this post was submitted on 07 Aug 2026
14 points (93.8% liked)

Linux

14671 readers
230 users here now

A community for everything relating to the GNU/Linux operating system (except the memes!)

Also, check out:

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP

founded 3 years ago
MODERATORS
 

cross-posted from: https://lemmy.world/post/50395277

Zapscape (CVE-2026-64561) is more than a guest-to-host escape. The vulnerability stems from an ordering flaw in KVM's Shadow MMU page fault handling, where a stale root validation occurs before MMU quota reclaim. Under specific nested virtualization conditions, quota reclaim can invalidate the active shadow root while execution continues, leading to corrupted shadow page state, linked-list corruption, cross-cache reallocation, KASLR disclosure, and ultimately controlled host kernel code execution.

you are viewing a single comment's thread
view the rest of the comments
[โ€“] _hovi_@lemmy.world 3 points 1 week ago (1 children)

Wonder when we'll stop seeing so many of these back to back

[โ€“] UnLocoPoco@lemmy.world 3 points 1 week ago

After the AI bubble bursts prolly