PT-2026-34388 · Linux · Linux Kernel

Published

2026-04-22

·

Updated

2026-04-28

·

CVE-2026-31483

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description In the s390 architecture, the syscall number is directly controlled by userspace. The absence of an array index nospec() boundary allows for potential access beyond the syscall function pointer tables, which could lead to a Spectre-style speculative execution attack.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2026-31483
ECHO-623F-28B6-AF35

Affected Products

Linux Kernel