PT-2026-8206 · Kvm+5 · Kvm+5

Published

2026-01-01

·

Updated

2026-05-22

·

CVE-2026-23198

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.19.0-smp--5dddc257e6b2-irqfd #31
Description A flaw exists in the Linux kernel's KVM implementation related to handling KVM IRQFD deassignment. Specifically, the code incorrectly clobbers the irqfd's routing type, leading to issues with IRQ bypass functionality on x86 and arm64 architectures. This can result in incorrect IRQ handling, potentially causing NULL pointer dereferences (observed on AMD systems) or list corruption. The issue arises from failing to verify the irqfd's active status before consuming routing information, and can manifest as a kernel NULL pointer dereference or list corruption.
Recommendations Update to Linux kernel version 6.19.0-smp--5dddc257e6b2-irqfd #31 or a later version that includes the fix.

Exploit

Fix

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2026-23198
ECHO-DCF7-301F-A7B6
OESA-2026-1760
OPENSUSE-SU-2026:20416-1
SUSE-SU-2026:0962-1
SUSE-SU-2026:1078-1
SUSE-SU-2026:1081-1
SUSE-SU-2026:20667-1
SUSE-SU-2026:20720-1
SUSE-SU-2026:20838-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1
SUSE-SU-2026:20931-1
SUSE-SU-2026:21284-1
USN-8278-1
USN-8289-1
USN-8296-1

Affected Products

Amd
Kvm
Linux Kernel
Ubuntu
Arm64
X86