#6
The Hacker News
general
September 22, 2026 at 11:38 UTC
New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory
By [email protected] (The Hacker News)
AI Summary
CVE-2026-89775 is a Linux kernel KVM vulnerability on ARM64 processors that exposes freed host memory to guest VMs when nested virtualization is enabled, allowing a guest to read and write host kernel memory and potentially escape to the host. The researcher who discovered the bug confirmed it can be leveraged for guest-to-host code execution, making it critical for cloud and virtualization environments running ARM64 KVM workloads.
Relevance score: 85.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →