CVE-2026-72290
In the Linux kernel, the following vulnerability has been resolved:
KVM: s390: pci: Fix GISC refcount leak on AIF enable failure
kvm_s390_gisc_register() registers the guest ISC before pinning the guest interrupt forwarding pages and allocating the AISB bit. If any of the later setup steps fails, the function unwinds the pinned pages and other local state, but does not unregister the GISC reference. Add the missing kvm_s390_gisc_unregister() to the error unwind path.
CVSS
NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.21%
- Percentil entre todas las CVEs puntuadas: 11
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.
Referencias
- https://git.kernel.org/stable/c/3882224b0e714f34de91e5f28307c5d3fccfe8f8
- https://git.kernel.org/stable/c/5fb75c5272950b3ebe8bdee7abfdafd44f38313b
- https://git.kernel.org/stable/c/6cd6e1c978784eec9032e2fe94a53e62b674fe3e
- https://git.kernel.org/stable/c/6e69317cd44a2f21f8f7a9d93eb3220e868adfa8
- https://git.kernel.org/stable/c/7b69729046a4c58f4cb457184e5ac4aaa179bff4
- https://git.kernel.org/stable/c/adce12bb0e0dc82d1d6f0821c9faee3145e62a6f
JSON original (NVD)
Mostrar
{
"id": "CVE-2026-72290",
"cveTags": [],
"metrics": {},
"affected": [
{
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"affectedData": [
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc",
"lessThan": "3882224b0e714f34de91e5f28307c5d3fccfe8f8",
"versionType": "git"
},
{
"status": "affected",
"version": "3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc",
"lessThan": "6e69317cd44a2f21f8f7a9d93eb3220e868adfa8",
"versionType": "git"
},
{
"status": "affected",
"version": "3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc",
"lessThan": "6cd6e1c978784eec9032e2fe94a53e62b674fe3e",
"versionType": "git"
},
{
"status": "affected",
"version": "3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc",
"lessThan": "5fb75c5272950b3ebe8bdee7abfdafd44f38313b",
"versionType": "git"
},
{
"status": "affected",
"version": "3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc",
"lessThan": "adce12bb0e0dc82d1d6f0821c9faee3145e62a6f",
"versionType": "git"
},
{
"status": "affected",
"version": "3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc",
"lessThan": "7b69729046a4c58f4cb457184e5ac4aaa179bff4",
"versionType": "git"
}
],
"programFiles": [
"arch/s390/kvm/pci.c"
],
"defaultStatus": "unaffected"
},
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "6.0"
},
{
"status": "unaffected",
"version": "0",
"lessThan": "6.0",
"versionType": "semver"
},
{
"status": "unaffected",
"version": "6.1.178",
"versionType": "semver",
"lessThanOrEqual": "6.1.*"
},
{
"status": "unaffected",
"version": "6.6.145",
"versionType": "semver",
"lessThanOrEqual": "6.6.*"
},
{
"status": "unaffected",
"version": "6.12.97",
"versionType": "semver",
"lessThanOrEqual": "6.12.*"
},
{
"status": "unaffected",
"version": "6.18.40",
"versionType": "semver",
"lessThanOrEqual": "6.18.*"
},
{
"status": "unaffected",
"version": "7.1.5",
"versionType": "semver",
"lessThanOrEqual": "7.1.*"
},
{
"status": "unaffected",
"version": "7.2",
"versionType": "original_commit_for_fix",
"lessThanOrEqual": "*"
}
],
"programFiles": [
"arch/s390/kvm/pci.c"
],
"defaultStatus": "affected"
}
]
}
],
"published": "2026-08-15T06:22:00.917",
"references": [
{
"url": "https://git.kernel.org/stable/c/3882224b0e714f34de91e5f28307c5d3fccfe8f8",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/5fb75c5272950b3ebe8bdee7abfdafd44f38313b",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/6cd6e1c978784eec9032e2fe94a53e62b674fe3e",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/6e69317cd44a2f21f8f7a9d93eb3220e868adfa8",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/7b69729046a4c58f4cb457184e5ac4aaa179bff4",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/adce12bb0e0dc82d1d6f0821c9faee3145e62a6f",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}
],
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: pci: Fix GISC refcount leak on AIF enable failure\n\nkvm_s390_gisc_register() registers the guest ISC before pinning\nthe guest interrupt forwarding pages and allocating the AISB bit.\nIf any of the later setup steps fails, the function unwinds the\npinned pages and other local state, but does not unregister the\nGISC reference. Add the missing kvm_s390_gisc_unregister() to the\nerror unwind path."
}
],
"lastModified": "2026-08-17T06:18:31.820",
"sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}