What is CVE-2026-68081?
A vulnerability was found in the Linux kernel's KVM nVMX subsystem: if nested VM-Enter (VMLAUNCH/VMRESUME) fails due to invalid guest state, the vmcs12 pages are not properly released, potentially leading to a memory leak. Affected systems should apply the kernel update.
Azərbaycanca: Linux kernel-in KVM nVMX alt sistemində boşluq aşkar edilib: əgər yanlış qonaq vəziyyəti (invalid guest state) səbəbilə daxili VM-Enter (VMLAUNCH/VMRESUME) uğursuz olarsa, vmcs12 səhifələri düzgün sərbəst buraxılmır. Bu, yaddaş sızmasına (memory leak) səbəb ola bilər. Təsirə məruz qalan sistemlərdə kernel yeniləməsi tətbiq edilməlidir.
FAQ2
In which component was CVE-2026-68081 found?
In the KVM nVMX subsystem of the Linux kernel.
What issue can arise from this vulnerability?
The vmcs12 pages are not properly released, which can lead to a memory leak.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.