THREAT OPS › Threat News › [NVD] CVE-2026-64561 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved:
KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
Check for a "stale" page fault, i.e. for an invalid and/or obsolete root,
after making MMU pages available for the shadow MMU. If re
[NVD] CVE-2026-64561 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available Check for a "stale" page fault, i.e. for an invalid and/or obsolete root, after making MMU pages available for the shadow MMU. If re
CVE-2026-64561 CVSS: 8.8 HIGH Published: 2026-08-04T07:16:30.937
In the Linux kernel, the following vulnerability has been resolved:
KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
Check for a "stale" page fault, i.e. for an invalid and/or obsolete root, after making MMU pages available for the shadow MMU. If reclaiming shadow pages zaps an in-use root, i.e. marks
Indicators of compromise
- CVE-2026-64561cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-64561
Same event, other sources
- Zapscape: Guest-to-Host Escape in KVM/x86 (CVE-2026-64561)oss_sec · 2026-08-06