CVE-2026-68295

Source
https://cve.org/CVERecord?id=CVE-2026-68295
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68295.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-68295
Downstream
Published
2026-08-10T12:02:28.412Z
Modified
2026-08-12T04:18:47.765625118Z
Summary
LoongArch: BPF: Zero-extend signed ALU32 div/mod results
Details

In the Linux kernel, the following vulnerability has been resolved:

LoongArch: BPF: Zero-extend signed ALU32 div/mod results

ALU32 operations write a 32-bit result and leave the upper 32 bits of the BPF register zero. The LoongArch JIT sign-extends the result of signed ALU32 BPFDIV and BPFMOD (off=1), so a negative 32-bit quotient or remainder leaves bits 63:32 set in JITted code while the verifier and interpreter model those bits as zero.

Keep sign-extension on the operands, which signed divide needs, and zero-extend the ALU32 result after the divide or modulo instruction, matching the unsigned ALU32 div/mod paths and every other ALU32 operation in this JIT.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68295.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
2425c9e002d2a1fdca34261b2fa6713eafef2163
Fixed
716cb29dbed4d62e9e108950a1a82bcba4cc2d45
Fixed
dacd348b8a993373576fe2ee2d8b114740ba57a6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68295.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
7.1.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68295.json"