Security Advisory

CVE-2026-72277

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-15 05:54:59
Last updated 2026-08-17 05:42:12
Assigner Linux
CVSS score 9.3
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory When constructing an L1 VNCR mapping, KVM unconditionally uses cacheable memory attributes, even if the underlying PFN isn't memory. This gets particularly hairy if the endpoint doesn't support cacheable memory attributes, potentially throwing an SError on writeback... While KVM does permit cacheable memory attributes on certain PFNMAP VMAs, kvm_translate_vncr() isn't currently grabbing the VMA. So do the simpler thing for now and just reject everything that isn't memory.