CVE-2026-72294

Source
https://cve.org/CVERecord?id=CVE-2026-72294
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72294.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72294
Downstream
Published
2026-08-15T05:55:14.553Z
Modified
2026-08-18T03:56:41.589230917Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H CVSS Calculator
Summary
LoongArch: KVM: Check irq validity in kvm_vcpu_ioctl_interrupt()
Details

In the Linux kernel, the following vulnerability has been resolved:

LoongArch: KVM: Check irq validity in kvmvcpuioctl_interrupt()

Function kvmvcpuioctlinterrupt() can be called from userspace, here add irq validility cheking in kvmvcpuioctlinterrupt().

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72294.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f45ad5b8aa9335bc6b30331b739e778f2f730b35
Fixed
15469ba0284c7cc01c38493391e9e73b918833c4
Fixed
efe27b19a15c384cad7c80de399f3107ab070e6d
Fixed
d4574547e04a47ad498149576f65b84475ea6f4c
Fixed
09b318ab77b7a4fc9987fd98d1525fc55ddc2617

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72294.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72294.json"