flush_hyp_vcpu of the component KVM arm64 pKVM hyp vCPU. This manipulation of the argument used_lrs causes out-of-bounds read.This vulnerability appears as CVE-2026-64287. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.
Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf vuldb.com.
SOCIAL SHARE CARD GENERATOR