Sploitus

CVE-2026-72283

No indexed exploits for CVE-2026-72283 yet

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Nullify irqfd->producer if updating IRTE for bypass fails Nullify irqfd->producer if updating the IRTE for bypass fails, as leaving a dangling pointer will result in a use-after-free if the irqfd is reachable through KVM's routing, but the producer is freed separately. E.g. for VFIO PCI, the producer is embedded in struct "vfio_pci_irq_ctx" and freed when the vector is disabled, which can happen independent of routing updates. [sean: drop PPC change, massage changelog]

CVSS 3.1
8.8 HIGH
EPSS
0.2% (7th percentile)
NVD status
Received
Published
2026-08-15
CVE-2026-72283 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-72283 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-72283 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.