DEBIAN-CVE-2026-80873
Dashboard / Vulnerabilities / DEBIAN-CVE-2026-80873
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Write ESR_EL2 for injected nested SError exceptions kvm_inject_el2_exception() writes ESR_EL2 for synchronous exceptions but not for SError. enter_exception64() does not write ESR_ELx for any exception type, so the constructed syndrome is dropped. A guest L2 hypervisor taking a nested SError observes stale ESR_EL2. This affects both kvm_inject_nested_serror() and the EASE path in kvm_inject_nested_sea(). Write ESR_EL2 for except_type_serror, matching except_type_sync.
Affected packages
Package
Name: linux
Purl: pkg:deb/debian/linux?arch=source&distro=forky
Affected ranges
Type: ECOSYSTEM
Events:
Introduced- 0
Fixed -7.1.5-1
Affected versions
6.12.100-1
6.12.101-1
6.12.105-1
6.12.107-1
6.12.38-1
6.12.41-1
6.12.43-1
6.12.43-1~bpo12+1
6.12.48-1
6.12.57-1
6.12.57-1~bpo12+1
6.12.63-1
6.12.63-1~bpo12+1
6.12.69-1
6.12.69-1~bpo12+1
6.12.73-1
6.12.73-1~bpo12+1
6.12.74-1
6.12.74-2
6.12.74-2~bpo12+1
6.12.85-1
6.12.85-1~bpo12+1
6.12.86-1
6.12.86-1~bpo12+1
6.12.88-1
6.12.88-1~bpo12+1
6.12.90-1
6.12.90-1~bpo12+1
6.12.90-2
6.12.90-2~bpo12+1
6.12.94-1
6.12.94-1~bpo12+1
6.12.95-1
6.12.95-1~bpo12+1
6.12.96-1
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
