CVE-2026-68473

Source
https://cve.org/CVERecord?id=CVE-2026-68473
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68473.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-68473
Downstream
Published
2026-08-15T05:51:30.274Z
Modified
2026-08-18T03:56:16.861017134Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
powerpc/uaccess: correct check for CONFIG_PPC_E500 in mask_user_address()
Details

In the Linux kernel, the following vulnerability has been resolved:

powerpc/uaccess: correct check for CONFIGPPCE500 in maskuseraddress()

maskuseraddress() incorrectly checks for CONFIGE500 instead of CONFIGPPCE500, causing maskuseraddressisel() to not be used on E500 hardware. Fix the check to use the correct name.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68473.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
861574d51bbd7a06dbf07f658a9a8def012c2f74
Fixed
d5c234774a82f27b594f70c15fc45ce3648e4295
Fixed
d610d3ab18197d87618da11ec5fe8b3cebf32208

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68473.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
7.0.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68473.json"