PT-2025-46137 · Canonical · Linux-Realtime-6.14

Published

2025-11-06

·

Updated

2025-11-06

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Jean-Claude Graf, Sandro Rüegge, Ali Hajiabadi, and Kaveh Razavi discovered that the Linux kernel contained insufficient branch predictor isolation between a guest and a userspace hypervisor for certain processors. This flaw is known as VMSCAPE. An attacker in a guest VM could possibly use this to expose sensitive information from the host OS.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

USN-7860-2

Affected Products

Linux-Realtime-6.14