Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-80921— KVM: s390: vsie: zero stale crypto bits

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在 Linux 内核中,以下漏洞已得到修复: KVM: s390: vsie: 清零过期的加密位 当从 format0 AP-PCB(CRYCB 0 或 1)中镜像(shadow)加密访问位时,第 64..255 位保留为 vsie 页面中 CRYCB 和 AP-PCB 中原有的值,未做更改。这可能导致嵌套客户机能够访问一个已不再可用的设备。解决方案是将这些剩余的位清零。

AI Predicted 5.1 Difficulty: Theoretical

Possible ATT&CK Techniques 1 AI

T1069.001 · Local Groups

Affected Version Matrix 20

VendorProduct Version RangeStatus
Linux Linux 6b79de4b056e5a2febc0c61233d8f0ad7868e49c< d110b3297f11ef227098b8a82ade2d5f123b7d2f affected
6b79de4b056e5a2febc0c61233d8f0ad7868e49c< 59d51550b5cb916bda037673a721a404b3b47a0d affected
6b79de4b056e5a2febc0c61233d8f0ad7868e49c< f6079dca67eccb5eabef9f72437948c66dc5131f affected
6b79de4b056e5a2febc0c61233d8f0ad7868e49c< 087c19cc60a8caa1a08e1e434c8be2caf6c27733 affected
6b79de4b056e5a2febc0c61233d8f0ad7868e49c< 7d23489f51109e3ebba5b5db8c5f0185af7b7fdf affected
6b79de4b056e5a2febc0c61233d8f0ad7868e49c< 935eeba276012916c76243e5cbb843efd8fdb75d affected
6b79de4b056e5a2febc0c61233d8f0ad7868e49c< d4bcd2df6d0d2af916b4fe1a533958778ea7c45b affected
6b79de4b056e5a2febc0c61233d8f0ad7868e49c< 29b4f7bc2991313bd3e6f6fb8fdf1b173f086dd6 affected
… +12 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-80921

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
KVM: s390: vsie: zero stale crypto bits
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: vsie: zero stale crypto bits When shadowing crypto access bits from a format0 apcb (crycb 0 or 1), the bits 64..255 are unchanged from whatever is in the vsie page in the crycb and thus in the apcb. This gives a nested guest potential access to a device no longer available. Zero out the remaining bits.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 6b79de4b056e5a2febc0c61233d8f0ad7868e49c ~ d110b3297f11ef227098b8a82ade2d5f123b7d2f -
Linux Linux 4.20 -

II. Public POCs for CVE-2026-80921

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-80921

登录查看更多情报信息。

Patches & Fixes for CVE-2026-80921 (9)

Same Patch Batch · Linux · 2026-09-09 · 12 CVEs total

CVE-2026-80925 vlan: fix skb_under_panic and races when toggling HW VLAN offload
CVE-2026-80924 crypto: krb5 - use kfree_sensitive() for derived key buffers
CVE-2026-80923 xhci: dbgtty: Fix unregister on tty_register_driver() failure
CVE-2026-80922 crypto: qcom-rng - Allow zero as a random number
CVE-2026-80920 io_uring: defer eventfd signaling when queued from a wakeup handler
CVE-2026-80919 drm/amdgpu: fix recursive ww_mutex acquire in amdgpu_devcoredump_format
CVE-2026-80918 HID: core: fix number/pointer type confusion on long items
CVE-2026-80917 PCI: host-generic: Fix NULL pointer dereference on 32-bit CAM systems
CVE-2026-80916 kcov: fix data corruption and race conditions on PREEMPT_RT
CVE-2026-80915 drm/xe: Fix DPT allocation paths.
CVE-2026-80914 Bluetooth: ISO: fix use-after-free of listener socket in iso_conn_ready

IV. Related Vulnerabilities

V. Comments for CVE-2026-80921

No comments yet


Leave a comment