CVE-2026-23402 addresses a vulnerability in the Linux kernel's KVM (Kernel-based Virtual Machine) component, specifically within its x86 memory management unit (MMU). This issue involves an insufficient sanity check that could allow writes from host userspace to break KVM's shadow paging rules, potentially leading to guest VM instability or unexpected behavior. The fix adjusts a warning condition related to overwriting shadow-present SPTEs in direct MMUs. While the technical complexity of exploiting this flaw appears high, its potential impact could affect the integrity of virtual machine operations. There is currently no evidence of active exploitation, no known public exploit code, and minimal community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.16.1, < 6.18.21CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.19, < 6.19.11CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
6.16CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.16:-:*:*:*:*:*:* | ||
7.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:* | ||
7.0CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.