Sploitus

CVE-2026-72277

No indexed exploits for CVE-2026-72277 yet

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory When constructing an L1 VNCR mapping, KVM unconditionally uses cacheable memory attributes, even if the underlying PFN isn't memory. This gets particularly hairy if the endpoint doesn't support cacheable memory attributes, potentially throwing an SError on writeback... While KVM does permit cacheable memory attributes on certain PFNMAP VMAs, kvm_translate_vncr() isn't currently grabbing the VMA. So do the simpler thing for now and just reject everything that isn't memory.

CVSS 3.1
9.3 CRITICAL
EPSS
0.2% (9th percentile)
NVD status
Received
Published
2026-08-15
CVE-2026-72277 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-72277 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-72277 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.