the Linux kernel, the following vulnerability has been resolved:

KVM: arm64: Sign-extend VA for range-based TLBI invalidation

When the decode_range_tlbi() helper was moved to be used for S1 TLBIs, the required sign extension was omitted. Add it.

As a result, special care must be taken to not overflow PA bits when this is used for S2 invalidation.

🔗 References (5)