PT-2025-54142 · Kvm+1 · Kvm+1

Published

2023-08-25

·

Updated

2026-03-24

·

CVE-2023-54296

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.5.0-smp--fff2e47e6c3b-next #151
Description The Linux kernel contains a flaw within the KVM component related to SEV-ES intrahost migration. A mistake in the code causes KVM to attempt to retrieve source vCPUs from the destination VM instead of the source VM during migration. This can lead to guest corruption and a host crash due to a NULL VMSA pointer. The issue manifests as a page fault error during memory access.
Recommendations Update to Linux kernel version 6.5.0-smp--fff2e47e6c3b-next #151 or a later version to address this issue.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-01185
CVE-2023-54296
RHSA-2024:2394
RHSA-2025:0065
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0293-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1

Affected Products

Kvm
Linux Kernel