PT-2026-82984 · Linux · Linux Kernel

CVE-2026-80684

·

Published

2026-08-28

·

Updated

2026-08-29

CVSS v3.1

9.3

Critical

VectorAV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A NULL dereference occurs in the KVM s390 PCI component when the airq iv create() function fails to allocate an AIBV (Airq Interrupt Vector) and returns NULL. Because the return value was not checked, the zdev->aibv variable remains NULL, leading to a system failure when it is subsequently dereferenced within the kvm zpci set airq() function.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-98057
CVE-2026-80684

Affected Products

Linux Kernel