Improper Check or Handling of Exceptional Conditions in Linux kernel - CVE-2026-46032
Published: May 28, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper error handling in nested_svm_vmexit() in KVM nSVM when handling a nested #VMEXIT after a failure to restore the host CR3. A local user can trigger a failure while loading L1's CR3 to cause a denial of service.
The issue can leave the guest running with corrupted state after the error is ignored.