PT-2026-34944 · Linux+2 · Linux Kernel+2

CVE-2026-31592

·

Publicado

2026-04-03

·

Atualizado

2026-08-30

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (versões afetadas não especificadas)
Description Existe um problema no componente KVM SEV onde a função sev mem enc register region() não está totalmente protegida pelo kvm->lock. Como a função sev guest() não é estável a menos que o kvm->lock seja mantido, uma falha durante o KVM SEV INIT{2} pode levar a uma tentativa de adicionar dados a uma sev->regions list não inicializada. Isso pode resultar em uma falha de proteção geral ou em uma desreferência de ponteiro nulo.
Recommendations No momento, não há informações sobre uma versão mais recente que contenha a correção para esta vulnerabilidade.

Exploit

NULL Pointer Dereference

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

AZL-83885
BDU:2026-12352
CVE-2026-31592
OESA-2026-2311
OPENSUSE-SU-2026:10703-1
OPENSUSE-SU-2026:21555-1
SUSE-SU-2026:22433-1
SUSE-SU-2026:22436-1
SUSE-SU-2026:22458-1
SUSE-SU-2026:22460-1
SUSE-SU-2026:23066-1
SUSE-SU-2026:23068-1
SUSE-SU-2026:23221-1
SUSE-SU-2026:23231-1
SUSE-SU-2026:23237-1
SUSE-SU-2026:2722-1
SUSE-SU-2026:2799-1
SUSE-SU-2026:2914-1
USN-8488-1
USN-8488-2
USN-8507-1
USN-8569-1
USN-8603-1

Produtos afetados

Linuxmint
Linux Kernel
Ubuntu