PT-2026-8206 · Arm64+6 · Arm64+6

CVE-2026-23198

·

Published

2026-01-01

·

Updated

2026-08-30

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.19.0-smp--5dddc257e6b2-irqfd #31
Description A flaw exists in the Linux kernel's KVM implementation related to handling KVM IRQFD deassignment. Specifically, the code incorrectly clobbers the irqfd's routing type, leading to issues with IRQ bypass functionality on x86 and arm64 architectures. This can result in incorrect IRQ handling, potentially causing NULL pointer dereferences (observed on AMD systems) or list corruption. The issue arises from failing to verify the irqfd's active status before consuming routing information, and can manifest as a kernel NULL pointer dereference or list corruption.
Recommendations Update to Linux kernel version 6.19.0-smp--5dddc257e6b2-irqfd #31 or a later version that includes the fix.

Exploit

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-77709
BDU:2026-11605
CVE-2026-23198
ECHO-DCF7-301F-A7B6
OESA-2026-1760
OESA-2026-1832
OESA-2026-1833
OPENSUSE-SU-2026:20416-1
SUSE-SU-2026:0962-1
SUSE-SU-2026:1078-1
SUSE-SU-2026:1081-1
SUSE-SU-2026:20667-1
SUSE-SU-2026:20720-1
SUSE-SU-2026:20838-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20873-1
SUSE-SU-2026:20876-1
SUSE-SU-2026:20931-1
SUSE-SU-2026:21284-1
USN-8278-1
USN-8278-2
USN-8289-1
USN-8289-2
USN-8296-1
USN-8296-2
USN-8393-1
USN-8440-1
USN-8493-1
USN-8493-2
USN-8499-1
USN-8527-1
USN-8528-1
USN-8547-1
USN-8547-2

Affected Products

Amd
Kvm
Linuxmint
Linux Kernel
Ubuntu
Arm64
X86