PT-2025-49011 · Kvm · Kvm

Published

2025-07-23

·

Updated

2025-12-08

·

CVE-2025-48610

CVSS v2.0

6.1

Medium

VectorAV:L/AC:L/Au:N/C:C/I:P/A:P
Name of the Vulnerable Software and Affected Versions KVM (Kernel-based Virtual Machine) (affected versions not specified)
Description A logic error in the pkvm guest relinquish to host function within mem protect.c may allow for the disclosure of configuration data. This could result in local information disclosure without requiring additional privileges or user interaction. The issue is related to incorrect calculations within the virtualization technology.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2025-15121
CVE-2025-48610

Affected Products

Kvm