CVE-2026-80891

Source
https://cve.org/CVERecord?id=CVE-2026-80891
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80891.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80891
Downstream
Published
2026-09-04T17:11:07.555Z
Modified
2026-09-06T03:46:55.275192322Z
Summary
KVM: s390: pci: Validate AIBV and AISB before pinning guest pages
Details

In the Linux kernel, the following vulnerability has been resolved:

KVM: s390: pci: Validate AIBV and AISB before pinning guest pages

The AIBV holds one bit per MSI-X vector for a given function. The size of the bit vector is derived from the NOI and the AIBVO. If the size of the AIBV exceeds a single page boundary, then reject the request as we cannot safely pin the guest AIBV.

Similarly reject the request if the AISB address is not 8-byte aligned as the architecture requires doubleword alignment for the summary bit address. Since the AISBO can address up to 64 bits, the size of the AISB can only be 8 bytes for the function. This also ensures the AISB doesn't exceed a single page boundary.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80891.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc
Fixed
3a1c64220ede4ac9ef9a3e76f008ff60a34f4c48
Fixed
f00ef8efd41440129ccd88f4a1ebebf8d61d297f
Fixed
15df7700dd99f8a37f5c6ed2dcf1e33009cdba47
Fixed
b878ba7e28144c9a857bc847d31f3c45413450ac
Fixed
fbfe683f8b1ae7e40b56bdd6daf5bd671bc3a528
Fixed
868d32ac72cba21c5c6d8a66a814b7c25a3a5c01

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80891.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.0.0
Fixed
6.1.183
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.151
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.103
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.44
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80891.json"